[Fedora-directory-users] FDS & Red Hat Certificate System

Susan logastellus at yahoo.com
Wed Mar 29 21:07:01 UTC 2006


Hi, everyone.  I think this subject has been briefly raised before but I've more questions.

Can RHCS be used to hand out CA certs to Unix clients (linux/solaris)?  
Has anybody done this?
RHCS doesn't seem to be opensourced.  Is there a reliable free alternative?

The problem I'm trying to solve is that my CA cert is self-signed.  I guess even if it weren't,
the management is a little concerned about MITM attacks against the FDS, so we need a way to
verify that the server saying that it's our FDS really is the FDS.  Right now no certs are
deployed on the clients, we're using them only for SSL traffic encryption. 

What's the best way to go about doing this?  I don't want to manually create/deploy dozens of
certs for various clients.  I also need a way to implement CRL somehow, in case a box is
comprosmised.

Thank you.

__________________________________________________
Do You Yahoo!?
Tired of spam?  Yahoo! Mail has the best spam protection around 
http://mail.yahoo.com 




More information about the Fedora-directory-users mailing list