]> git.donarmstrong.com Git - dsa-puppet.git/commitdiff
Correct path for ca cert, and add crl checking (this may not work, but
authorStephen Gran <steve@lobefin.net>
Sun, 5 Apr 2009 00:02:03 +0000 (01:02 +0100)
committerStephen Gran <steve@lobefin.net>
Sun, 5 Apr 2009 00:02:03 +0000 (01:02 +0100)
let's see)
Signed-off-by: Stephen Gran <steve@lobefin.net>
modules/exim/files/common/exim4.conf

index c9e1e0253b588ea30bd079a42480e6c8f11c5b74..6c4fecb9fe9db2369683ab3740ad994547967551 100644 (file)
@@ -128,7 +128,8 @@ tls_certificate = /etc/exim4/ssl/thishost.crt
 tls_privatekey = /etc/exim4/ssl/thishost.key
 .ifdef RELAY_HOST
 tls_try_verify_hosts = *
-tls_verify_certificates = /etc/exim4/ssl/client_certs.pem
+tls_verify_certificates = /etc/exim4/ssl/ca.crt
+tls_crl = /etc/exim4/ssl/ca.crl
 .endif
 
 #system_filter = /etc/exim4/filter