Add documentation on how to setup fedmsg signing in development

This commit is contained in:
Matt Prahl
2016-09-23 10:51:38 -04:00
parent c77be1c4d3
commit d86374f360
2 changed files with 41 additions and 0 deletions

View File

@@ -8,4 +8,21 @@ config = {
"tcp://127.0.0.1:300%i" % i for i in range(10)
],
},
# Start of code signing configuration
# 'sign_messages': True,
# 'validate_signatures': True,
# 'crypto_backend': 'x509',
# 'crypto_validate_backends': ['x509'],
# 'ssldir': '/opt/fm-orchestrator/pki',
# 'crl_location': 'http://localhost/crl/ca.crl',
# 'crl_cache': '/etc/pki/fedmsg/crl.pem',
# 'crl_cache_expiry': 10,
# 'ca_cert_location': 'http://localhost/crl/ca.crt',
# 'ca_cert_cache': '/etc/pki/fedmsg/ca.crt',
# 'ca_cert_cache_expiry': 0, # Never expires
# 'certnames': {
# 'rida.localhost': 'localhost'
# }
# End of code signing configuration
}