Re: [Architecture] [IAM] Adding/Reloading X509 Certificates at Runtime without Restart

2017-10-07 Thread Farasath Ahamed
+1 I think this is a MUST have feature if are to move the IS runtime into cloud. Think about a scenario where we need to import Service Provider public certificates for SAML Authentication request validation. If we do not support reloading keystore dynamically we need to restart everynode

Re: [Architecture] [IAM] Adding/Reloading X509 Certificates at Runtime without Restart

2017-10-06 Thread Sanjeewa Malalgoda
+1. We are seeing this limitation in API Manager as well. It would be great if we can have this feature ASAP. Thanks, sanjeewa. On Sat, Sep 9, 2017 at 11:57 AM, Johann Nallathamby wrote: > Hi IAM Team, > > The current keystore management functionalities of Carbon Server are >

Re: [Architecture] [IAM] Adding/Reloading X509 Certificates at Runtime without Restart

2017-10-05 Thread Johann Nallathamby
Hi Asela, On Wed, Oct 4, 2017 at 7:38 PM, Asela Pathberiya wrote: > > > On Sat, Sep 9, 2017 at 11:57 AM, Johann Nallathamby > wrote: > >> Hi IAM Team, >> >> The current keystore management functionalities of Carbon Server are >> provided by the security-mgt

Re: [Architecture] [IAM] Adding/Reloading X509 Certificates at Runtime without Restart

2017-10-04 Thread Asela Pathberiya
On Sat, Sep 9, 2017 at 11:57 AM, Johann Nallathamby wrote: > Hi IAM Team, > > The current keystore management functionalities of Carbon Server are > provided by the security-mgt bundle. The features include, > >- Adding new key stores >- Adding/Removing certificates to