On Thu, 11 Oct 2001, Owen Boyle wrote:
>
> Personally, I would remove the passphrase since <flame-war>I think it is
> a waste of time</flame-war>. To do so, consult The Fine Manual:
>
> http://www.modssl.org/docs/2.8/ssl_faq.html#ToC31
>
No flames from here, but, security should be more on the minds of folks
these days, not less security. That being said, removal of the password
might well be okay, depending upon the security of the server in question.
How many folks have hands-on access to this system? How many folks have
telnet/ssh/ftp access to this system? Those are issues to be considered
when making this kind of decision.
Thanks,
Ron DuFresne
--
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
admin & senior consultant: darkstar.sysinfo.com
http://darkstar.sysinfo.com
"Cutting the space budget really restores my faith in humanity. It
eliminates dreams, goals, and ideals and lets us get straight to the
business of hate, debauchery, and self-annihilation."
-- Johnny Hart
testing, only testing, and damn good at it too!
______________________________________________________________________
Apache Interface to OpenSSL (mod_ssl) www.modssl.org
User Support Mailing List [EMAIL PROTECTED]
Automated List Manager [EMAIL PROTECTED]