query on files under /etc/raddb/certs

SIMON BABY simonkbaby at gmail.com
Thu Nov 12 20:44:59 CET 2020


Hi Alan,

Thank you for replying to me. So if, I don't need to create certs and keys
Can I delete all those files (To make them more secure by not creating any
cert and key by someone who can hack) . I have some static certs and key
files.

Regards
Simon

On Thu, Nov 12, 2020 at 11:01 AM Alan DeKok <aland at deployingradius.com>
wrote:

>
>
> > On Nov 12, 2020, at 1:43 PM, SIMON BABY <simonkbaby at gmail.com> wrote:
> >
> > Hello,
> >
> > I see the files below are generated under /etc/raddb/certs directory. Can
> > someone  explain to me the usage of these files? Our system is very
> secure
> > and did not want to create certs and keys dynamically.
>
>   There's a README in that directory which explains how to create
> certificates.  It also explains what the various files are for.
>
> > -rw-r--r-- 1 root 0 4393 Nov  5 18:47 01.pem
> > -rw-r--r-- 1 root 0 4370 Nov  5 18:47 02.pem
> > -rw-r----- 1 root 0 6155 Nov  5 18:42 Makefile
> > -rw-r----- 1 root 0 8714 Nov  5 18:42 README
>
>   Oh look, a "README".  Perhaps it should be read?
>
>   As for you "do not want to create certs and keys dynamically", well, the
> server doesn't randomly create certificates and keys.  It only does so when
> you tell it to.
>
>   So.... if you don't want to create certs and keys, then don't create the
> certs and keys.  It's that simple.
>
>   Alan DeKok.
>
>
> -
> List info/subscribe/unsubscribe? See
> http://www.freeradius.org/list/users.html


More information about the Freeradius-Users mailing list