Re: SSL tests failing with "ee key too small" error on Debian SID

Поиск
Список
Период
Сортировка
От Michael Paquier
Тема Re: SSL tests failing with "ee key too small" error on Debian SID
Дата
Msg-id 20181126003556.GF1776@paquier.xyz
обсуждение исходный текст
Ответ на Re: SSL tests failing with "ee key too small" error on Debian SID  (Thomas Munro <thomas.munro@enterprisedb.com>)
Ответы Re: SSL tests failing with "ee key too small" error on Debian SID  (Peter Eisentraut <peter.eisentraut@2ndquadrant.com>)
Список pgsql-hackers
On Mon, Nov 26, 2018 at 01:17:24PM +1300, Thomas Munro wrote:
> On Wed, Oct 3, 2018 at 1:32 PM Michael Paquier <michael@paquier.xyz> wrote:
>> I find your suggestion quite tempting at the end instead of having to
>> tweak the global system's configuration.  That should normally work with
>> any configuration.  This would require regenerating the certs in the
>> tree.  Any thoughts from others?
>
> I don't really have opinion here, but I wanted to point out that
> src/test/ldap/t/001_auth.pl creates new certs on the fly, which is a
> bit inconsistent with the SSL test's approach of certs-in-the-tree.
> Which is better?

When going up to 2k, it takes longer to generate the keys than to run
the tests, so keeping them in the tree looks like a pretty good gain to
me.
--
Michael

Вложения

В списке pgsql-hackers по дате отправления:

Предыдущее
От: Michael Paquier
Дата:
Сообщение: Re: pgsql: Add PGXS options to control TAP and isolation tests
Следующее
От: Tom Lane
Дата:
Сообщение: Re: csv format for psql