[SAC] [OSGeo] #2521: Change secure to use dedicated cert and set up script to copy the cert

OSGeo trac_osgeo at osgeo.org
Tue Dec 1 09:52:11 PST 2020


#2521: Change secure to use dedicated cert and set up script to copy the cert
---------------------------+----------------------------------------
 Reporter:  robe           |       Owner:  sac@…
     Type:  task           |      Status:  new
 Priority:  normal         |   Milestone:  Sysadmin Contract 2020-II
Component:  Systems Admin  |  Resolution:
 Keywords:                 |
---------------------------+----------------------------------------

Comment (by strk):

 Answering myself: LDAP is different in that it's NOT using the certificate
 in a web server but a LDAP server. We could have nginx indeed respond to
 http requests for the LDAP server IP address for the sole purpose of doing
 http validation for letsencrypt. About the copy I wonder if we should be
 instead MOUNTING the certificate directory directly, instead of copying it
 ?

-- 
Ticket URL: <https://trac.osgeo.org/osgeo/ticket/2521#comment:3>
OSGeo <https://osgeo.org/>
OSGeo committee and general foundation issue tracker.


More information about the Sac mailing list