Print

Print


It's likely not that simple. I do know that OpenSSL is very finicky on how it treats the cert and CRLs and for CRLs you have to go through hoops to refresh them. Cert renewal is probably no less easy. I suppose that's why Apache doesn't renew certs as well and has to get restarted periodically.  So, this will take a bit of research to see how we can do this without breaking OpenSSL.

-- 
Reply to this email directly or view it on GitHub:
https://github.com/xrootd/xrootd/issues/1678#issuecomment-1096974080
You are receiving this because you are subscribed to this thread.

Message ID: <[log in to unmask]>

########################################################################
Use REPLY-ALL to reply to list

To unsubscribe from the XROOTD-DEV list, click the following link:
https://listserv.slac.stanford.edu/cgi-bin/wa?SUBED1=XROOTD-DEV&A=1