<div dir="ltr"><div>Ok, thanks for your advices.<br></div>I'll probably use the Shibboleth MDA.<br></div><div class="gmail_extra"><br><br><div class="gmail_quote">2014-08-21 17:00 GMT+02:00 Cantor, Scott <span dir="ltr"><<a href="mailto:cantor.2@osu.edu" target="_blank">cantor.2@osu.edu</a>></span>:<br>
<blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><div class="">On 8/21/14, 10:33 AM, "Paolo de vathaire" <<a href="mailto:paolodv@free.fr">paolodv@free.fr</a>> wrote:<br>
><br>
>Every client who wants to be part of my federation will upload their<br>
>metadata containing an EntityDescriptor<br>
<br>
</div>That's really up to you, but you will have a lot of problems. What you get<br>
won't be correct in many cases, or will contain XML errors, and you will<br>
have a ton of work to do to have any shot at automating the aggregation.<br>
It is very hard.<br>
<br>
You're probably better off collecting specific information and<br>
constructing metadata yourself.<br>
<div class=""><br>
>I will read and validate the uploaded file against the schema ad then<br>
>insert the EntityDescriptor inside my federation metadata file as this :<br>
<br>
</div>The schema is not the sum total of the checking you would have to do.<br>
<div class=""><br>
>When there are more, the file is correctly loaded at startup but the<br>
>TrustEngine cannot retrieve the certificate for other EntitiesDescriptor<br>
>but the first specified.<br>
<br>
</div>Keys are inside EntityDescriptors, not EntitiesDescriptor.<br>
<div class=""><br>
>Do you have an idea on what I'm doing wrong ?<br>
<br>
</div>No idea.<br>
<div class="HOEnZb"><div class="h5"><br>
-- Scott<br>
<br>
--<br>
To unsubscribe from this list send an email to <a href="mailto:users-unsubscribe@shibboleth.net">users-unsubscribe@shibboleth.net</a><br>
</div></div></blockquote></div><br></div>