From 9c5aae0eb425535621dde79717c2ce4f495a23bb Mon Sep 17 00:00:00 2001
From: Yoshinari Takaoka
Date: Thu, 11 Oct 2018 02:27:04 +0900
Subject: added comment TLS_PRIVATE_KEYFILE does not support Pass-Phrase
---
tcpd/couriertls.sgml | 2 +-
1 file changed, 1 insertion(+), 1 deletion(-)
(limited to 'tcpd')
diff --git a/tcpd/couriertls.sgml b/tcpd/couriertls.sgml
index 0711654..c7971cc 100644
--- a/tcpd/couriertls.sgml
+++ b/tcpd/couriertls.sgml
@@ -241,7 +241,7 @@ for SSL/TLS clients.
SSL/TLS private key for decrypting client data.
TLS_PRIVATE_KEY is optional because TLS_CERTFILE is generated including cert and private key both.
-filename must not be world-readable.
+filename must not be world-readable, and must be accessible without a pass-phrase, i.e. it must not be encrypted.
--
cgit v1.2.3