On Wed, Jan 09, 2013 at 09:43:54PM +0200, Oleksii Shevchuk wrote:
> > - systemd-journal-gatewayd --trust ca.cert
> >   will cause the daemon to require clients to present a client
> >   certificate signed by this authority.
> 
> Subject/CN whitelist and/or CRL/OCSP/etc should be used for this use-case.
Sure, in principle yes, and this can be added later. But for the normal
use case, where you just want to browse messages from one computer
and another computer under your control, this is overkill.

Zbyszek


_______________________________________________
systemd-devel mailing list
systemd-devel@lists.freedesktop.org
http://lists.freedesktop.org/mailman/listinfo/systemd-devel

Reply via email to