SP Certificate expiration
Asaf Peter
Asaf.Peter at exlibrisgroup.com
Thu Nov 19 10:19:34 EST 2015
Thanks!
-----Original Message-----
From: users [mailto:users-bounces at shibboleth.net] On Behalf Of Cantor, Scott
Sent: Thursday, November 19, 2015 16:30
To: Shib Users
Cc: Efraim Brand
Subject: Re: SP Certificate expiration
On 11/19/15, 3:48 AM, "users on behalf of Asaf Peter" <users-bounces at shibboleth.net on behalf of Asaf.Peter at exlibrisgroup.com> wrote:
>Hello,
>
>I am implementing SAML SP in Tomact using Java openSaml.
Then this is basically a spec question. Please use the saml-dev list at OASIS for that kind of thing.
>
>I have generated a public key/private key certificate and use it to decrypt the SAML assertion returned from Shibboleth IDP.
>
>Will there be a problem when my certificate expires? Does the Shibboleth IDP check the SP certificate expiration date before it uses it to encrypt the assertion?
Shibboleth is not the only SAML implementation in the world. Some do and some don't. The original specification does not address that.
-- Scott
--
To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net
More information about the users
mailing list