Re-instate metadata signing for connector in TEST, SC-2670
This commit is contained in:
parent
802e95c3f8
commit
226957e4e0
2 changed files with 13 additions and 2 deletions
|
@ -125,7 +125,6 @@ saml:
|
||||||
backup-location: ${connector.backup-directory}/metadata/sc-cache.xml
|
backup-location: ${connector.backup-directory}/metadata/sc-cache.xml
|
||||||
validation-certificate: file:${CONNECTOR_DIRECTORY}/credentials/sc-qa-md-signer.crt
|
validation-certificate: file:${CONNECTOR_DIRECTORY}/credentials/sc-qa-md-signer.crt
|
||||||
credentials:
|
credentials:
|
||||||
# Use same as for IdP except for the metadata signing credential
|
|
||||||
sign:
|
sign:
|
||||||
bundle: connector-sign
|
bundle: connector-sign
|
||||||
encrypt:
|
encrypt:
|
||||||
|
|
|
@ -86,6 +86,14 @@ credential:
|
||||||
alias: sc_eidas_encrypt
|
alias: sc_eidas_encrypt
|
||||||
key-password: ${PKCS11_PIN}
|
key-password: ${PKCS11_PIN}
|
||||||
monitor: true
|
monitor: true
|
||||||
|
connector-hsm-md-sign:
|
||||||
|
name: "Connector HSM Metadata Signing Credential"
|
||||||
|
store-reference: pkcs11-store
|
||||||
|
key:
|
||||||
|
#certificates: file:${CONNECTOR_DIRECTORY}/credentials/sctest2.crt
|
||||||
|
alias: sctest2
|
||||||
|
key-password: ${PKCS11_PIN}
|
||||||
|
monitor: true
|
||||||
#pem:
|
#pem:
|
||||||
#oauth2:
|
#oauth2:
|
||||||
# TODO: Fix certs
|
# TODO: Fix certs
|
||||||
|
@ -104,6 +112,11 @@ connector:
|
||||||
eu-metadata:
|
eu-metadata:
|
||||||
location: https://<%= @environment %>.md.eidas.swedenconnect.se/role/idp.xml
|
location: https://<%= @environment %>.md.eidas.swedenconnect.se/role/idp.xml
|
||||||
validation-certificate: file:${CONNECTOR_DIRECTORY}/credentials/sc-<%= @environment %>-md-signer.crt
|
validation-certificate: file:${CONNECTOR_DIRECTORY}/credentials/sc-<%= @environment %>-md-signer.crt
|
||||||
|
eidas:
|
||||||
|
credentials:
|
||||||
|
# Use same as for IdP except for the metadata signing credential
|
||||||
|
metadata-sign:
|
||||||
|
bundle: connector-hsm-md-sign
|
||||||
prid:
|
prid:
|
||||||
policy-resource: file:${CONNECTOR_DIRECTORY}/prid/policy.properties
|
policy-resource: file:${CONNECTOR_DIRECTORY}/prid/policy.properties
|
||||||
idp:
|
idp:
|
||||||
|
@ -140,7 +153,6 @@ saml:
|
||||||
backup-location: ${connector.backup-directory}/metadata/sc-cache.xml
|
backup-location: ${connector.backup-directory}/metadata/sc-cache.xml
|
||||||
validation-certificate: file:${CONNECTOR_DIRECTORY}/credentials/sc-<%= @environment %>-md-signer.crt
|
validation-certificate: file:${CONNECTOR_DIRECTORY}/credentials/sc-<%= @environment %>-md-signer.crt
|
||||||
credentials:
|
credentials:
|
||||||
# Use same as for IdP except for the metadata signing credential
|
|
||||||
sign:
|
sign:
|
||||||
bundle: connector-sign
|
bundle: connector-sign
|
||||||
encrypt:
|
encrypt:
|
||||||
|
|
Loading…
Add table
Reference in a new issue