]
Darran Lofthouse moved WFLY-7572 to WFCORE-2393:
------------------------------------------------
Project: WildFly Core (was: WildFly)
Key: WFCORE-2393 (was: WFLY-7572)
Component/s: Security
(was: Security)
Affects Version/s: 3.0.0.Beta7
(was: 11.0.0.Alpha1)
Elytron expects certificate in PEM format as user input
-------------------------------------------------------
Key: WFCORE-2393
URL:
https://issues.jboss.org/browse/WFCORE-2393
Project: WildFly Core
Issue Type: Bug
Components: Security
Affects Versions: 3.0.0.Beta7
Reporter: Martin Choma
Assignee: Pedro Igor
Labels: user_experience
In {{/token-realm/public-key}} attribute there is certificate in PEM format expected,
which I consider to be user un-friendly.
I wonder couldn't that be accomplished by leveraging key-store/trust-manager
capability?
{code}
"public-key" => {
"type" => STRING,
"description" => "A public key in PEM Format. During
validation, if a public key is provided, signature will be verified based on the key you
provided here.",
"expressions-allowed" => false,
"nillable" => true,
"min-length" => 1L,
"max-length" => 2147483647L
}
{code}