From 47d6766bd4184a14b52ddd69ef6006d2f2808ae5 Mon Sep 17 00:00:00 2001 From: Ian Young Date: Thu, 24 Mar 2022 17:24:33 +0000 Subject: [PATCH] Migrate to new (2022-08-03) eduGAIN signing key See ukf/ukf-meta#343. --- mdx/int_edugain/README.md | 22 +++++++--------------- mdx/int_edugain/beans.xml | 4 ++-- mdx/int_edugain/mds-2014.cer | 18 ------------------ mdx/int_edugain/mds-v1.cer | 18 ------------------ mdx/int_edugain/mds-v2.cer | 31 +++++++++++++++++++++++++++++++ 5 files changed, 40 insertions(+), 53 deletions(-) delete mode 100644 mdx/int_edugain/mds-2014.cer delete mode 100644 mdx/int_edugain/mds-v1.cer create mode 100644 mdx/int_edugain/mds-v2.cer diff --git a/mdx/int_edugain/README.md b/mdx/int_edugain/README.md index 7521027f..c47f1e4c 100644 --- a/mdx/int_edugain/README.md +++ b/mdx/int_edugain/README.md @@ -4,20 +4,12 @@ Resources associated with the eduGAIN interfederation. Certificates: -* `mds-v1-1.cer` is the certificate used for signing the eduGAIN - metadata aggregate from early 2021 and intended to be used until the - end of 2022. +* `mds-v2.cer` is the certificate used to sign the eduGAIN + metadata aggregate at `https://mds.edugain.org/edugain-v2.xml` + from mid-2022. -* `mds-v1.cer` is the certificate used for signing the eduGAIN metadata - aggregate at `https://mds.edugain.org/edugain-v1.xml` from early 2019 to - early 2021. +* `mds-v1-1.cer` is the certificate used to sign the eduGAIN + metadata aggregate at `https://mds.edugain.org/edugain-v1.xml` + from early 2021 until mid-2022. -* `mds-2014.cer` is the certificate used for signing eduGAIN metadata at - `https://mds.edugain.org` and `https://mds.edugain.org/feed-256.xml` until - mid-2019, at which point those locations switched to the `mds-v1.cer` - certificate for compatibility. - - See the [eduGAIN certificate change - roadmap](https://technical.edugain.org/certificate_change) for further details. - -Note that all three certificates wrap the same 2048-bit public key. +See for details. diff --git a/mdx/int_edugain/beans.xml b/mdx/int_edugain/beans.xml index 719bb83a..78a0412f 100644 --- a/mdx/int_edugain/beans.xml +++ b/mdx/int_edugain/beans.xml @@ -23,7 +23,7 @@ --> - + @@ -58,7 +58,7 @@ eduGAIN signing certificate. --> + p:resource="classpath:int_edugain/mds-v2.cer"/>