Page tree

European Commission Digital

Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Div
classcol-md-9
Div
classcolwrapper

eIDAS-Node PRE- RELEASE version 2.6



Pre-release

This page contains a collection of the resources for the eIDAS-Node RELEASE version 2.6, released on 15th April 2022



Section
Column
width50%
HTML Wrap
background-color#ececec
padding20px 40px 20px 40px
border-color#c5c6c8
border-width0
border-stylesolid
height160


Download eIDAS-Node RELEASE v2.6

Action Button
textDownload
urlhttps://secure-web.cisco.com/1G1db44DRDOhUQDrtgdlX1F-AceP5V1zBgL0ZH6BoOmLM0wgcQqabT1yv1C1ZXdDozVx6DU03F-bmRNkyXSRYBN_OJNPVpB6JjrEW1JSAQkxcLPYSoJ4dTP55CkyPQtmYc0RLpeREz8eh1_kQUg8kR61KOgkEuxLMNvbthLshEgdFYfDQTvKpjZjMFjG_K6jC7ADLVL8Gei2VP4enaTpSO82ZkE1QHlObmNXqMnGASWund5L4CfLFxBhXLEjBSh7Zr6D13vUxGPKZfznozOkzX5SxLbniYG_gJB7PGWZ1RBKDlXQjcNN92ak-k9EcH_qSLWbWlocJJd6jnxe5b9J8RbVq4Qw7X7_E2XurlpsFrXghp31EJcTF0Gen3fDsm2hzdgYl5Ouge5ZxudnWzWkd4AhAloqD-TUT1l285cuNh7sAKmoADJhc9q2mEC1oa8-3DVQY0iDgI7Oimxs6XXXJ8ajLJu79yajtt--ObEtOTX2g9PaGXxCD1nhbj1DBu7-AFBYGLrevgHWg3Ig0pmOdlw/https%3A%2F%2Fec.europa.eu%2Fdigital-building-blocks%2Fartifact%2Frepository%2Feid%2Feu%2FeIDAS-node%2F2.6.0%2FeIDAS-node-2.6.0.zip

Column
width50%
HTML Wrap
background-color#ececec
padding20px 30px 20px 30px
margin0 0 0 10px
border-color#c5c6c8
border-width0
border-stylesolid
height160


Bugs, issues or suggestions?

Action Button
new-windowtrue
ideid_issue_collector
textCreate issue
classgethelpnow
urlhttps://ec.europa.eu/digital-building-blocks/tracker/plugins/servlet/desk/portal/7

or log a ticket via the eID Service Desk 

Description

Release 2.6 of the eIDAS sample implementation for Member States is an all-in-one package for the Java platform including binary distributions for WildFly, Tomcat, WebLogic, WebSphere and the source code (Maven project). This release is based on version 1.2 of the eIDAS Technical Specifications.

Main changes

  • Addition of the support for PKCS11 AKA "HSM"
  • Removal the in-code enforcement of the usage of the BouncyCastle provider
  • Upgrade of OpenSaml dependencies from version 3.4.3 to version 4.1.1.
  • Seeing as the migration to OpenSaml 4 requires an upgrade to Java 11 (11_0_20), the supported list of servers has been changed with server that can support java 11.
  • The supported list of servers is now the following :
    • Tomcat v9.0.58
    • Wildfly 23.0.2 Final (Servlet Distribution)
    • Weblogic 14.1.1.0.0
    • WebSphere Liberty 21.0.0.5 (WebProfile 8)
  • Removal of Hazelcast support
  • Simplification of the eIDAS-Node default parameters
    • Most of entries in external configuration do not need to be explicitly defined anymore.
    • SAML Engine has now default configuration.
  • Removal of stork's QAA related code
  • Improvement of (default) configuration for SAML engine
  • ConfigurationSecurityBean code cleaning
  • Replacement of JKS keystores by PKCS12 keystores inside the sources
  • Disabled support for TLSv1.0 & TLSv1.1 in Java 11 revision 11
  • New metadata signature algorithm configuration entry
  • New key encryption Agreement Method algorithm configuration Entry
  • Use SHA-256 as Digest method with RSA-OAEP encryption
  • Error page adaptation to include contact details
  • Remove validation of 2 maximum number of MDSs
  • Junit tests coverage improvements

Improvements from PRE-RELEASE 2.6:

