From: Daniel Gustafsson Date: Wed, 28 Feb 2024 21:57:00 +0000 (+0100) Subject: Fix documentation comments for test CA config files X-Git-Tag: REL_17_BETA1~794 X-Git-Url: http://git.postgresql.org/gitweb/?a=commitdiff_plain;h=6a6b7f5de3ff0dad46aab9e8e17a3747370199a3;p=postgresql.git Fix documentation comments for test CA config files The config files which are used to generate the server and client CAs claimed that these were self-signed, when they in reality are signed by the root_ca (which however is self-signed). Reword the comments to match. Author: David Zhang Discussion: https://postgr.es/m/12f4c425-45fe-480f-a692-b3ed82ebcb33@highgo.ca --- diff --git a/src/test/ssl/conf/client_ca.config b/src/test/ssl/conf/client_ca.config index 5990f060002..08365aac955 100644 --- a/src/test/ssl/conf/client_ca.config +++ b/src/test/ssl/conf/client_ca.config @@ -1,7 +1,9 @@ -# An OpenSSL format CSR config file for creating the client root certificate. -# This configuration file is also used when operating the CA. +# An OpenSSL format CSR config file for creating the client Intermediate +# Certificate Authority. This configuration file is also used when operating +# the CA. # -# This certificate is used to sign client certificates. It is self-signed. +# This certificate is used to sign client certificates. It is an Intermediate +# CA. [ req ] distinguished_name = req_distinguished_name diff --git a/src/test/ssl/conf/root_ca.config b/src/test/ssl/conf/root_ca.config index e193186f8bf..6caa8a1ae63 100644 --- a/src/test/ssl/conf/root_ca.config +++ b/src/test/ssl/conf/root_ca.config @@ -1,5 +1,5 @@ # A root certificate authority. The server and client CA's certificates -# are signed by this root CA. +# are signed by this root CA. This certificate is self-signed. [ req ] distinguished_name = req_distinguished_name diff --git a/src/test/ssl/conf/server_ca.config b/src/test/ssl/conf/server_ca.config index 496aaba29fb..15f8d1590fe 100644 --- a/src/test/ssl/conf/server_ca.config +++ b/src/test/ssl/conf/server_ca.config @@ -1,7 +1,9 @@ -# An OpenSSL format CSR config file for creating the server root certificate. -# This configuration file is also used when operating the CA. +# An OpenSSL format CSR config file for creating the server Intermediate +# Certificate Authority. This configuration file is also used when operating +# the CA. # -# This certificate is used to sign server certificates. It is self-signed. +# This certificate is used to sign server certificates. It is an Intermediate +# CA. [ req ] distinguished_name = req_distinguished_name