[ale] client certs for apache

James P. Kinney III jkinney at localnetsolutions.com
Tue Mar 2 18:33:24 EST 2004


I am stumped on how to properly do the following:

4 different web servers each with a ssl cert. 1 client cert that is
accepted by each server as valid to access the ssl areas of the web
sites hosted on each one.

One server/one client cert is easy. Do some ssl foo to make a server
cert and a client cert and sign the client cert with the server cert.
Park server cert securely and tell httpd.conf where it is. Import client
cert into browsers.

Do I need to set one machine as a CA, generate all certs for each server
on each individual machine, then sign each server cert by the CA cert?
Then make a client cert from the CA cert?

Too many really vague theory docs, not enough cookbook on this topic.

Any ideas?

-- 
James P. Kinney III          \Changing the mobile computing world/
CEO & Director of Engineering \          one Linux user         /
Local Net Solutions,LLC        \           at a time.          /
770-493-8244                    \.___________________________./
http://www.localnetsolutions.com

GPG ID: 829C6CA7 James P. Kinney III (M.S. Physics)
<jkinney at localnetsolutions.com>
Fingerprint = 3C9E 6366 54FC A3FE BA4D 0659 6190 ADC3 829C 6CA7
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part




More information about the Ale mailing list