commit | fe590c4e28e28f611162f5766681d6396d6fd59b | [log] [tgz] |
---|---|---|
author | Zbigniew Lukwinski <zbigniew.lukwinski@linux.intel.com> | Tue Dec 10 12:33:50 2019 +0100 |
committer | Zbigniew Kurzynski <zbigniew.kurzynski@intel.com> | Thu Dec 12 13:54:04 2019 +0100 |
tree | 8ca34fa5d42abbbfbb034fefb7afe680e29ec023 | |
parent | 667286e4f7dc31a9ab786307092919901adccbb5 [diff] |
Limit access permissions for authority cert directory. This patch is about limit access permissions for authority certificates directory. Additionally this patch fixes UTs issues catched here: https://gerrit.openbmc-project.xyz/c/openbmc/phosphor-certificate-manager/+/26835 and disscussed here: https://gerrit.openbmc-project.xyz/c/openbmc/phosphor-certificate-manager/+/27810 Tested: 1) All UTs passed. 2) Manually checked access permissions: root@intel-obmc:~# ls -al /etc/ssl/certs drwx------ 4 root root 80 Dec 10 12:31 . drwxr-xr-x 3 root root 80 Dec 10 12:31 .. drwx------ 2 root root 40 Dec 10 12:31 authority drwx------ 2 root root 60 Dec 10 12:31 https Signed-off-by: Zbigniew Lukwinski <zbigniew.lukwinski@linux.intel.com> Change-Id: I63c698fa776aec01eed44e91ebbae956e707d52d Signed-off-by: Zbigniew Kurzynski <zbigniew.kurzynski@intel.com>
Certificate management allows to replace the existing certificate and private key file with another (possibly CA signed) Certificate key file. Certificate management allows the user to install both the server and client certificates.
To build this package, do the following steps: 1. ./bootstrap.sh 2. ./configure ${CONFIGURE_FLAGS} 3. make To clean the repository run `./bootstrap.sh clean`.