How can App Server maintain CRL in keystore
\ tatonlto (7 May 2008)
. \ Gleb Paharenko (9 May 2008)

1 msgPhotos and Presentation Materials from HITBSecC...
9 msghow to convert JAR file to source code
3 msgTools for code review JAVA source codes
1 msgT2'08: Call for Papers 2008
1 msgEUSecWest CFP Closes April 14th (conf May 21/22...
2 msgAdministrivia: Webappsec Vendor Directory
8 msgComputer Security Videos
3 msgRe: Top webappsec testing vendors?
1 msgRe: [Owasp-webscarab] MITM proxies, Ontologies,...
8 msgTop webapp pentesting vendors?
1 msgPhD Positions in Language-based Security at Cha...
19 msgOpenID and the web
1 msgCanSecWest 2008 PWN2OWN - Mar 26-28
1 msg[MSA02240108] IE7 allows overwriting of several...
1 msg[MSA01240108] IE7 Transfer-Encoding: chunked al...
1 msgRelease of webshag 1.00!
3 msgCSRF attack in Firefox
7 msgweb application scanning tool - any unsecure de...
5 msgPHP Security
Subject:Re: How can App Server maintain CRL in keystore
Group:Web-app-security
From:Gleb Paharenko
Date:9 May 2008


 
Hi.

From my experience adding a smart SSL staff to J2EE servers is a
difficult task, usually they do no
support features like attribute filtering, specifying allowed crypto
algorithms, crls etc. But AFAIK you can
link your app server with JAAS which should support a lot of security features.

2008/5/7 <tatonlto>:
> Hi All,
>
>
>
> currently i store the web clients certificates in App Server's keystore. (I am using WebLogic and Java Keystore)
>
> so that the server only process request from trusted clients.
>
>
> any easy way to update the keystore with CA's CRL ?
>
>
>
> Thanks a lot ~
>
> E.L.
>
> -------------------------------------------------------------------------
> Sponsored by: Watchfire
> Methodologies & Tools for Web Application Security Assessment
> With the rapid rise in the number and types of security threats, web application security assessments should be considered a crucial phase in the development of any web application. What methodology should be followed? What tools can accelerate the assessment process? Download this Whitepaper today!
>
> https://www.watchfire.com/securearea/whitepapers.aspx?id=70170000000940F
> -------------------------------------------------------------------------
>
>



--
Best regards.
Gleb Pakharenko.
http://gpaharenko.livejournal.com

-------------------------------------------------------------------------
Sponsored by: Watchfire
Methodologies & Tools for Web Application Security Assessment
With the rapid rise in the number and types of security threats, web application security assessments should be considered a crucial phase in the development of any web application. What methodology should be followed? What tools can accelerate the assessment process? Download this Whitepaper today!

https://www.watchfire.com/securearea/whitepapers.aspx?id=70170000000940F
-------------------------------------------------------------------------



© 2004-2008 readlist.com