From owner-freebsd-questions Thu May 25 0:30:44 2000 Delivered-To: freebsd-questions@freebsd.org Received: from dt051n0b.san.rr.com (dt051n0b.san.rr.com [204.210.32.11]) by hub.freebsd.org (Postfix) with ESMTP id 5C75837BBD8 for ; Thu, 25 May 2000 00:30:33 -0700 (PDT) (envelope-from DougB@gorean.org) Received: from gorean.org (doug@master [10.0.0.2]) by dt051n0b.san.rr.com (8.9.3/8.9.3) with ESMTP id AAA65339; Thu, 25 May 2000 00:30:27 -0700 (PDT) (envelope-from DougB@gorean.org) Message-ID: <392CD693.131A2C76@gorean.org> Date: Thu, 25 May 2000 00:30:27 -0700 From: Doug Barton Organization: Triborough Bridge & Tunnel Authority X-Mailer: Mozilla 4.72 [en] (X11; U; FreeBSD 5.0-CURRENT-0523 i386) X-Accept-Language: en MIME-Version: 1.0 To: Andy Coates Cc: Dan Larsson , freebsd-questions@freebsd.org Subject: Re: Help! :( References: <006e01bfc5a8$59c2cee0$2a2029d4@blade> Content-Type: text/plain; charset=us-ascii Content-Transfer-Encoding: 7bit Sender: owner-freebsd-questions@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.ORG Andy Coates wrote: > > ----- Original Message ----- > From: "Dan Larsson" > To: "Andy Coates" ; > Sent: Wednesday, May 24, 2000 5:26 PM > Subject: RE: Help! :( > > > | Can anyone help me out here and suggest a plan of action? > > > > I've experienced this in the past. A hit on CTRL + C > > resumes the boot. I found the problem to be name resolution > > issues. > > Hey, > > Turned out to be apache.sh script, as I installed apache with SSL recently > and it turns out the default .sh file has a line similar to: > > apachectl startssl > /dev/null > > So I started this myself, without the redirect to null, and it starts up > asking for my secure pass phrase to decrypt my SSL keys - so thats where it > was stopping and because it was being redirected to null I couldn't see it > asking this. Removed the redirection, rebooted to make sure it was that and > now as it starts asks me for my phrase to start SSL, so I can enter it and > it continues booting happily :-) > > At least I can see whats happening now, although I don't like having to > enter the phrase on bootup as I might restart this machine remotely. I'll go > read the docs and see if there's anyway around this apart from not running > it at boot. You can decrypt the server key. This is dangerous if it's possible for some unauthorized user to get your key and your certificate and possibly sniff your traffic, or worse spoof your server and convince unsuspecting users that they are you. If this is an acceptable risk, knock yourself out. Be sure to obey the warnings to put the key and cert in a directory only root can read. Good luck, Doug -- "Live free or die" - State motto of my ancestral homeland, New Hampshire Do YOU Yahoo!? To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-questions" in the body of the message