httpd-users mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From Krist van Besien <krist.vanbes...@gmail.com>
Subject Re: [users@httpd] Shell Script to automatically start Apache with SSL passphrase?
Date Tue, 28 Apr 2009 07:59:11 GMT
On Tue, Apr 28, 2009 at 8:05 AM, Mike Lyon <mike.lyon@gmail.com> wrote:
> So I would be able to create new keys without having to get new certs?

No, you don't generate new keys (that would break your cert) but you
can remove the pasphrase from the key. Make sure only root can read
the key. This will even give you better security than relying on a
script to provide a password.
See the docs here:
http://httpd.apache.org/docs/2.2/ssl/ssl_faq.html#removepassphrase

Krist

-- 
krist.vanbesien@gmail.com
krist@vanbesien.org
Bremgarten b. Bern, Switzerland
--
A: It reverses the normal flow of conversation.
Q: What's wrong with top-posting?
A: Top-posting.
Q: What's the biggest scourge on plain text email discussions?

---------------------------------------------------------------------
The official User-To-User support forum of the Apache HTTP Server Project.
See <URL:http://httpd.apache.org/userslist.html> for more info.
To unsubscribe, e-mail: users-unsubscribe@httpd.apache.org
   "   from the digest: users-digest-unsubscribe@httpd.apache.org
For additional commands, e-mail: users-help@httpd.apache.org


Mime
View raw message