summaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
...
* Add in support for older versions of NSS that don't have the functionrcritten2005-07-201-0/+7
| | | | | | PK11_TokenKeyGenWithFlags(). Older versions of NSS will only work with software certificates when using nss_pcache. The workaround is to store the token passwords in a file instead.
* Fix lunasa problem. The key we generate must work for both encryption andrrelyea2005-07-061-2/+2
| | | | | | decryption. By default generate key only returns encryption keys. bob
* Earlier versions of Apache 2.0 (such as on RHEL 3) don't supportrcritten2005-06-291-0/+2
| | | | AP_BUCKET_IS_EOC. Define around it.
* Add NSS database prefix supportrcritten2005-06-296-12/+48
|
* Zero length file for now so autoconf will shut up.rcritten2005-06-071-0/+0
|
* Reflect new Directive naming conventionrcritten2005-06-072-64/+88
|
* Basic documentation on the mod_nss module.rcritten2005-06-031-0/+908
|
* Fix formatting and variable name in error message.rcritten2005-06-031-2/+2
|
* Initialize enforcement of valid certificates to true.rcritten2005-06-031-0/+1
|
* Remove message about co-existing with mod_ssl, that works ok now.rcritten2005-06-032-18/+2
| | | | Also fix nasty typo.
* Changed function and configuration names so mod_nss can peacefullyrcritten2005-05-3123-1142/+1102
| | | | co-exist with mod_ssl.
* Generate gencert so we can set the NSS and NSPR directories and makercritten2005-05-254-11/+66
| | | | | things easier for the user. Also try really, really hard to get the FQDN so we can create a host-specific self-signed certificate.
* Add support for the SSL_CLIENT_CERT_CHAIN_ environment variable.rcritten2005-05-242-13/+90
| | | | | | SSL_CLIENT_I_DN_ was incorrectly parsing the client certificate subject instead of the issuer subject. Print out PEM files the same way as OpenSSL
* When doing SSLVerifyCert require then we need to always require thercritten2005-05-241-1/+1
| | | | certificate to match what OpenSSL does.
* Terminate echo'd stringsrcritten2005-05-241-2/+2
|
* Enable more ciphers than just fips_3des_sha.rcritten2005-05-241-1/+1
|
* First crack at migrating an existing ssl.conf to nss.conf.rcritten2005-05-231-0/+306
|
* Remove check for Define SSLrcritten2005-05-231-11/+15
| | | | | Comment out a few entries that the average user won't need Do some general cleanups and fixups
* Add support for apr-config.rcritten2005-05-234-177/+356
| | | | | | | Print out some nice notes alerting the user to verify that mod_ssl is disabled. Tell the user about gencert so they can generate their own self-signed certificate.
* The path to the cert database was hardcoded, use the value passed inrcritten2005-05-201-1/+6
| | | | by Apache.
* By default, don't start with an expired cert. Add optionrcritten2005-05-204-14/+34
| | | | | | SSLEnforceValid Cert on/off to allow one to start with a bad cert. Fix up some error messages and add in a missing cipher.
* Initial import of mod_nssrcritten2005-05-1743-0/+29864