[clc-devel] Common place for SSL certs/keys?
Hi folks, several ports in contrib place SSL certificates and keys in /etc/ssl/certs/$server resp /etc/ssl/private/$server. Examples include dovecot and vsftpd (they actually might be the only ones ;D). Apache however uses /etc/httpd/ssl.cert resp /etc/httpd/ssl.key. I suggest to make Apache store its certificates/keys in /etc/ssl as well. Comments? Regards, Tilman -- learn to quote: http://www.netmeister.org/news/learn2quote.html
On Tue, Aug 30, 2005 at 08:35:49PM +0200, Tilman Sauerbeck wrote:
Hi folks, several ports in contrib place SSL certificates and keys in /etc/ssl/certs/$server resp /etc/ssl/private/$server. Examples include dovecot and vsftpd (they actually might be the only ones ;D).
They aren't, uw-imap use /etc/ssl/certs too ;-)
Apache however uses /etc/httpd/ssl.cert resp /etc/httpd/ssl.key. I suggest to make Apache store its certificates/keys in /etc/ssl as well.
Sounds like a good idea to me. If there are no objections against it, I'll change the apache port with the next release to use these "standard" directories for certificates too. Greetings Jürgen -- Juergen Daubert | mailto:jue@jue.li Korb, Germany | http://jue.li/crux
Hi, On Tue, Aug 30, 2005 at 21:38:38 +0200, Juergen Daubert wrote:
On Tue, Aug 30, 2005 at 08:35:49PM +0200, Tilman Sauerbeck wrote:
Hi folks, several ports in contrib place SSL certificates and keys in /etc/ssl/certs/$server resp /etc/ssl/private/$server. Examples include dovecot and vsftpd (they actually might be the only ones ;D). [...] Apache however uses /etc/httpd/ssl.cert resp /etc/httpd/ssl.key. I suggest to make Apache store its certificates/keys in /etc/ssl as well.
Sounds like a good idea to me. [...] I second this, and would also like to suggest adding something like an "SSL concepts for CRUX" page to the (current or future) wiki and maybe even to the package guidelines.
Kind regards, Johannes -- Johannes Winkelmann mailto:jw@tks6.net Bern, Switzerland http://jw.tks6.net
On Tue, 30 Aug 2005, Johannes Winkelmann wrote:
Hi,
On Tue, Aug 30, 2005 at 21:38:38 +0200, Juergen Daubert wrote:
On Tue, Aug 30, 2005 at 08:35:49PM +0200, Tilman Sauerbeck wrote:
Hi folks, several ports in contrib place SSL certificates and keys in /etc/ssl/certs/$server resp /etc/ssl/private/$server. Examples include dovecot and vsftpd (they actually might be the only ones ;D). [...] Apache however uses /etc/httpd/ssl.cert resp /etc/httpd/ssl.key. I suggest to make Apache store its certificates/keys in /etc/ssl as well.
Sounds like a good idea to me. [...] I second this, and would also like to suggest adding something like an "SSL concepts for CRUX" page to the (current or future) wiki and maybe even to the package guidelines.
Sounds like a good idea. /Per
participants (4)
-
Johannes Winkelmann
-
Juergen Daubert
-
Per Liden
-
Tilman Sauerbeck