IDPv3 X509Auth - accessing certificate

Cantor, Scott cantor.2 at osu.edu
Thu Dec 17 18:22:27 EST 2015


On 12/17/15, 4:45 PM, "users on behalf of Emilio Penna" <users-bounces at shibboleth.net on behalf of emilio.penna at seciu.edu.uy> wrote:



>RFE filed: https://issues.shibboleth.net/jira/browse/IDP-887
>
>One comment/feedback about  X509 authn in v3: my perception is that it 
>was really simple to enable it in v3, only  added the flow in 
>idp.authn.flows, adjusted ldap search filter  and configured apache for 
>require client certificate and it worked. more simple impossible! :)
>Later, my enthusiasm began to fade when I tried to access the 
>certificate in an attribute script... but it will be easier... :)

Well, the good news is that it was supposed to be simple to enable but zero attention has been given to anything after that, so that's why it wasn't as simple.

-- Scott



More information about the users mailing list