On Thu, Feb 1, 2024 at 3:16 AM Daniel Gustafsson <dan...@yesql.se> wrote:
> > On 1 Feb 2024, at 08:35, David G. Johnston <david.g.johns...@gmail.com> > wrote: > > > maybe move the wording to the cert page and replace the content in > pg_hba.conf with a link to there. Leaning toward the later ATM. > > That sounds like the best option IMHO, care to propose a patch? > > Done here: https://www.postgresql.org/message-id/CAKFQuwa%3DiY13UkH2K4-Srut9iaXBi2FkLzWRxbok%2BmdSMPEDuA%40mail.gmail.com The material here needed some attention too, both on its own and to fit in with the changes to the client authentication section. https://www.postgresql.org/docs/current/ssl-tcp.html#SSL-CLIENT-CERTIFICATES David J.