Creating a Trust Database
92
Netscape Enterprise Server Administrator’s Guide • November 2001
6.
For the Server Manager, click Apply, and then Restart for changes to take
effect.
Using password.conf
By default, the web server prompts the administrator for the key database
password before starting up. If you want to be able to restart an unattended web
server, you need to save the password in a
password.conf
file. Only do this if your
system is adequately protected so that this file and the key databases are not
compromised.
Normally, you cannot start an UNIX SSL-enabled server with the
/etc/rc.local
or the
etc/inittab
files because the server requires a password before starting.
Although you can start an SSL-enabled server automatically if you keep the
password in plain text in a file, this is not recommended. The server’s
password.conf
file should be owned by root or the user who installed the server,
with only the owner having read and write access to them.
On UNIX, leaving the SSL-enabled server's password in the
password.conf
file is
a large security risk. Anyone who can access the file has access to the SSL-enabled
server’s password. Consider the security risks before keeping the SSL-enabled
server’s password in the
password.conf
file.
On NT, if you have an NTFS file system, you should protect the directory that
contains the
password.conf
file by restricting its access, even if you do not use the
file. The directory should have read/write permissions for the administration
server user and the web server user. Protecting the directory prevents others from
creating a false
password.conf
file. You cannot protect directories or files on FAT
file systems by restricting access to them.
Start an SSL-enabled Server Automatically
If security risks are not a concern for you, follow these steps to start your
SSL-enabled server automatically:
1.
Make sure SSL is on.
2.
Create a new
password.conf
file in the
config
subdirectory of the server
instance.
❍
If you are using the internal PKCS#11 software encryption module that
comes with the server, enter the following information:
internal:
your_password
Summary of Contents for NETSCAPE ENTREPRISE SERVER 6.0 - ADMINISTRATOR
Page 1: ...Administrator s Guide Netscape Enterprise Server Version6 0 November 2001...
Page 18: ...18 Netscape Enterprise Server Administrator s Guide November 2001...
Page 26: ...26 Netscape Enterprise Server Administrator s Guide November 2001...
Page 48: ...Migrating a Server 48 Netscape Enterprise Server Administrator s Guide November 2001...
Page 50: ...50 Netscape Enterprise Server Administrator s Guide November 2001...
Page 146: ...146 Netscape Enterprise Server Administrator s Guide November 2001...
Page 242: ...242 Netscape Enterprise Server Administrator s Guide November 2001...
Page 294: ...294 Netscape Enterprise Server Administrator s Guide November 2001...
Page 332: ...Deleting a Virtual Server 332 Netscape Enterprise Server Administrator s Guide November 2001...
Page 378: ...378 Netscape Enterprise Server Administrator s Guide November 2001...
Page 396: ...Responses 396 Netscape Enterprise Server Administrator s Guide November 2001...
Page 414: ...Posting to JSPs 414 Netscape Enterprise Server Administrator s Guide November 2001...
Page 432: ...Further Information 432 Netscape Enterprise Server Administrator s Guide November 2001...
Page 444: ...444 Netscape Enterprise Server Administrator s Guide November 2001...