2021-01-15

2021-01-15

Shibboleth Developer's Meeting, 2021-01-15

Call Administrivia

09:00 Central US / 10:00 Eastern US / 15:00 UK / 17:00 FI

Calls are normally the 1st and 3rd Fridays of each month. Next call would be Friday 2021-02-05. Any reason to deviate from this?

60 to 90 minute call window.



Call Details

This week's call will use the Zoom system at GU, see ZoomGU for access info.



AGENDA

  • Time to zap All Java 7 stuff in Jenkins? Please?

    • fine with me, backed up job configs to /home/jenkins/archive --Tom

  • WebID - anybody willing to represent us?

  • SP planning

Attendees:



Brent

  • OSJ-82 - Getting issue details... STATUS


    • Mostly done.  The only remaining major piece is sorting out how the encryption configuration and parameters resolution pieces will work.

  • OSJ-118 - Getting issue details... STATUS

    • Mostly done. Finalizing how we will deal with "metadata" about known and supported named curves.  Right now there's a registry like the one we have for algorithm descriptors, loaded via the Service API.



Daniel



Henri

  • JOIDC-17 - Getting issue details... STATUS

    • Renamed/repackaged with the following logic:

      • POMs: org.geant : idp-oidc-extension-(parent/api/impl/distribution) -> net.shibboleth.oidc : idp-plugin-oidc-op-(parent/api/impl/distribution)

      • Java: org.geant.idpextension.oidc -> net.shibboleth.idp.plugin.oidc.op

    • Some code moved to java-oidc-common, see JCOMOIDC- 6 / 7 / 8

  • JOIDC-15 - Getting issue details... STATUS

    • Testing the new configuration style on a 4.1-SNAPSHOT deployment

Ian



John

  • Fixed some bugs in cpp-linbuild. Working with CentOS 6, 7, and 8 now.

  • Trying to produce a usable Docker image from SLES. So far unable to install packages inside the container despite following published docs.

Marvin



Phil

  • Finished the DuoOIDC docs - DuoOIDCAuthnConfiguration - subject to scrutiny. 

  • Updated the plugin archetype to meet the current working spec (and some other boilerplate) Plugin Archetype

    • Still not sure if anybody will find that useful. I think I would.

  • Need to get back to finding some test users.

  • Need to spend some time with the oidc-commons.



Rod

  • Buried elsewhere

  • Looking for low hanging fruit for 4.1

  • NOTA: still have a lot of "Installer in a Module/Plugin world" cases open pending getting the experience on the ground.

Scott

  • Proxying improvements

    • Direct consumption of upstream Attributes for user identity, replaces awkward attribute resolver settings

    • Hooks outbound and inbound to customize/validate messages

      • Added MessageHandler that runs an injectable function, getting around the problem of declaring an "optional" MessageHandler, same trick could work for Actions

  • Finished tabifying resolver and metadata docs

  • IDP-1735 - Getting issue details... STATUS

  • SUPPORT-218 - Getting issue details... STATUS

    • Possible JPA regression, particularly confused by exception leak

  • SP call, put on agenda