IdP2 to IdP3

James McCartin jmccartin at loyola.edu
Tue Feb 9 13:26:45 EST 2016


When I installed v3 IdP, by default it created new keys.  These new keys show up in the metadata (.../idp/shibboleth).  I want to use the keys from my v2 IdP, so I copied the keys in the credentials folder to the v3 IdP and renamed them.  After restarting the IdP, the metadata (.../idp/shibboleth) still lists the keys created by the install and not the keys I copied over.  This did not change until I edited the idp-metadata .xml file to reflect the keys I copied over.

-----Original Message-----
From: users [mailto:users-bounces at shibboleth.net] On Behalf Of Peter Schober
Sent: Tuesday, February 9, 2016 1:05 PM
To: users at shibboleth.net
Subject: Re: IdP2 to IdP3

* Rod Widdowson <rdw at steadingsoftware.com> [2016-02-09 18:42]:
> > I copied those files from my v2 server to my v3 server, renamed them 
> > (idp-signing.key, idp-signing.crt), and restarted.  My metadata did not change?
> 
> Your metadata will not change it is statically generated at install 
> time
> 
> > Do I need to do something else?
> 
> Change the key relevant key information in your metadata - it should 
> be relatively obvious what needs changed and where you get it from.

If the point of copying over the old keys was to not change any of the keys, why change the metadata? You mean changing the stating "example"
metadata on disk, so that one does not confuse oneself as to what the IDP's own metadata is?
-peter
--
To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net


More information about the users mailing list