Re: TLS "trusted-dn" Question

David Hauck <[email protected]> Wed, 5 Apr 2023 00:21:56 +0000
Newsgroups gmane.comp.syslog-ng
Message-ID <SA1P110MB10051D83B21D5F19BB2D2A6BA4909@SA1P110MB1005.NAMP110.PROD.OUTLOOK.COM>
Hi László,
 
Great, thx, I'll give this a try too (so the CA bundle must already exist - no support for using the target as defined by ca-dir()?).
 
Regards,
-David
 
On Tuesday, April 04, 2023 1:43 PM, László Várady <[email protected]> wrote:
> Hi,
> 
>> Not exactly sure how I’d wrap all of key-file(), cert-file(), and
>> ca-dir() (all certs) values into a single pfx file? Do you happen to
>> know how this ca be done (with openssl presumably)?
>> 
> 
> I usually do this with the following openssl command:
> 
> |openssl pkcs12 -export -inkey my.key -in my.crt -certfile ca.crt -out
> my.p12|
>
> --
> László Várady||
______________________________________________________________________________
Member info: https://lists.balabit.hu/mailman/listinfo/syslog-ng
Documentation: http://www.balabit.com/support/documentation/?product=syslog-ng
FAQ: http://www.balabit.com/wiki/syslog-ng-faq