Robert Joop wrote:

> 1. our current plans for the default layout are to put everything under
>   /usr/local/openca(-version)/.
>   if an admin choses to put anything under /var it is their conscious
>   (hopefully :-) decision.

Ok.

[...]
> 3. /var is used just for log files and spool dirs, so it is ready to
>   have large amounts of data (/var/mail, /var/news), YMMV.

This should be true, but it is not on many installed systems... :(

> 4. compared to other databases, i expect a CA database to be rather
[..]
>   can you buy anything smaller than a 9 GB disk today?

I agree, but think about an organization issuing 100k/200k certs per
year. Most national laws require to keep data for not less than 10
years (certificates, crls, requests, etc... ). This could lead to
quite big dbs...

-- 

C'you,

        Massimiliano Pala

--o-------------------------------------------------------------------------
Massimiliano Pala [OpenCA Project Manager]                  [EMAIL PROTECTED]
                                                          [EMAIL PROTECTED]
                                                     [EMAIL PROTECTED]
http://www.openca.org                            Tel.:   +39 (0)59  270  094
http://openca.sourceforge.net                    Mobile: +39 (0)347 7222 365

S/MIME Cryptographic Signature

Reply via email to