source: trunk/server/fedora/config/etc/pki/tls/certs/scripts-cert.pem @ 2520

Last change on this file since 2520 was 2351, checked in by achernya, 10 years ago
Remove InCommon Root CA from certificate chain MIT recently switched to the InCommon CA, rather than the MIT CA, which resulted in Scripts serving intermediate certificates. Unfortunately, the instructions from InCommon had the certificates in the incorrect order, and also included the Root CA. The Root CA is unnecessary for a server to be sending, so removing it reduces the SSL handshake size, as well as correcting the certificate order.
File size: 4.5 KB
Line 
1From mitcert@MIT.EDU Fri Jun  1 22:02:06 2012
2Date: Tue, 29 May 2012 10:02:50 -0400
3From: mitcert@MIT.EDU
4To: achernya@mit.edu
5Subject: [help.mit.edu #2003792] certificate renewal for scripts-vhost scripts-cert.mit.edu
6Resent-Date: Sat, 2 Jun 2012 01:02:01 -0400 (EDT)
7Resent-From: Alexander Chernyakhovsky <achernya@MIT.EDU>
8Resent-To: scripts-root@mit.edu
9Resent-Subject: [help.mit.edu #2003792] certificate renewal for scripts-vhost
10 scripts-cert.mit.edu
11
12-----BEGIN CERTIFICATE-----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48-----END CERTIFICATE-----
49
50You will need to use the following Chain CA certificate:
51https://cert-manager.com/customer/InCommon/ssl?action=download&sslId=117402&format=x509IO
52
53-----BEGIN CERTIFICATE-----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80-----END CERTIFICATE-----
Note: See TracBrowser for help on using the repository browser.