disable ssl session cache

1 parent a0c1a61 commit 79b9826bf7798bf526a1b53a6a8b6d1f40c8f302 committed Dec 19, 2010
Showing with 201 additions and 324 deletions.
  1. +3 −6 README.SSL
  2. +1 −3 doc/monit.html
  3. +197 −315 ssl.c
@@ -234,16 +234,13 @@ nsCertType = server
In order to generate the actual pemfile just run these commands:
# Generates the private key and the certificate
-/usr/local/bin/openssl req -new -x509 -days 365 -nodes \
- -config ./monit.cnf -out /var/certs/monit.pem \
- -keyout /var/certs/monit.pem
+openssl req -new -x509 -days 365 -nodes -config ./monit.cnf -out /var/certs/monit.pem -keyout /var/certs/monit.pem
# Generates the Diffie-Hellman Parameters
-/usr/local/bin/openssl gendh 512 >> /var/certs/monit.pem
+openssl gendh 512 >> /var/certs/monit.pem
# Prints out the certificate information
-/usr/local/bin/openssl x509 -subject -dates -fingerprint -noout \
- -in /var/certs/monit.pem
+openssl x509 -subject -dates -fingerprint -noout -in /var/certs/monit.pem
@@ -528,9 +528,7 @@
<p>Monit will then not monitor the service. This allows for having
services configured in monitrc and start it with Monit only if it
should run. This feature can be used to build a simple failsafe
-cluster. To see how, read more about how to setup a cluster with
-Monit using the <em>heartbeat</em> system in the examples sections
<p>A service's monitoring state is persistent across Monit restart.
This means that you probably would like to make certain that
services in manual mode are stopped or in unmonitored mode at
