Shibboleth Identity Provider Security Advisory [4 October 2017]

Baron Fujimoto baron at hawaii.edu
Tue Nov 7 21:57:39 EST 2017


>Shibboleth Identity Provider Security Advisory [4 October 2017]
>
> [...]
>
>Recommendations
>===============
>All deployers affected should take at least one, and preferably both,
>of the following steps:
>
> [...]
>2. Copy the server's certificate (or more typically a CA) to a file
>and reference it with the trustFile attribute.

Forgive the dumb question, but for the trustFile server certificate
referenced above in 2), which server is that? The IdP's X.509 cert?

Aloha,
-baron
-- 
Baron Fujimoto <baron at hawaii.edu> :: UH Information Technology Services
minutas cantorum, minutas balorum, minutas carboratum desendus pantorum


More information about the users mailing list