Hi all,

there was an advice on the devel list that the configurationfiles are worldreadable and include passphrases (LDAP). This is fixed in 0.9.1.3 and CVS HEAD. The new release is tagged in CVS as openca_0_9_1_3.

You can fix the problem manually:

chown openca_user:httpd_group OPENCADIR/etc/servers/*.conf
chmod 640 OPENCADIR/etc/servers/*.conf

Thanks to Tommaso Cucinotta for the hint.

Best regards

Michael
--
-------------------------------------------------------------------
Michael Bell                   Email: [EMAIL PROTECTED]
ZE Computer- und Medienservice            Tel.: +49 (0)30-2093 2482
(Computing Centre)                        Fax:  +49 (0)30-2093 2704
Humboldt-University of Berlin
Unter den Linden 6
10099 Berlin                   Email (private): [EMAIL PROTECTED]
Germany                                       http://www.openca.org



-------------------------------------------------------
This SF.net email is sponsored by Dice.com.
Did you know that Dice has over 25,000 tech jobs available today? From
careers in IT to Engineering to Tech Sales, Dice has tech jobs from the
best hiring companies. http://www.dice.com/index.epl?rel_code=104
_______________________________________________
Openca-Users mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/openca-users

Reply via email to