Konstantin Khrooschev wrote:

## It is just an example, you should change the 03.pem and/or
## the path pointing to the right key/cert pair
ScepRACert      "/usr/local/OpenCA/ssl.crt/server.pem"
ScepRAKey       "/usr/local/OpenCA/ssl.crt/key.pem"
ScepRAPasswd    "RTS Test Key"

k, try to save the key unencrypted and no pwd
since i think, this is an open issue ;o)

but since the pending reply was working it seemes to work
but try without pwd and unencrypted key - i have just tested
this to be fully working

i should put this in the scep-part of the docs if its working
without pwd...

# ls -l /usr/local/OpenCA/ssl.crt/key.pem
-rw-r--r-- 1 root www-data 964 Jul 15 11:06 /usr/local/OpenCA/ssl.crt/key.pem

therefore set this to read only for www-data user, when saved unencrypted...

and this too, related to not to use a pwd for the moment
but isn't really a higher security reach, if i have the
pwd at the configs written or at the unencrypted since both
are readable for the same user...


lets see what happens ;o)


greetings dalini

--
Ives Steglich                Email: [EMAIL PROTECTED]
System Administration        Tel.:  +49 (0)3677 - 69 4382/4383
                             Fax:   +49 (0)3677 - 69 4399

Fraunhofer Institute for Digital Media Technology
Langewiesener Strasse 22
98693 Ilmenau                Email (private): [EMAIL PROTECTED]
Germany                      http://www.openca.org                      


------------------------------------------------------- This SF.Net email is sponsored by BEA Weblogic Workshop FREE Java Enterprise J2EE developer tools! Get your free copy of BEA WebLogic Workshop 8.1 today. http://ads.osdn.com/?ad_id=4721&alloc_id=10040&op=click _______________________________________________ Openca-Users mailing list [EMAIL PROTECTED] https://lists.sourceforge.net/lists/listinfo/openca-users

Reply via email to