From 94958b8b9230d5b9b5e2e70c481f115b18a5fa0b Mon Sep 17 00:00:00 2001 From: Friedrich Ramberger Date: Wed, 23 Jan 2019 11:17:43 +0000 Subject: [PATCH] Precise certificate generation Signed-off-by: Friedrich Ramberger --- certificate-managment.adoc | 5 +++-- 1 file changed, 3 insertions(+), 2 deletions(-) diff --git a/certificate-managment.adoc b/certificate-managment.adoc index 3eabee8..7970f61 100644 --- a/certificate-managment.adoc +++ b/certificate-managment.adoc @@ -9,8 +9,9 @@ endif::wiki[] Certificates for communication within the cluster ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ -Each {PVE} cluster creates its own internal Certificate Authority (CA) and -generates a self-signed certificate for each node. These certificates are used +Each {PVE} cluster creates its own (self-signed) Certificate Authority (CA) and +generates a certificate for each node and signs it by the previously created CA. +These certificates are used for encrypted communication with the cluster's pveproxy service and the Shell/Console feature if SPICE is used. -- 2.39.2