Raymond Dans wrote:
> Scott wrote:
>> Subject: Re: [sipX-dev] XX-7058 Java components to use same 
>> certificates/keys as C++
>>
>> On Fri, 2009-11-27 at 13:44 -0500, Raymond Dans wrote:
>>> 2) scans our ssl/authorities directory for CA certificates and then 
>>> creates a Java truststore containing all of the CA 
>> Certificates found 
>>> as well as all of the Java installation default CA 
>> certificates (like 
>>> Verisign).
>> Keep the inclusion of the default java certs as separate as 
>> possible.  I think that in the long run we will want to use 
>> just exactly the certs we've installed in the directory.
>>
> I can eliminate them altogether.  I just thought that inclusion of them
> would help with the GoogleService and others.

We just need one particular CA for Google service.
Scott is right: in the long term there should be just one list of CAs that
all services trust.
Damian

_______________________________________________
sipx-dev mailing list [email protected]
List Archive: http://list.sipfoundry.org/archive/sipx-dev
Unsubscribe: http://list.sipfoundry.org/mailman/listinfo/sipx-dev
sipXecs IP PBX -- http://www.sipfoundry.org/

Reply via email to