[389-devel] Please review: [Bug 663752] Cert renewal for attrcrypt and encchangelog

Noriko Hosoi nhosoi at redhat.com
Wed Jan 12 02:58:47 UTC 2011


https://bugzilla.redhat.com/show_bug.cgi?id=663752

https://bugzilla.redhat.com/attachment.cgi?id=472939&action=diff
https://bugzilla.redhat.com/attachment.cgi?id=472939&action=edit

Description: In fixingBug 182507  <https://bugzilla.redhat.com/show_bug.cgi?id=182507>, the feature to encrypt changelogs
had been introduced. The changelog encryption depends on the server
certificate as the attrcrypt does.  When the server certificate is
renewed, the encrypted changelog won't be decrypted.  This patch
implements/completes the feature to export and import the contents
of the changelog to provide the scenario to update the encrypted
changelogs along with the cert renewal.

See also this section for the steps to export/import changelogs.
http://directory.fedoraproject.org/wiki/Changelog_Encryption#Steps_for_Certificate_Renewal

-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.fedoraproject.org/pipermail/389-devel/attachments/20110111/d729a196/attachment.html 


More information about the 389-devel mailing list