Jetty Keystore Trouble with jetty-base provided in Shibboleth 3
Cantor, Scott
cantor.2 at osu.edu
Wed Jul 22 12:11:34 EDT 2015
On 7/22/15, 11:59 AM, "users on behalf of Paul Caskey" <users-bounces at shibboleth.net on behalf of pcaskey at internet2.edu> wrote:
>Thanks, Scott! How do you correct the situation?
I guess that depends on how one chooses to configure their container, which is a local decision.
In my case, I have some properties that I use and I'll probably dump them in favor of just putting the settings directly in a fresh copy of the XML files.
Using a JETTY_BASE directory does not in practice let you avoid copying in and modifying the config files, it just separates the files from being overwritten by the next update. Every release requires evaluating the files shipped, comparing them to the local versions, and looking for differences.
If I change the Jetty9 page, I can either document the new property names when it mentions modifying ssl.mod, and break Jetty 9.2, or I can do what I think the right answer is, stop documenting use of properties and just show example XML that confgures things correctly.
-- Scott
More information about the users
mailing list