default IdP metadata for Shib IdP V3

Cantor, Scott cantor.2 at osu.edu
Tue Jan 19 17:58:36 EST 2016


On 1/19/16, 5:38 PM, "users on behalf of Tom Scavo" <users-bounces at shibboleth.net on behalf of trscavo at gmail.com> wrote:



>I know what the encryption certificate is for (IdP V3 supports inbound
>encryption) but why are there two signing certificates?

Separate TLS and signing keys. We discussed turning off the back channel by default but that didn't win too many yes votes at the time so the metadata still includes all that.

-- Scott



More information about the users mailing list