java-1.7.0.79 might break LDAP(S) on shibboleth 2.4.4

Cantor, Scott cantor.2 at osu.edu
Fri Apr 17 14:04:25 EDT 2015


On 4/17/15, 10:34 AM, "Rich Graves" <rgraves at carleton.edu> wrote:
>
>I've got meetings next couple hours but will return to it in the afternoon. The RHSA mentions two crypto-ish things.

Neither seems likely to have any impact here, I think it's more likely something about the change that broke the configuration of the trust anchors you're using.

I tested here and it's working fine with our AD.

There's no way this has anything to do with SHA versions in the cert. Nobody's turning off SHA-1 support for certs any time soon.

-- Scott



More information about the users mailing list