Changeset 7463 for TI12-security/trunk


Ignore:
Timestamp:
08/09/10 16:38:21 (9 years ago)
Author:
pjkersha
Message:

Adding separate X.509 trust managers for Yadis and Attribute Service calls - they are likely to have separate SSL configurations: DN whitelists and trust stores. Also, Yadis retrieval is not likely to need SSL client authn.

Location:
TI12-security/trunk/EsgYadisParser/src/esg/security
Files:
2 added
3 edited

Legend:

Unmodified
Added
Removed
  • TI12-security/trunk/EsgYadisParser/src/esg/security/DnWhitelistX509TrustMgr.java

    r7462 r7463  
    1515 * @version $Revision$ 
    1616 */ 
    17 package org.earthsystemgrid.security; 
     17package esg.security; 
    1818 
    1919import java.io.FileInputStream; 
     
    2727import java.security.cert.CertificateException; 
    2828import java.security.cert.X509Certificate; 
    29 import java.util.Enumeration; 
    3029import java.util.HashSet; 
    3130import java.util.Properties; 
     
    213212                 */ 
    214213                String dnValue = null; 
    215                 this.certificateDnWhiteList = new HashSet(); 
     214                this.certificateDnWhiteList = new HashSet<X500Principal>(); 
    216215                for (int i=0; i < applicationProps.size(); i++) { 
    217216                        dnValue = applicationProps.getProperty(DN_PROP_NAME+i, null); 
  • TI12-security/trunk/EsgYadisParser/src/esg/security/openid2emailresolution

    • Property svn:ignore set to
      attribute-service-client.ks
      yadis-retrieval.ks
  • TI12-security/trunk/EsgYadisParser/src/esg/security/openid2emailresolution/OpenId2EmailAddrResolution.java

    r7462 r7463  
    2525import java.net.URL; 
    2626import java.security.KeyManagementException; 
    27 import java.security.KeyStoreException; 
    2827import java.security.NoSuchAlgorithmException; 
    29 import java.security.cert.CertificateException; 
    3028import java.util.ArrayList; 
    31 import java.util.Arrays; 
    3229import java.util.Collections; 
    3330import java.util.HashSet; 
Note: See TracChangeset for help on using the changeset viewer.