From: Vincent Bray Date: Wed, 20 Aug 2008 23:02:48 +0000 (+0000) Subject: Update transformations X-Git-Tag: 2.2.10~64 X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=cbef364cdf241bf064e91277607b83c21812f11f;p=thirdparty%2Fapache%2Fhttpd.git Update transformations git-svn-id: https://svn.apache.org/repos/asf/httpd/httpd/branches/2.2.x@687499 13f79535-47bb-0310-9956-ffa450edef68 --- diff --git a/docs/manual/mod/mod_ssl.html.en b/docs/manual/mod/mod_ssl.html.en index 1d18664eda0..aad6f29c434 100644 --- a/docs/manual/mod/mod_ssl.html.en +++ b/docs/manual/mod/mod_ssl.html.en @@ -358,10 +358,10 @@ authentication. Because although placing a CA certificate of the server certificate chain into SSLCACertificatePath has the same effect for the certificate chain construction, it has the side-effect that client certificates issued by this same CA certificate are also -accepted on client authentication. That's usually not one expect.

+accepted on client authentication.

But be careful: Providing the certificate chain works only if you are using a -single (either RSA or DSA) based server certificate. If you are +single RSA or DSA based server certificate. If you are using a coupled RSA+DSA certificate pair, this will work only if actually both certificates use the same certificate chain. Else the browsers will be confused in this situation.