03-14-06 10:45 PM
Good morning,
we've been playing for a "long" time with self signed certificates.
Since we had no problems and were statisfied with the results we
obtained we bought a certificate from a CA.
Problem with self signed Certs is that since you miss a known CA which
signed your certificate, your browser will block any attempt to use
rtmps until you install your CA.crt in your system.
"original" certificates doesn't need this.
We installed our certificate on apache with just few glitches (ssl
support in apache is not given by fault).
On apache you need to specify your CA.crt in server configuration, this
will (i still don't know how and why) authenticate your certificate
without needing your browser to do anything.
We must achieve the same result with rtmps connections. It (FMS2) has
to accept our certificate without asking anything to the user or flash
player will stop the communication.
It's not affordable tu force end user to install certificates too.
Trying to find out what is wrong we found that documentation has some
error (check xml snippets at pag.64 from flashmediaserver_managing.pdf
for example).
Then we found that the SSLCACertificateFile tag from adaptor.xml (not
from server.xml) is available on documentation but is not specified in
adaptor.xml itself.
We tried specifying it (it should be the key factor here) but didn't
have any result.
We are sure we are doing a mistake somethere.
Has anyone some idea about this ? Ed ?
thanks in advance for any answer
Dario De Agostini
________________________________________
_______
FlashComm-1Ss2GqJETD3yZ38Mhd3e/9ZfFG6BLHNm@public.gmane.org
To change your subscription options or search the archive:
http://chattyfig.figleaf.com/mailman/listinfo/flashcomm
Brought to you by Fig Leaf Software
Premier Authorized Adobe Consulting and Training
http://www.figleaf.com
http://training.figleaf.com
[ Post a follow-up to this message ]
|