libs-base/Resources/GSTLS
Richard Frith-MacDonald a5a4100f1f add note about converting keys to standard format.
git-svn-id: svn+ssh://svn.gna.org/svn/gnustep/libs/base/trunk@35653 72102866-910b-0410-8b05-ffd578937521
2012-10-08 11:12:36 +00:00
..
ca-certificates.crt More SSL/TLS tweaks 2012-10-01 12:05:44 +00:00
README add note about converting keys to standard format. 2012-10-08 11:12:36 +00:00

Files here are for TLS/SSL certificate verification.

ca-certificates.crt
        a list of PEM encoded certificates of trusted authorities

        NB. This is just the list of trusted authorities from my personal
        machine, it may bot be suitable for you ... please replace/remove
        to meet your own needs.

revoke.crl

        may be set to a revocation list for certificates which have been
        revoked by the trusted authorities.
        At present, no revocation list is provided.

You may want to put keys here too ...if you have an openssl 'traditional' style
key you may (depending on your version of gnutls: newer versions can read
openssl specific keys) need to convert it to the standard PKCS8 format.
You can use openssl to do that as follows:

openssl pkcs8 -topk8 -v2 des3 -in old_key.pem -out new_key.pem

You will be asked (3 times) for the password for the key, as the tool needs to
decrypt it and encrypt it again in standard format.