Re: Problems with CA-Certifcates
"Keller Kind" <[email protected]>
| Newsgroups | gmane.comp.apache.mod-ssl.user |
|---|---|
| Message-ID | <[email protected]> |
2. Yes i know, that i can have more than one certificate in a PEM-file. That is used for the SSLCACertificateFile Option. But this didnt solve the problem. There is no difference between having more than 250 single certificate files or one file with 250 certificates. In the SSL-Handshake the Server sends to the Client, which CAs he accepts. This Massage seems to be malformed when there are too many CAs. Any Ideas...? Fought, Richard schrieb: >1. I believe the server reads the CA cert into memory at startup for a >couple of reasons: to prevent unnecessary disk access, and probably as a >security measure as well. If your cert is password protected, you might >want an admin to type it in and startup is the perfect time to do it. > >2. Maybe it is a # of files limitation? If I'm not mistaken, you can >have more than one certificate in a PEM file. Maybe try to combine >them. > >Rich >______________________________________________________________________ >Apache Interface to OpenSSL (mod_ssl) www.modssl.org >User Support Mailing List [email protected] >Automated List Manager [email protected] > > > > _________________________________________________________________ Sie suchen E-Mails, Dokumente oder Fotos? Die neue MSN Suche Toolbar mit Windows-Desktopsuche liefert in sekundenschnelle Ergebnisse. Jetzt neu! http://desktop.msn.de/ Jetzt gratis downloaden! ______________________________________________________________________ Apache Interface to OpenSSL (mod_ssl) www.modssl.org User Support Mailing List [email protected] Automated List Manager [email protected]