From owner-freebsd-isp Wed Jan 28 10:56:28 1998 Return-Path: Received: (from majordom@localhost) by hub.freebsd.org (8.8.8/8.8.8) id KAA26713 for freebsd-isp-outgoing; Wed, 28 Jan 1998 10:56:28 -0800 (PST) (envelope-from owner-freebsd-isp@FreeBSD.ORG) Received: from news1.gtn.com (news1.gtn.com [192.109.159.3]) by hub.freebsd.org (8.8.8/8.8.8) with ESMTP id KAA26698 for ; Wed, 28 Jan 1998 10:56:21 -0800 (PST) (envelope-from andreas@klemm.gtn.com) Received: (from uucp@localhost) by news1.gtn.com (8.8.6/8.8.6) with UUCP id SAA07464; Wed, 28 Jan 1998 18:30:14 +0100 (MET) Received: (from andreas@localhost) by klemm.gtn.com (8.8.8/8.8.7) id SAA12364; Wed, 28 Jan 1998 18:14:53 +0100 (CET) (envelope-from andreas) Message-ID: <19980128181453.63570@klemm.gtn.com> Date: Wed, 28 Jan 1998 18:14:53 +0100 From: Andreas Klemm To: pstewart Cc: isp@FreeBSD.ORG Subject: Re: apache-ssl, how to generate an unlimited certificate with SSL References: <19980128100812.03783@klemm.gtn.com> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii X-Mailer: Mutt 0.88 In-Reply-To: ; from pstewart on Wed, Jan 28, 1998 at 07:00:07AM -0500 X-Disclaimer: A free society is one where it is safe to be unpopular X-Operating-System: FreeBSD 3.0-CURRENT SMP Sender: owner-freebsd-isp@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.org On Wed, Jan 28, 1998 at 07:00:07AM -0500, pstewart wrote: > The default setting is in your ssleay.cnf file... you can change the > default in there to 365 days if you like.. possibly more..:) Thanks ! BTW, there are two values default_days = 365 # how long to certify for default_crl_days= 31 # how long before next CRL What's a CRL, is that the value that I have to increase ? Possibly I created the certificate wrong ?! The first value already is 365 days, but so long the certificate wasn't active. I used the command and options given in the apache-ssl Makefile of the src directory.... Andreas /// -- Andreas Klemm powered by ,,symmetric multiprocessor FreeBSD''