  • Upgrade dependencies:
    • BouncyCastle: to version v. 1.70
    • Logback-classic: to v. 1.2.9
  • BORIS sector specific attributes are configured/supported in the default configuration
  • Further restricted allowed HTTP codes
  • Fixed RSA decryption 2.6 pre-release limitation

Limitations:

  • Using NIST Curve P-521 (aka secp521r1) results in different signature sizes

Other changes

  • Bug fixes
  • Security fixes
  • Source code fixes
  • Documentation fixes
  • Updates in dependencies

Interoperability

  • This Release  has been successfully tested for interoperability with previous releases of eIDAS-Node versions v2.5.0 and v1.4.5
  • This Release  was successfully tested and works with Middleware version 2.2.6
  • For a more detailed description of the changes introduced with this release please consult the section “3 Changes” found in the eIDAS-Node Migration Guide.
  • Member States can use this release as a sample implementation for demonstration purposes or they can adapt it as a basis for their own eIDAS scheme.
  • The testing tools (demo SP, demo IdP), the supplied Specific part and the Simple Protocol, should be used for demo purposes only on your local machine, and should not be deployed in your infrastructure.
  • Member States may report any issue or bug related to the eIDAS-Node release v2.6. They can do so by raising a ticket at the CEF EID Support (https://ec.europa.eu/digital-building-blocks/tracker/plugins/servlet/desk/portal/7)

Data integrity

MD5

SHA-256


Release note

HTML Wrap
border-sideleft
border-color#FFD617
border-width0PX
border-stylesolid
Section
Column
width25%

 

View file
nameRELEASE-NOTE.txt
height250

Column

Release note

Last updated 15 April 2022
HTML Wrap
classprocesspagenavbottom page-turner
Section
Column
width48%

« eIDAS-Node Integration Package

Column
width50%

eID Training »




Useful documentation 


Advanced Tables - Table Plus
columnStyleswidth:35%,width:65%,,,,
highlightColor#ECECEC
rowStylesborder-bottom: #ECECEC 2px solid,border-bottom: #ECECEC 2px solid,border-bottom: #ECECEC 2px solid,border-bottom: #ECECEC 2px solid,border-bottom: #ECECEC 2px solid,border-bottom: #ECECEC 2px solid,border-bottom: #ECECEC 2px solid,border-bottom: #ECECEC 2px solid,border-bottom: #ECECEC 2px solid,border-bottom: #ECECEC 2px solid,border-bottom: #ECECEC 2px solid,
columnTypesS,S,,,,
heading0
multiplefalse
width100%
columnAttributesstyle="border:0;width:25%",style="border:0;width:25%",style="border:0;width:25%",style="border:0;width:25%",style="border:0;width:25%",style="border:0;width:25%"
enableSortingfalse
enableHighlightingfalse
Describes how to quickly install demonstration versions of an eIDAS-Node Connector, eIDAS-Node Proxy Service, Service Provider (SP) and Identity Provider (IdP) from the distributions in this release package to enable familiarity with the DIGITAL eID software.
Facilitates migration from eIDAS-Node v2.5 to eIDAS-Node v2.6
Describes the steps involved when implementing a Basic Setup and goes on to provide detailed information required for customisation and deployment. Provides a comprehensive view of eID and its components (in terms of binaries, source code and configuration files).
Describes the installation and configuration settings for Demo Tools (SP and IdP) supplied with the package for basic testing.
Provides guidance by recommending one way in which the eIDAS-Node can be integrated into your national eID infrastructure.
Contains tables showing the error codes that could be generated by components along with a description of the error, specific behaviour and, where relevant, possible operator actions to remedy the error.
Provides information on the eID implementation of error and event logging as a building block for generating an audit trail of activity on the eIDAS Network. It describes the files that are generated, the file format, the components that are monitored and the events that are recorded.
Describes the W3C recommendations and how SAML XML encryption is implemented and integrated in eID. Encryption of the sensitive data carried in SAML 2.0 Requests and Assertions is discussed alongside the use of AEAD algorithms as essential building blocks.
eIDAS-Node Security Considerations v2.5
The latest version of this document will be shared together with the final release of eIDAS-Node v2.6. The document describes the security considerations that should be taken into account when integrating and operating the DIGITAL eIDAS-Node v2.5. 
EUPL v1.2
European Union Public License.