Project

General

Profile

Actions

Bug #5997

closed

Restrict KNB trusted CAs

Added by ben leinfelder almost 11 years ago. Updated almost 11 years ago.

Status:
Closed
Priority:
Normal
Category:
-
Target version:
Start date:
06/05/2013
Due date:
% Done:

0%

Estimated time:
Bugzilla-Id:

Description

Instead of trusting all commercial CAs, the KNB Member Node should only trust the DataONE and CILogon certificate authorities.

To see a list of all them that are (currently) trusted:

openssl s_client -connect knb.ecoinformatics.org:443

Actions

Also available in: Atom PDF