[Mod_nss-list] assistance configuring mod_nss with hardware token

Christopher Glidden cglidden at gmail.com
Thu Nov 4 21:29:03 UTC 2010


Hi All,

I am having some trouble getting mod_nss in fips mode to work with my
hardware pkcs#11 token.

I actually think I am having more of a nss.conf issue than anything between
nss and my token.  Private key and certificate fulfillment/import from my CA
seem to be just fine.

What is the best way to go about getting a little help?  What information
(config, logs, ssltap output, etc.) should I provide?

Also, I am currently using the NSS components that shipped with Red Hat 5
(although I must admit I using CentOS right now - I hope that doesn't affect
the likelihood of receiving a response).

[cglidden at el55-apache-nssmod ~]$ sudo yum info nss nss-tools mod_nss nspr
httpd | grep -C2 Version
Name       : httpd
Arch       : i386
Version    : 2.2.3
Release    : 43.el5.centos
Size       : 3.1 M
--
Name       : mod_nss
Arch       : i386
Version    : 1.0.3
Release    : 8.el5
Size       : 197 k
--
Name       : nspr
Arch       : i386
Version    : 4.7.6
Release    : 1.el5_4
Size       : 245 k
--
Name       : nss
Arch       : i386
Version    : 3.12.3.99.3
Release    : 1.el5.centos.2
Size       : 2.6 M
--
Name       : nss-tools
Arch       : i386
Version    : 3.12.3.99.3
Release    : 1.el5.centos.2
Size       : 2.9 M

Are there any known issues with these version that I should avoid right
away?  I am using these versions because my customer has indicated a
preference.  If I have a good argument for it, we'll upgrade to better
versions.

Thanks,

Chris

--
~~~~~~~~~~~~~~~~~~
  Christopher Glidden
  cglidden at gmail.com
~~~~~~~~~~~~~~~~~~
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/mod_nss-list/attachments/20101104/364493f0/attachment.htm>


More information about the Mod_nss-list mailing list