To address the issue of different versions of OpenSSL potentially needing different certificate hashes this case will store the certificates files in /etc/certs/CA but the hashes to them will be stored in the default OpenSSL cert directory, namely /etc/openssl/certs, as listed in the default /etc/openssl/openssl.cnf file.

If we end up delivering multiple versions of OpenSSL at the same time (soemthing we hope very much to avoid if at all possible) then there will be multiple configuration files and thus multiple OpenSSL certs directories. The nature of how that is done if it turns out to be necessary will be part of a possible future case if delivery of multiple version is unavoidable.

--
Darren J Moffat
_______________________________________________
opensolaris-arc mailing list
[email protected]

Reply via email to