SSL (patch 9)

Поиск
Список
Период
Сортировка
От Bear Giles
Тема SSL (patch 9)
Дата
Msg-id 200205250806.CAA12734@eris.coyotesong.com
обсуждение исходный текст
Ответы Re: SSL (patch 9)  (Bruce Momjian <pgman@candle.pha.pa.us>)
Re: SSL (patch 9)  (Bruce Momjian <pgman@candle.pha.pa.us>)
Список pgsql-patches
SSL patch that adds support for optional client certificates.

If the user has certificates in $HOME/.postgresql/postgresql.crt
and $HOME/.postgresql/postgresql.key exist, they are provided
to the server.  The certificate used to sign this cert must be
known to the server, in $DataDir/root.crt.  If successful, the
cert's "common name" is logged.

Client certs are not used for authentication, but they could be
via the port->peer (X509 *), port->peer_dn (char *) or
port->peer_cn (char *) fields.  Or any other function could be
used, e.g., many sites like the issuer + serial number hash.

Bear

Вложения

В списке pgsql-patches по дате отправления:

Предыдущее
От: Bear Giles
Дата:
Сообщение: SSL (patch 8)
Следующее
От: Bear Giles
Дата:
Сообщение: SSL (patch 10)