====== PKI ====== The ACM Server has its own certificate authority for signing SSL certs. If one of the servers needs an SSL cert, generate the key and request file and have an admin sign it with the ACM CA. Instructions on generating and signing certs or making your own CA [[http://www.tc.umn.edu/~brams006/selfsign.html]] [[http://mindref.blogspot.com/2012/02/openssl-renew-certificate.html]] [[http://lounge.qacafe.com/kb/articles/show/153]] **How to install CA on archlinux** - put the .crt file in /usr/local/share/ca-certificates - run update-ca-certificates