← Back to team overview

sslug-teknik team mailing list archive

Re: TLs prob

 

On 06/01/2010, at 16.45, Leif Lende wrote:

[kliiiiiiip]

>> okay, så er det i PEM format. Men forventes der et binær DER format?
>> Er certifikatet beskyttet af et password?
> Ja, dovcot bruger et password:
> dovecot.conf:
> 
> # Disable SSL/TLS support.
> ssl_disable = no
> 
> # PEM encoded X.509 SSL/TLS certificate and private key. They're opened before
> # dropping root privileges, so keep the key file unreadable by anyone but
> # root.
> ssl_cert_file = /etc/ssl/certs/server.crt
> ssl_key_file = /etc/ssl/private/server.key
> 
> # If key file is password protected, give the password here. Alternatively
> # give it when starting dovecot with -p parameter.
> ssl_key_password = ****************
> (jeg har **** den her)

Det password skal også bruges ved alt anden brug af certifikatet. Alternativet er at lade det ligge uden password.



References