getting rid of apache passphrase

jan gestre freebsd.ph at gmail.com
Thu Jul 13 14:40:57 UTC 2006


On 7/13/06, Chuck Swiger <cswiger at mac.com> wrote:
>
> jan gestre wrote:
> > just want to ask if getting rid of the apache passphrase poses a
> security
> > threat, i don't want the company i worked for calling me up everytime
> they
> > cant access the webserver because the server is asking for the
> passphrase
> > everytime the box restarts du to power failure.
>
> Presumably you're talking about an Apache server using SSL where the SSL
> key
> requires a password?  Requiring a human to enter the password is more
> secure,
> but if you want the system to reboot without manual intervention, you'll
> have
> to remove the password or put it into a script...
>
> yes, i'm talking about apache with ssl/tls encryption, is that passphrase
> going to be a security issue in the internet or locally at the machine
> level? if it's machine level, i have no problem getting rid of it coz nobody
> here knows anything about unix/bsd.
>


More information about the freebsd-questions mailing list