[EMAIL PROTECTED] How does Apache handle expired server certificate and expired CA root certificate?

2008-10-16 Thread Swapan Gupta
Hi, Appreciate if someone could share more info on the following: Does Apache do any special handling if the installed server certificate or the CA root certificate has expired? In my installation, we are seeing that the expired Server certificate is sent to the client when a resource is acces

[EMAIL PROTECTED] Apache 2.0.59 / ssl memory leak

2007-09-06 Thread Swapan Gupta
Hi, We have setup an Apache 2.0.59 along with mod_ssl and are executing a load run for Apache resources over https. We are seeing continuous memory growth in Apache process during the course of the load run. I we do a similar load run using Apache 2.0.59 over http (non-ssl), we do not see any

[EMAIL PROTECTED] Apache - TRACE vulnerability solution

2006-09-06 Thread Swapan Gupta
Title: Apache - TRACE vulnerability solution Hi, I am using Apache 2.0.54 and trying out the suggested solution for the Http TRACE vulnerability as mentioned at https://www.kb.cert.org/vuls/id/867593 using the mod_rewrite module and specifying the following lines in .htaccess file. Rewrite