diff options
author | tilghman <tilghman@f38db490-d61c-443f-a65b-d21fe96a405b> | 2008-04-08 16:56:43 +0000 |
---|---|---|
committer | tilghman <tilghman@f38db490-d61c-443f-a65b-d21fe96a405b> | 2008-04-08 16:56:43 +0000 |
commit | 65d1d68add4b570fa88498bcf3f10a1a02431d7b (patch) | |
tree | 3021ac4dacc0ad4b8a1bcf884bb60b7e6e32220d /contrib | |
parent | bab52dfffc3d68ef333c1f70f1ded747205e7e94 (diff) |
Merged revisions 113400 via svnmerge from
https://origsvn.digium.com/svn/asterisk/trunk
................
r113400 | tilghman | 2008-04-08 11:54:21 -0500 (Tue, 08 Apr 2008) | 14 lines
Merged revisions 113399 via svnmerge from
https://origsvn.digium.com/svn/asterisk/branches/1.4
........
r113399 | tilghman | 2008-04-08 11:51:28 -0500 (Tue, 08 Apr 2008) | 6 lines
Add security note on astgenkey's manpage.
(closes issue #12373)
Reported by: lmamane
Patches:
20080406__bug12373.diff.txt uploaded by Corydon76 (license 14)
........
................
git-svn-id: http://svn.digium.com/svn/asterisk/branches/1.6.0@113401 f38db490-d61c-443f-a65b-d21fe96a405b
Diffstat (limited to 'contrib')
-rw-r--r-- | contrib/scripts/astgenkey.8 | 15 |
1 files changed, 15 insertions, 0 deletions
diff --git a/contrib/scripts/astgenkey.8 b/contrib/scripts/astgenkey.8 index 8f8325982..328a4d259 100644 --- a/contrib/scripts/astgenkey.8 +++ b/contrib/scripts/astgenkey.8 @@ -109,6 +109,21 @@ Run quietly. Don't encrypt the private key. .RE +.SH SECURITY +The keys are created, using the umask of the user running the command. +To create the keys in a secure manner, you should check to ensure that +your umask is first set to disallow the private key from being world- +readable, such as with the following commands: + +.I umask 0066 + +.I astgenkey yourkey + +And then make the key accessible to Asterisk (assuming you run it as +user "asterisk"). + + chown asterisk /var/lib/asterisk/keys/yourname.* + .SH FILES .I /var/lib/asterisk/keys .RS |