SKS Keyserver (Linux)
Noch in Bearbeitung
Installation
Paket installieren:
sudo apt-get install sks
Danach SKS-Dämon stoppen:
sudo service sks stop
Datenbank als Benutzer debian-sks initialisieren:
su debian-sks -c '/usr/sbin/sks build'
sudo -s mv /etc/sks/mailsync /etc/sks/mailsync_bak echo '# Empty - Do not communicate with other keyservers.' >/etc/sks/mailsync mv /etc/sks/membership /etc/sks/membership_bak echo '# Empty - Do not communicate with other keyservers.' >/etc/sks/membership exit
Service beim Hochfahren automatisch starten - dazu /etc/default/sks editieren
sudo vi /etc/default/sks
und folgende Zeile anpassen:
initstart=yes
sudo cp /etc/sks/sksconf /etc/sks/sksconf_bak
sudo -s cat >/etc/sks/sksconf <<'EOF' pagesize: 16 ptree_pagesize: 16 EOF exit
sudo service sks start
Apache
sudo vi gpg.conf
<VirtualHost *:80> ServerName gpg.kirner.or.at ProxyPreserveHost On ProxyRequests Off ProxyVia Off ProxyPass / http://127.0.0.1:11371/ ProxyPassReverse / http://127.0.0.1:11371/ ErrorLog ${APACHE_LOG_DIR}/gpg.kirner.or.at-error.log CustomLog ${APACHE_LOG_DIR}/gpg.kirner.or.at-access.log combined </VirtualHost>
Ports
Bezeichnung | Port |
---|---|
HPK | 11371 / 80 |
HKPS | 443 |
Testen
Schlüssel erstellen siehe GnuPG
direkt über den Port
http://<server>:11371/
Schlüssel senden
gpg --send-key --keyserver gpg.kirner.or.at 1234ABCD
Schlüssel empfangen
gpg --recv-key --keyserver gpg.kirner.or.at 1234ABCD
Links
http://www.bauer-power.net/2010/05/how-to-setup-free-pgp-key-server-in.html#.WGEXB58xlyU
http://keyserver.mattrude.com/guides/building-server/
https://roll.urown.net/server/pgp-keyserver.html
https://dokuwiki.nausch.org/doku.php/centos:web_c7:sks
Zurück zu Ubuntu