In current state the paths to the certs must be set even when using Kerberos authentication.
The auth CA can probably be removed from here
We should consider making split if statements for the expanding, since even if krb is used serverca might still be used.
auth_ca is not used in ssl_login code anymore
I agree with the inline comments so far, can we get an updated patch set?
ping @sharkcz - do you have time to address the comments?
rebased
updated, does it address the comments?
1 new commit added
Merging with one small adjustment
Commit b27a8915 fixes this pull-request
Pull-Request has been merged by mikem@redhat.com
In current state the paths to the certs must be set even when using Kerberos authentication.