[CODE4LIB] Elag 2015 calls for proposals

2014-12-14 Thread Boheemen, Peter van
Dear Code4Lib colleagues,

I would like to inform you all that we would be very pleased by receiving your 
proposals for Elag 2015.
ELAG is Europe's premier conference on the application of information 
technology in libraries and documentation centres.
The 39th ELAG conference will be in Stockholm (Sweden), June 8 - 11, 2015

You can find all about our calls for proposals at http://elag.org

Best regards,

Peter van Boheemen
Elag chair


[CODE4LIB] HTTPS EZproxy question / RFC 6125

2014-12-14 Thread Stuart A. Yeates
Some resources are only available only via HTTPS. Previously we used a
wildcard certificate, I can't swear that it was ever tested as
working, but we weren't getting any complaints.

Recently browser security has been tightened and RFC 6125 has appeared
and been implemented and proxing of https resources with a naive
wildcard cert no longer works (we're getting complaints and are able
to duplicate the issues).

At 
https://security.stackexchange.com/questions/10538/what-certificates-are-needed-for-multi-level-subdomains
there is an interesting solution with multiple wildcards in the same
cert:

foo.com
*.foo.com
*.*.foo.com
...

There is also the possibility that we can just grep the logs for every
machine name ever accessed and generate a huge list.

Has anyone tried these options? Successes? Failures? Thoughts?

cheers
stuart


--
...let us be heard from red core to black sky