SSL Certificate Renewal Question
Kevin Foote
kpfoote at uoregon.edu
Tue Dec 9 10:32:06 EST 2014
Drew,
The user facing (443) certificate and the self-signed IdP (metadata) certificate should be different. The latter should have been installed with the software and should have a long lifetime, ~10 years or so. This is the one where you have to update Incommon metadata.
The user facing cert (443) is able to be updated at will with no knowledge on the SP end.
HTH
- sent from mobile
On Dec 9, 2014, at 7:17 AM, Drew M. Zebrowski <drew at temple.edu<mailto:drew at temple.edu>> wrote:
Hi,
We are updating our SSL cert on our Identity Provider next month. When we do this, will we need to provide updated metadata to Incommon and non-Incommon SP’s? This is a first for us so we want to plan accordingly.
Thanks,
Drew Z.
____________________________
Drew Zebrowski
Lead Identity Management Software Developer
Office of Identity and Access Management
To request help from Computer Services, please visit: https://tuhelp.temple.edu<https://tuhelp.temple.edu/>
P Think before you print
CONFIDENTIALITY STATEMENT: The information contained in this e-mail, including attachments, is the confidential information of, and/or is the property of, Temple University. The information is intended for use solely by the individual or entity named in the e-mail. If you are not an intended recipient or you received this in error, then any review, printing, copying, or distribution of any such information is prohibited. Please notify the sender immediately by reply e-mail and then delete this e-mail from your system.
--
To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net<mailto:users-unsubscribe at shibboleth.net>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/users/attachments/20141209/ff88308b/attachment.html
More information about the users
mailing list