Re: Setting up SSL for postgre

From: Bear Giles <bgiles(at)coyotesong(dot)com>
To: Mark Williams <markwillimas(at)gmail(dot)com>
Cc: pgsql-admin(at)lists(dot)postgresql(dot)org
Subject: Re: Setting up SSL for postgre
Date: 2018-08-13 19:00:43
Message-ID: CALBNtw6-BnnA9AGpaTfSecSnjppLApaKTsYJ664HtfzBt14nRg@mail.gmail.com
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-admin

What's in pg_hba.conf?

What's in postgresql.conf? Did you remember to change the ssl cert file
and key? For authentication I think you might need to set the SSL ca file
as well but I'm not sure.

On Mon, Aug 13, 2018 at 10:55 AM, Mark Williams <markwillimas(at)gmail(dot)com>
wrote:

> I am new to Postgre. Migrating from MySQL.
>
>
>
> I am trying to connect via SSL to a PostgreSQL using FireDac in Delphi. I
> have followed the instructions at the following site:
> https://www.howtoforge.com/postgresql-ssl-certificates to create my
> self-certified certificates and configure the config files.
>
>
>
> I have coped the specified files to the client machine and installed the
> root.crt certificate.
>
> Via FireDAC's connection params I have specified the following:
>
> Params.values[SSL_ca']:=sslCertsPath+'root.crt';
>
> Params.values['SSL_cert']:=sslCertsPath+'postgresql.crt.';
>
> Params.values['SSL_key']:=sslCertsPath+'postgresql.key';
>
>
>
> I am getting a connection error re invalid client certificate.
>
> I have used OpenSSL to verify against the root.crt and postgresql.crt and
> this confirms the certificate is ok.
>
> Mark
>
>
>
> __
>
>
>

In response to

Responses

Browse pgsql-admin by date

  From Date Subject
Next Message Joe Conway 2018-08-13 19:14:09 Re: Secure dump file
Previous Message Ilyass Kaouam 2018-08-13 18:53:24 Secure dump file