Re: Should I enable STARTTLS for S2S in ejabberd

Peter Saint-Andre <[email protected]>
Newsgroups gmane.network.jabber.admin
Message-ID <[email protected]>
Damjan wrote:
>> No, but you can get a free CA-issued cert here:
>>
>> http://xmpp.org/ca/
> 
> I have 2 questions, 
> 
> 1. will the xmpp clients trust this certificate by default?

Which clients? Most of the bigger clients trust the cert by default, but
it's possible that some of the smaller or older clients do not.

> 2. on the page http://xmpp.org/ca/installation.shtml it's suggested to
> download http://cert.startcom.org/sub.class1.xmpp.ca.crt and
> http://cert.startcom.org/ca.crt
> shouldn't those certificates be served over https?

It's probably a good idea. I've passed that suggestion along to the
folks at StartCom.

Peter

-- 
Peter Saint-Andre
https://stpeter.im/


_______________________________________________
JAdmin mailing list
FAQ: http://www.jabber.org/discussion-lists/jadmin-faq
Forum: http://www.jabberforum.org/forumdisplay.php?f=19
Info: http://mail.jabber.org/mailman/listinfo/jadmin
Unsubscribe: [email protected]
_______________________________________________
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.