ICT: Diary
D: 28 W: 05

< January 2026 >
Sun Mon Tue Wed Thu Fri Sat
 123
45678910
11121314151617
18192021222324
25262728293031

Based on notaweblog.php by joshua stein


searching for entries matching "SSL"…

tuesday, 9 september 2025
Battery Replacment Finally replaced the battery in my Sony SRS-XB12, putting the new battery in was easy replacing some of the screws was harder, but with my new Wera comet My LetsEncrypt cert was expiring tomorrow so I updated it today, and there was a firmware upgrade that I was expecting to blow away, the ssl files, but this update left them in place so updating the server.crt in /etc/kvmd/user/ssl/ was straight forward. Restarting nginx to pick up the new cert: /etc/init.d/S99kvmd-nginx

thursday, 28 august 2025
... another updated which lost the SSL certificate which had moved to / ...

monday, 16 june 2025
... certificate on the fly which broke the SSL as the certs were no longer trusted ...

thursday, 12 june 2025
Book VAN MOT Expires 10 July 2025 . GL-RM1 Comet To use acme-client on OpenBSD I created a key doas openssl req -newkey rsa:4096 -nodes -keyout /etc/ssl/private/comet.key I then set up an alias on httpd for comet in httpd.conf restarted httpd : rcctl restart httpd Then I copied the key and the certificate to the GL-RM1 Comet and put them in the /etc/kvmd/nginx/ssl/ directory, after backing up the orignal server key and certificate file and then reboot the device… Need to work out how to just restart nginx … Now I will need to update the certificate every 90 days, and will need to change the DNS to point at the webserver rather than the internal address.

wednesday, 21 may 2025
GL-RM1 Comet The server certificate for the Comet is in /etc/kvmd/nginx/ssl/cer.crt So need to work out how I generate a valid pem file from letsencrypt to replace the current crt file. See fixing certs .

wednesday, 7 may 2025
Code in Place Finished my preparation for TeachNow Will try it tomorrow evening if I am not to tired :~) typst export PATH=$PATH:~/.cargo/bin cargo install --locked typst-cli this failed due to ssl versions… cargo install --locked typst-cli this worked! typst compile first.typ --pdf-standard a-3b produced a compliant PDF/A 3b compliant document, now some testing and learning required… will it be enough to move me on from LaTeX?

monday, 23 december 2024
... labs: confirms success Namecheap SSL also checks correctly All three checkers ...

wednesday, 25 september 2024
... rebane2001) Uxbridge English Dictionary SSL ...

friday, 12 july 2024

thursday, 16 march 2023

tuesday, 1 february 2022
curl By default curl checks SSL connections are verified, thus to accept self-signed certificates with curl you need the -k, --insecure option.

tuesday, 23 november 2021
Moodle on OpenBSD Install php-8.0 and mariadb on x41 to try out Moodle 4.0. InnoDB refuses to write tables with ROW_FORMAT=COMPRESSED or KEY_BLOCK_SIZE The fix was adding innodb_read_only_compressed=OFF to /etc/my.cnf. mod_lti LTI 1.3 requires a valid openssl.cnf to be configured and available to your web server. Please contact the site administrator to configure and enable openssl for this site. CWPS 18:00 to 21:00

friday, 9 april 2021
... returned an error: error:1404C419:SSL routines:ST_OK:tlsv1 alert access ...

tuesday, 7 january 2020
... Functions Immersive Labs Test TLS/SSL : useful tool for checking ciphers ...

wednesday, 22 may 2019
... Documentation as done by stripe NeverSSL for captive portals... ...

friday, 15 february 2019
Web Tools SSL Labs Security Headers Mozilla Observatory

tuesday, 20 february 2018

tuesday, 28 november 2017
SSL Certificate Expiry SSL certificate will expire at 17:00 today. Updated acme-client using the process mentioned in this entry. Computer Science Teacher Book Ordered CST letsencrypt acme ssl

sunday, 26 november 2017
... Certificate Expiry: 2 days Update SSL cert. ...

wednesday, 30 august 2017
... certificate renewal - preferably using SSL , so that I don't need to play ...

friday, 4 august 2017
... master commit: c8037568571edb5c568c2f8231e4f8ce0683b883 SSL: false modules: cjson,file,gpio ...

monday, 5 june 2017
... more bbb notes . SSL Enabled SSL using Let's Encrypt Certificates using ...

friday, 10 july 2015
... IETF comments on unique DNS root. SSL Issues Lin-Shung Huang : interesting ...

friday, 1 may 2015
OpenBSD 5.7 Released SSLMate Let's Encrypt A new Certificate Authority: free, automated, and open. A Linux Foundation project.

monday, 21 april 2014
... LibreSSL The OpenBSD version of OpenSSL. ...

monday, 7 april 2014
... has a massive vulnerability - OpenSSL needs to be patched. ...

wednesday, 26 march 2014
curl silently failing This issue bit me again as OpenBSD is using a chroot by default curl is unable to find dot.pem file for ssl … so it silently fails.

thursday, 16 may 2013
chroot curl OpenBSD I couldn't work out why my Pushover script was not working in the default chrooted apache on OpenBSD - using: sudo ktrace -di httpd -X and then looking through the ktrace.out file with kdump I came across: 14523 httpd NAMI "/etc/ssl/cert.pem" 14523 httpd RET open -1 errno 2 No such file or directory and once I had copied /etc/ssl/cert.pem into the chroot - all was good! curl chroot OpenBSD


$Id: diary,v 1.38 2025/01/01 22:43:54 fred Exp $