<html>
  <head>
    <meta content="text/html; charset=windows-1252"
      http-equiv="Content-Type">
  </head>
  <body bgcolor="#FFFFFF" text="#000000">
    <br>
    <br>
    <div class="moz-cite-prefix">On 4/17/15 4:51 PM, Cantor, Scott
      wrote:<br>
    </div>
    <blockquote
cite="mid:9846A6064BD102419D06814DD0D78DE1145BA2@CIO-TNC-D2MBX02.osuad.osu.edu"
      type="cite"><br>
      <pre wrap="">
I suppose we should consider a RFE at some point to actually attach a schedule as input to key selection. ;-(</pre>
    </blockquote>
    <br>
    I'll get right on that.  Or maybe spec out a federated message bus
    system to support inter-organizational signalling.<br>
    <br>
    <br>
    <br>
    <br>
    <blockquote
cite="mid:9846A6064BD102419D06814DD0D78DE1145BA2@CIO-TNC-D2MBX02.osuad.osu.edu"
      type="cite">
      <pre wrap="">
Right. This is why I now avoid enabling encryption with any vendors that are using non-self-signed certificates and not running Shibboleth, it basically guarantees they'll force a flag day on me, and it isn't worth it.
</pre>
    </blockquote>
    <br>
    As it turns out, the guys who run our IdP for some reason have
    encryption turned off for Canvas anyway.  So doesn't affect us.  And
    I suppose that is one solution to the "flag day" issue - just
    disable encryption until the coast is clear, then wade back in (or
    not).<br>
  </body>
</html>