Commit d2d4c350 authored by Peter Eisentraut's avatar Peter Eisentraut

doc: Clarify documentation about SSL passphrases

The previous statement that using a passphrase disables the ability to
change the server's SSL configuration without a server restart was no
longer completely true since the introduction of
ssl_passphrase_command_supports_reload.
parent 27b59d61
...@@ -2310,8 +2310,9 @@ pg_dumpall -p 5432 | psql -d postgres -p 5433 ...@@ -2310,8 +2310,9 @@ pg_dumpall -p 5432 | psql -d postgres -p 5433
If the private key is protected with a passphrase, the If the private key is protected with a passphrase, the
server will prompt for the passphrase and will not start until it has server will prompt for the passphrase and will not start until it has
been entered. been entered.
Using a passphrase also disables the ability to change the server's SSL Using a passphrase by default disables the ability to change the server's
configuration without a server restart. SSL configuration without a server restart, but see <xref
linkend="guc-ssl-passphrase-command-supports-reload"/>.
Furthermore, passphrase-protected private keys cannot be used at all Furthermore, passphrase-protected private keys cannot be used at all
on Windows. on Windows.
</para> </para>
......
Markdown is supported
0% or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment