PKI

The ACM Server has its own certificate authority for signing SSL certs. If one of the servers needs an SSL cert, generate the key and request file and have an admin sign it with the ACM CA.

Instructions on generating and signing certs or making your own CA

http://www.tc.umn.edu/~brams006/selfsign.html

http://mindref.blogspot.com/2012/02/openssl-renew-certificate.html

http://lounge.qacafe.com/kb/articles/show/153

How to install CA on archlinux

  1. put the .crt file in /usr/local/share/ca-certificates
  2. run update-ca-certificates