ssl for nginx, old browsers

Igor Sysoev is at rambler-co.ru
Wed Oct 7 10:32:41 MSD 2009


On Wed, Oct 07, 2009 at 02:18:13AM -0400, eternity wrote:

> So, what is your advice, how to I make a good chain so no one would ask?I mean using this RBC cert?
> anyway, big thanks for helping)

According to http://ssl.ru/ru/support/ you should have

UTNAddTrustServerCA.crt
RBCHCHighAssuranceServices.crt
and something lke www.svpage.ru.crt

Then you need to run

cat www.svpage.ru.crt RBCHCHighAssuranceServices.crt UTNAddTrustServerCA.crt > chain.crt

and use this chain.crt in ssl_certificate directive.


-- 
Igor Sysoev
http://sysoev.ru/en/





More information about the nginx mailing list