OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • English Forums »
  • Documentation and Translation (Moderator: fabian) »
  • Permissions on certificate bundles
« previous next »
  • Print
Pages: [1]

Author Topic: Permissions on certificate bundles  (Read 3153 times)

Stilez

  • Newbie
  • *
  • Posts: 27
  • Karma: 1
    • View Profile
Permissions on certificate bundles
« on: August 26, 2020, 02:04:45 am »
The docs just state to set "some sane permissions" on certificate bundles for the internal web server.  Hardly specific.


What permissions are minimally recommended for the internal web server?


Would similar permissions be appropriate for other certs like SSH?


Thanks for answers, and if someone could update the docs with that info it could help others too :)
Logged

fabian

  • Moderator
  • Hero Member
  • *****
  • Posts: 2770
  • Karma: 199
  • OPNsense Contributor (Language, VPN, Proxy, etc.)
    • View Profile
    • Personal Homepage
Re: Permissions on certificate bundles
« Reply #1 on: August 26, 2020, 05:04:13 pm »
400 if the Webserver owns the file or
640 if the file is owned by root and the Webserver gets access by a specific group
Logged

franco

  • Administrator
  • Hero Member
  • *****
  • Posts: 15072
  • Karma: 1305
    • View Profile
Re: Permissions on certificate bundles
« Reply #2 on: August 26, 2020, 05:04:56 pm »
Higher up in the doc it already mentions 400, probably an oversight it doesn't say so at the bottom.


Cheers,
Franco
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • English Forums »
  • Documentation and Translation (Moderator: fabian) »
  • Permissions on certificate bundles
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2023 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2