Public key infrastructure

Joachim Selke selke at thi.uni-hannover.de
Wed Jul 26 20:49:17 UTC 2006


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Ralf Ertzinger wrote:
>> They are generated in %post, see the last paragraph. The files
>> probably show up in rpm lists because they are marked
>> ghost/noreplace/missingok config files.
> 
> This may be a wild idea, but how about creating a self signed
> CA (by %post in the package which owns /etc/pki), and have all
> other programs that need certificates automatically create certificates
> under that CA?

That sounds good to me.

Tomorrow I am going to rewrite the draft at
<http://fedoraproject.org/wiki/PackagingDrafts/Certificates> and include
your comment and others.

Joachim
- --
B. Sc. Joachim Selke
Universität Hannover, Institut für Theoretische Informatik
Appelstraße 4, 30167 Hannover, Germany
<http://www.thi.uni-hannover.de/>
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.4 (GNU/Linux)

iD8DBQFEx9VNq7fYj4TsIUwRApt1AJ9MJjuGr/sHk935F7Q/GUdzwhApHACfd5KG
3vYhON3+dFIVgedcFDFzda4=
=8vV1
-----END PGP SIGNATURE-----




More information about the fedora-devel-list mailing list