Robert Joop wrote:
> 1. our current plans for the default layout are to put everything under
> /usr/local/openca(-version)/.
> if an admin choses to put anything under /var it is their conscious
> (hopefully :-) decision.
Ok.
[...]
> 3. /var is used just for log files and spool dirs, so it is ready to
> have large amounts of data (/var/mail, /var/news), YMMV.
This should be true, but it is not on many installed systems... :(
> 4. compared to other databases, i expect a CA database to be rather
[..]
> can you buy anything smaller than a 9 GB disk today?
I agree, but think about an organization issuing 100k/200k certs per
year. Most national laws require to keep data for not less than 10
years (certificates, crls, requests, etc... ). This could lead to
quite big dbs...
--
C'you,
Massimiliano Pala
--o-------------------------------------------------------------------------
Massimiliano Pala [OpenCA Project Manager] [EMAIL PROTECTED]
[EMAIL PROTECTED]
[EMAIL PROTECTED]
http://www.openca.org Tel.: +39 (0)59 270 094
http://openca.sourceforge.net Mobile: +39 (0)347 7222 365
S/MIME Cryptographic Signature