Susan wrote:
If the consumer can verify and validate the suppliers cert, as in certificate based auth, then it should work. Otherwise, you can just use regular SSL replication with password auth.I got this from the manual:Note Replication configured over SSL with certificate-based authentication will fail in the followingcases: * If the supplier's certificate is a self-signed certificate. _________ Is that still the case for FDS? Is there any way to get it working using self-signed certs?
Will that allow you to do certificate based auth, or just SSL encryption of the channel with password based auth? If so, then it's the same as regular replication with SSL and passwords without certificate based auth.If not, I'm thinking of using stunnel between both masters, then.
__________________________________________________ Do You Yahoo!?Tired of spam? Yahoo! Mail has the best spam protection around http://mail.yahoo.com-- Fedora-directory-users mailing list Fedora-directory-users@xxxxxxxxxx https://www.redhat.com/mailman/listinfo/fedora-directory-users
Attachment:
smime.p7s
Description: S/MIME Cryptographic Signature
-- Fedora-directory-users mailing list Fedora-directory-users@xxxxxxxxxx https://www.redhat.com/mailman/listinfo/fedora-directory-users