Re: [GENERAL] Trust intermediate CA for client certificates

Поиск
Список
Период
Сортировка
От Bruce Momjian
Тема Re: [GENERAL] Trust intermediate CA for client certificates
Дата
Msg-id 20130319122823.GB1327@momjian.us
обсуждение исходный текст
Ответ на Re: Trust intermediate CA for client certificates  (Stephen Frost <sfrost@snowman.net>)
Список pgsql-hackers
On Tue, Mar 19, 2013 at 01:46:32AM -0400, Stephen Frost wrote:
> > I guess that suggests we should be calling this something like
> > 'ssl_authorized_client_roots'.
>
> I'm no longer convinced that this really makes sense and I'm a bit
> worried about the simple authentication issue which I thought was at the
> heart of this concern.  Is there anything there that you see as being an
> issue with what we're doing currently..?

I too am worried that make SSL even more flexible will make simple setups
more complex to setup.

--
  Bruce Momjian  <bruce@momjian.us>        http://momjian.us
  EnterpriseDB                             http://enterprisedb.com

  + It's impossible for everything to be true. +


В списке pgsql-hackers по дате отправления:

Предыдущее
От: Magnus Hagander
Дата:
Сообщение: Re: backward incompatible pg_basebackup and pg_receivexlog
Следующее
От: Stephen Frost
Дата:
Сообщение: Re: Trust intermediate CA for client certificates