Issue #1419 has been updated by luke.

Status changed from Needs design decision to Closed

This was fixed when caching was redesigned -- the local host retrieves the CRL 
from the server automatically and caches it locally.
----------------------------------------
Bug #1419: CRL distribution needs to be rethought
http://reductivelabs.com/redmine/issues/show/1419

Author: luke
Status: Closed
Priority: Normal
Assigned to: luke
Category: SSL
Target version: 0.25.0
Complexity: Medium
Patch: None
Affected version: 0.24.4
Keywords: ssl crl ca


In the master branch, CRLs are automatically distributed.  However, the 
distribution hasn't been thought out as much as it needs.

At the least, the CRL caching needs to be resolved -- how often should they 
expire?

Also, should the clients be talking directly to the CA, or should they be 
getting the CRL from the server?


----------------------------------------
You have received this notification because you have either subscribed to it, 
or are involved in it.
To change your notification preferences, please click here: 
http://reductivelabs.com/redmine/my/account

--~--~---------~--~----~------------~-------~--~----~
You received this message because you are subscribed to the Google Groups 
"Puppet Bugs" group.
To post to this group, send email to [email protected]
To unsubscribe from this group, send email to [EMAIL PROTECTED]
For more options, visit this group at 
http://groups.google.com/group/puppet-bugs?hl=en
-~----------~----~----~----~------~----~------~--~---

Reply via email to