We should not create and populate the TLS keys and certificate files with the default permissions from open(), to then fix that up in a later call. Instead use the specified permissions (even if they might get restricted further by the current umask), and then we will possibly open them up again when doing the chmod(). Spotted-by: Michael Prokop <mprokop@sipwise.com> Change-Id: I810e041cc4038bdaed8a3335ca45009129c928demr26.0
parent
5190438b95
commit
fb44ee879a
Loading…
Reference in new issue