Hi,

till now we didn't have such a requirement.
This would require a change in the way we add the keystore to it, but could
be possible [1].

regards, Achim

[1] -
https://github.com/ops4j/org.ops4j.pax.web/blob/master/pax-web-jetty/src/main/java/org/ops4j/pax/web/service/jetty/internal/JettyFactoryImpl.java#L191-L202

2016-09-19 16:48 GMT+02:00 Martin Nielsen <mny...@gmail.com>:

> Hello everyone. I was wondering if there is a way to substitute the Java
> Keystore implementation that Pax Web uses decide if a certificate chain is
> trusted.
>
> The basic configuration https://ops4j1.jira.com/wiki/display/paxweb/
> SSL+Configuration allows for setting the keystore paths, but i see no way
> to take out the module responsible and replacing it with for example,
> something that validates towards Active Directory (As a bad example).
>
>
> Is it possible to do something akin to CXF, where you can set your own
> crypto provider and make it validate towards whatever?
> http://cxf.apache.org/docs/ws-security.html
>
>
> Thank you in advance:)
>
> -Martin
>
> --
> --
> ------------------
> OPS4J - http://www.ops4j.org - ops4j@googlegroups.com
>
> ---
> You received this message because you are subscribed to the Google Groups
> "OPS4J" group.
> To unsubscribe from this group and stop receiving emails from it, send an
> email to ops4j+unsubscr...@googlegroups.com.
> For more options, visit https://groups.google.com/d/optout.
>



-- 

Apache Member
Apache Karaf <http://karaf.apache.org/> Committer & PMC
OPS4J Pax Web <http://wiki.ops4j.org/display/paxweb/Pax+Web/> Committer &
Project Lead
blog <http://notizblog.nierbeck.de/>
Co-Author of Apache Karaf Cookbook <http://bit.ly/1ps9rkS>

Software Architect / Project Manager / Scrum Master

-- 
-- 
------------------
OPS4J - http://www.ops4j.org - ops4j@googlegroups.com

--- 
You received this message because you are subscribed to the Google Groups 
"OPS4J" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to ops4j+unsubscr...@googlegroups.com.
For more options, visit https://groups.google.com/d/optout.

Reply via email to