...
Ian Young : With separate
-testing
modules, can we consider nuking the-test
JARs and their Javadoc?Scott Cantor : Ratify decision to make NonnullElements implied default and use NullableElements annotation for exceptions? Should we consider NonnullAfterPreInvoke and NonnnullAfterPreExecute to clean up actions and handlers?
Tom Zeller : Bump Maven to 3.9.1 and Surefire plugin to 3.0.0 – sound ok ?
External request for discussion of the challenges of supporting FIDO
Attendees:
Brent
Daniel
Nothing to report
Henri
Jira Legacy server System JIRA serverId f52c7d31-6eab-3f0e-93c3-231b5754d506 key JCOMOIDC-41 The same complete JWT security tests are now used for testing request objects too - one more bug was found regarding the exclusion of decryption algorithms
The logic should be stable and well tested now
Jira Legacy server System JIRA serverId f52c7d31-6eab-3f0e-93c3-231b5754d506 key JOIDC-142 OP now exploits the new OIDC.SSO profile options: useRequestObject, signRequestObject and encryptRequestObject
TODO: document the combinations
Jira Legacy server System JIRA serverId f52c7d31-6eab-3f0e-93c3-231b5754d506 key JOIDC-147 Managed to get the script working against my test instance, see: /wiki/spaces/DEV/pages/3187376129
Ideally this should be integrated to the integration tests
For the next release:
Jira Legacy server System JIRA serverId f52c7d31-6eab-3f0e-93c3-231b5754d506 key JOIDC-144 Jira Legacy server System JIRA serverId f52c7d31-6eab-3f0e-93c3-231b5754d506 key JOIDC-149 Jira Legacy server System JIRA serverId f52c7d31-6eab-3f0e-93c3-231b5754d506 key JOIDC-150
...
As expected, JEP 444 (virtual threads) is now proposed for Java 21. Main change from previous previews is that all threads may now use thread-local variables; there were previously some exceptions to this.
John
Jira Legacy server System JIRA serverId f52c7d31-6eab-3f0e-93c3-231b5754d506 key SSPCPP-972 If we enable an optional, build-time feature on one supported platform, should we enable it on all supported platforms, or only upon request?
Jira Legacy server System JIRA serverId f52c7d31-6eab-3f0e-93c3-231b5754d506 key SSPCPP-969 Slowly getting my head around the nuances of SPEC files
Marvin
Phil
Rod
Jira Legacy server System JIRA serverId f52c7d31-6eab-3f0e-93c3-231b5754d506 key JSSH-25 AbstractIdPModule.BasicModuleResource
returns anInputStream
from aClassicHttpResponse
which is then left dangling. Does it need attention?
Scott
Jira Legacy server System JIRA serverId f52c7d31-6eab-3f0e-93c3-231b5754d506 key IDP-2069 Making way through more complex parts of OpenSAML, down to saml-impl now except for XACML modules
Should we excise the XACML code at some point?
Tightening “most” helper/support APIs to be nonnull at least on input
Tightening some inconsistent contracts with XMLObject layer:
All non-collections nullable
Typed and wildcard collections Nonnull Live (and NonnullElements)
The generic marshalling helper getOrderedChildren Nullable, NotLive (and NonnnullElements)
Not thrilled with Boolean approach (two layers of nullable objects) but not sure worth changing
Does have inconsistent “defaulting” behavior because a null XSBooleanValue leads to default but an empty XSBooleanValue leads to a null
...