Perl 6 - the future is here, just unevenly distributed

IRC log for #openam, 2015-08-31

| Channels | #openam index | Today | | Search | Google Search | Plain-Text | summary

All times shown according to UTC.

Time Nick Message
03:48 ramteid joined #openam
06:54 KermitTheFragger joined #openam
07:25 y69 joined #openam
08:05 aldaris joined #openam
08:42 aldaris joined #openam
08:56 noisebleed joined #openam
11:12 MegaMatt joined #openam
11:37 aldaris joined #openam
12:14 mckeanbs joined #openam
12:19 mckeanbs joined #openam
14:53 aldaris joined #openam
14:55 y69 Howdy, I'm back from my Fri rage. Just for log lurkers - the installation went ok with Xmx=2564m and fixed /etc/hostname
14:55 y69 So thanks MegaMatt
14:55 MegaMatt ;)
14:56 y69 Howver, the certificates bother me now xD
14:56 MegaMatt certificates bother everyone
14:56 y69 I believe thats true
14:56 y69 there is a default JKS generated with a key pair named 'test'
14:57 y69 this has to remain present, because I'm unable to even log in otherwise
14:57 y69 so I have to actually import my custom key pairs and add them to be next to the 'test'
14:57 y69 amirite?
14:58 MegaMatt That doesn’t sound right to me
14:58 y69 hmmm
14:59 MegaMatt In general OpenAM uses the container for certificates, iirc
14:59 MegaMatt Other than like federation
15:00 y69 I believe it does for HTTPS
15:00 MegaMatt For https, it uses the container certificates for sure
15:00 MegaMatt The container is providing the https connection handlers
15:00 y69 yes
15:00 y69 I wasn't able to trace the root of the issue but simply I wasn't able to log in
15:01 y69 Just an error msg appered
15:01 MegaMatt I’d check the logs, I don’t think it’s a certificate issue
15:02 y69 OK, will do
15:02 MegaMatt The openam certificate is used for Federation
15:08 aldaris joined #openam
15:51 y69 It seems it still somewhere requires the default certificate
15:52 y69 Having bundled the original certificate plus additional generated ones with a newly created JKS with .store and .keypass works OK
15:52 y69 It starts failing when u remove the "test" cert
15:53 MegaMatt I see that, XUI is not happy with out the keystore.jks
15:53 y69 "Unable to login to OpenAM" and a pub key loading error stacktrace
15:55 MegaMatt https://forgerock.org/topic/error-at-login-in-to-o​penam-after-deleting-test-key-alias-from-keystore/
15:55 MegaMatt Access Control – realm – Authentication – All Core Settings – Organization Authentication Certificate Alias
15:55 MegaMatt Then you can change the test alias ;)
15:56 y69 Been there... I might have forgotton on this one.
15:56 y69 Thanks
15:56 y69 I'll try tomorrow
16:07 Reepicheep joined #openam
16:14 aldaris joined #openam
17:00 aldaris joined #openam
17:50 noisebleed joined #openam
18:57 aldaris joined #openam
19:36 aldaris joined #openam
19:48 aldaris joined #openam
20:01 asyd hello aldaris
20:01 asyd have you taste the chouffe? :)
21:06 Reepicheep_ joined #openam
21:37 MegaMatt joined #openam
21:55 noisebleed joined #openam
22:44 MegaMatt joined #openam

| Channels | #openam index | Today | | Search | Google Search | Plain-Text | summary