summaryrefslogtreecommitdiffstats
path: root/streaming/stream.conf
diff options
context:
space:
mode:
authorthiagoftsm <thiagoftsm@gmail.com>2019-07-29 12:27:32 +0000
committerPaul Emm. Katsoulakis <34388743+paulkatsoulakis@users.noreply.github.com>2019-07-29 15:27:32 +0300
commit551617bd322e2b855ccf19375650348fda77938a (patch)
treee329b8e38550c634181332ca3f882bc52c082cbf /streaming/stream.conf
parent7d0250e3afc48b16fd01de36ced2b76d64201adc (diff)
Add configurable default locations for trusted CA certificates (#6549)
* sslcertificate: Trust certificate The netdata could not allow invalid certificate or certificate with invalid chain this commit fixes this! * sslcertificate: Changing name We are binging the same names used by the OpenSSL library to simplify the understand of the parameters * sslcertificate: Name changes and explicity directory This commit fix the problem with Streams and rename correctly the files in the option, it also uses stat to define the existence of a file * sslcertificate: Documentation Fix grammar for the newest section in the documentation * sslcertificate: Rename variables The old variables did not represent well what they are doing, so it was renamed
Diffstat (limited to 'streaming/stream.conf')
-rw-r--r--streaming/stream.conf16
1 files changed, 16 insertions, 0 deletions
diff --git a/streaming/stream.conf b/streaming/stream.conf
index 0d360cc24f..fdff1f25fc 100644
--- a/streaming/stream.conf
+++ b/streaming/stream.conf
@@ -41,6 +41,22 @@
#
#ssl skip certificate verification = yes
+ # Certificate Authority Path
+ #
+ # OpenSSL has a default directory where the known certificates are stored,
+ # case it is necessary it is possible to change this rule using the variable
+ # "CApath"
+ #
+ #CApath = /etc/ssl/certs/
+
+ # Certificate Authority file
+ #
+ # When the Netdata master has certificate, that is not recognized as valid,
+ # we can add this certificate in the list of known certificates in CApath
+ # and give for Netdata as argument.
+ #
+ #CAfile = /etc/ssl/certs/cert.pem
+
# The API_KEY to use (as the sender)
api key =