Hi, Just to follow up a point:
> On 8 Jun 2017, at 5:10 am, Avi Miller <[email protected]> wrote: > > # rpm -qlp > /root/ssl-build/swksvr/rhn-org-httpd-ssl-key-pair-swksvr-1.0-rev.noarch.rpm > > /etc/httpd/conf/ssl.crt/server.crt > /etc/httpd/conf/ssl.csr/server.csr > /etc/httpd/conf/ssl.key/server.key > /etc/pki/spacewalk/jabberd/server.pem If you check /etc/jabberd/c2s.xml on a Spacewalk server, you’ll see that the configuration is changed to point to the updated server.pem provided by the RPM, not /etc/jabberd/server.pem: <id require-starttls="false" pemfile="/etc/pki/spacewalk/jabberd/server.pem" realm="" register-enable="true”>spacewalk.domain.com</id> So, client-to-server connections use the Spacewalk generated server.pem. Cheers, Avi -- Oracle <http://www.oracle.com> Avi Miller | Product Management Director | +61 (3) 8616 3496 Oracle Linux and Virtualization 417 St Kilda Road, Melbourne, Victoria 3004 Australia _______________________________________________ Spacewalk-list mailing list [email protected] https://www.redhat.com/mailman/listinfo/spacewalk-list
