Ives Steglich wrote:

Konstantin Khrooschev wrote:

## It is just an example, you should change the 03.pem and/or
## the path pointing to the right key/cert pair
ScepRACert      "/usr/local/OpenCA/ssl.crt/server.pem"
ScepRAKey       "/usr/local/OpenCA/ssl.crt/key.pem"
ScepRAPasswd    "RTS Test Key"

k, try to save the key unencrypted and no pwd
since i think, this is an open issue ;o)

but since the pending reply was working it seemes to work
but try without pwd and unencrypted key - i have just tested
this to be fully working

i should put this in the scep-part of the docs if its working
without pwd...

didn't help. at least no changes detected in sscep session.



# ls -l /usr/local/OpenCA/ssl.crt/key.pem
-rw-r--r-- 1 root www-data 964 Jul 15 11:06 /usr/local/OpenCA/ssl.crt/key.pem


therefore set this to read only for www-data user, when saved
unencrypted...

and this too, related to not to use a pwd for the moment
but isn't really a higher security reach, if i have the
pwd at the configs written or at the unencrypted since both
are readable for the same user...


lets see what happens ;o)


greetings dalini



--
Konstantin Khrooschev.
RTS Stock Exchange.
Network Department.




------------------------------------------------------- This SF.Net email is sponsored by BEA Weblogic Workshop FREE Java Enterprise J2EE developer tools! Get your free copy of BEA WebLogic Workshop 8.1 today. http://ads.osdn.com/?ad_id=4721&alloc_id=10040&op=click _______________________________________________ Openca-Users mailing list [EMAIL PROTECTED] https://lists.sourceforge.net/lists/listinfo/openca-users

Reply via email to