[Freeipa-devel] [PATCH] 285 CRL publishing

Rob Crittenden rcritten at redhat.com
Tue Nov 17 20:06:00 UTC 2009


This enables CRL publishing by dogtag to a place where Apache can get 
the files.

I have to do a couple of tricks here because dogtag is an optional 
component. This is why in the installer I first see if the dogtag 
SELinux policy is installed and if not add it. Similarly the installer 
will remove it upon uninstall.

The policy itself just lets dogtag write to some Apache-labeled 
directories. dogtag uses symlinks to mark the latest CRL hence the 
permissions for links.

rob
-------------- next part --------------
A non-text attachment was scrubbed...
Name: freeipa-285-crl.patch
Type: application/mbox
Size: 5620 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/freeipa-devel/attachments/20091117/304272b3/attachment.mbox>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 3245 bytes
Desc: S/MIME Cryptographic Signature
URL: <http://listman.redhat.com/archives/freeipa-devel/attachments/20091117/304272b3/attachment.bin>


More information about the Freeipa-devel mailing list