Hi,

Just to follow up a point:

> On 8 Jun 2017, at 5:10 am, Avi Miller <[email protected]> wrote:
> 
> # rpm -qlp 
> /root/ssl-build/swksvr/rhn-org-httpd-ssl-key-pair-swksvr-1.0-rev.noarch.rpm
> 
> /etc/httpd/conf/ssl.crt/server.crt
> /etc/httpd/conf/ssl.csr/server.csr
> /etc/httpd/conf/ssl.key/server.key
> /etc/pki/spacewalk/jabberd/server.pem

If you check /etc/jabberd/c2s.xml on a Spacewalk server, you’ll see that the 
configuration is changed to point to the updated server.pem provided by the 
RPM, not /etc/jabberd/server.pem:

<id require-starttls="false" pemfile="/etc/pki/spacewalk/jabberd/server.pem" 
realm="" register-enable="true”>spacewalk.domain.com</id>

So, client-to-server connections use the Spacewalk generated server.pem.

Cheers,
Avi

--
Oracle <http://www.oracle.com>
Avi Miller | Product Management Director | +61 (3) 8616 3496
Oracle Linux and Virtualization
417 St Kilda Road, Melbourne, Victoria 3004 Australia


_______________________________________________
Spacewalk-list mailing list
[email protected]
https://www.redhat.com/mailman/listinfo/spacewalk-list

Reply via email to