Index: server/fedora/config/etc/pki/tls/certs/axo.pem
===================================================================
--- server/fedora/config/etc/pki/tls/certs/axo.pem	(revision 822)
+++ server/fedora/config/etc/pki/tls/certs/axo.pem	(revision 822)
@@ -0,0 +1,71 @@
+From mitcert@MIT.EDU Thu Aug 28 22:18:38 2008
+Date: Thu, 28 Aug 2008 22:18:27 -0400 (EDT)
+From: mitcert@MIT.EDU
+To: geofft@mit.edu
+Subject: Certificate request for axo.mit.edu  [help.mit.edu #695259]
+
+Certificate:
+    Data:
+        Version: 3 (0x2)
+        Serial Number: 2948 (0xb84)
+        Signature Algorithm: sha1WithRSAEncryption
+        Issuer: C=US, ST=Massachusetts, O=Massachusetts Institute of Technology, OU=MIT Certification Authority
+        Validity
+            Not Before: Aug 27 16:00:00 2008 GMT
+            Not After : Aug 27 16:00:00 2009 GMT
+        Subject: C=US, ST=Massachusetts, L=Cambridge, O=Massachusetts Institute of Technology, OU=Student Information Processing Board, CN=axo.mit.edu/Email=scripts@mit.edu
+        Subject Public Key Info:
+            Public Key Algorithm: rsaEncryption
+            RSA Public Key: (1024 bit)
+                Modulus (1024 bit):
+                    00:b5:3e:21:4d:c1:89:6b:01:8c:47:80:fe:b3:37:
+                    27:76:f8:52:41:e6:a2:3d:4b:76:78:e5:f2:66:3c:
+                    0f:b1:ad:fb:97:8f:2e:a2:b6:53:d3:b6:0e:e2:66:
+                    f9:b9:0b:b7:ce:b4:d5:f5:1c:1f:6f:22:7d:48:f5:
+                    6d:f0:16:cd:8e:48:79:d1:14:4a:14:2f:2f:f8:c4:
+                    bd:1d:87:cf:7d:8b:5c:77:ad:58:24:b0:0e:a1:6d:
+                    d6:0a:c7:d8:bc:2f:67:65:c8:5d:d8:d8:31:c2:67:
+                    4b:4a:f4:a1:a5:54:82:af:cb:34:08:2a:04:7f:8e:
+                    7c:4c:b7:db:dc:6a:8a:5d:81
+                Exponent: 65537 (0x10001)
+        X509v3 extensions:
+            X509v3 Basic Constraints: 
+                CA:FALSE
+            Netscape Cert Type: 
+                SSL Client, SSL Server, S/MIME
+            X509v3 Extended Key Usage: 
+                TLS Web Server Authentication, E-mail Protection, TLS Web Client Authentication
+            X509v3 Key Usage: 
+                Digital Signature, Non Repudiation, Key Encipherment
+            X509v3 Subject Key Identifier: 
+                54:11:7C:09:55:44:1C:94:45:A9:A2:76:46:2B:2C:24:26:6A:44:E8
+    Signature Algorithm: sha1WithRSAEncryption
+        b3:1f:5f:c3:f0:aa:a3:12:5a:d6:d9:94:bd:fc:84:f1:6e:99:
+        dc:1c:33:6c:37:51:b7:c6:53:da:6f:31:d9:ce:6f:e6:3b:c7:
+        42:62:a0:26:f4:63:de:7d:ff:a9:27:53:b9:cd:0b:d8:46:19:
+        ea:9e:c1:24:0b:c7:59:7e:99:82:84:1b:91:5e:e5:a8:de:2c:
+        0c:84:15:6a:3b:0c:5e:6c:dd:16:89:56:35:f5:a9:9a:26:c6:
+        8d:ac:73:ab:8e:3d:79:7a:05:9e:73:5f:5d:91:d3:3c:58:be:
+        12:ef:8a:f5:93:33:01:b7:50:24:da:3b:f0:5e:89:3b:95:07:
+        85:9b
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
+
Index: server/fedora/config/etc/pki/tls/certs/crew.pem
===================================================================
--- server/fedora/config/etc/pki/tls/certs/crew.pem	(revision 822)
+++ server/fedora/config/etc/pki/tls/certs/crew.pem	(revision 822)
@@ -0,0 +1,71 @@
+From mitcert@MIT.EDU Thu Aug 28 22:17:24 2008
+Date: Thu, 28 Aug 2008 22:17:12 -0400 (EDT)
+From: mitcert@MIT.EDU
+To: geofft@mit.edu
+Subject: CSR for crew.mit.edu (scripts vhost)  [help.mit.edu #695365]
+
+Certificate:
+    Data:
+        Version: 3 (0x2)
+        Serial Number: 2946 (0xb82)
+        Signature Algorithm: sha1WithRSAEncryption
+        Issuer: C=US, ST=Massachusetts, O=Massachusetts Institute of Technology, OU=MIT Certification Authority
+        Validity
+            Not Before: Aug 27 16:00:00 2008 GMT
+            Not After : Aug 27 16:00:00 2009 GMT
+        Subject: C=US, ST=Massachusetts, L=Cambridge, O=Massachusetts Institute of Technology, OU=Student Information Processing Board, CN=crew.mit.edu/Email=scripts@mit.edu
+        Subject Public Key Info:
+            Public Key Algorithm: rsaEncryption
+            RSA Public Key: (1024 bit)
+                Modulus (1024 bit):
+                    00:b5:3e:21:4d:c1:89:6b:01:8c:47:80:fe:b3:37:
+                    27:76:f8:52:41:e6:a2:3d:4b:76:78:e5:f2:66:3c:
+                    0f:b1:ad:fb:97:8f:2e:a2:b6:53:d3:b6:0e:e2:66:
+                    f9:b9:0b:b7:ce:b4:d5:f5:1c:1f:6f:22:7d:48:f5:
+                    6d:f0:16:cd:8e:48:79:d1:14:4a:14:2f:2f:f8:c4:
+                    bd:1d:87:cf:7d:8b:5c:77:ad:58:24:b0:0e:a1:6d:
+                    d6:0a:c7:d8:bc:2f:67:65:c8:5d:d8:d8:31:c2:67:
+                    4b:4a:f4:a1:a5:54:82:af:cb:34:08:2a:04:7f:8e:
+                    7c:4c:b7:db:dc:6a:8a:5d:81
+                Exponent: 65537 (0x10001)
+        X509v3 extensions:
+            X509v3 Basic Constraints: 
+                CA:FALSE
+            Netscape Cert Type: 
+                SSL Client, SSL Server, S/MIME
+            X509v3 Extended Key Usage: 
+                TLS Web Server Authentication, E-mail Protection, TLS Web Client Authentication
+            X509v3 Key Usage: 
+                Digital Signature, Non Repudiation, Key Encipherment
+            X509v3 Subject Key Identifier: 
+                54:11:7C:09:55:44:1C:94:45:A9:A2:76:46:2B:2C:24:26:6A:44:E8
+    Signature Algorithm: sha1WithRSAEncryption
+        65:9b:0b:1f:26:0a:93:c5:38:54:d4:42:4d:85:2c:bb:c2:58:
+        3b:15:3f:72:43:d3:97:d5:3d:bc:f8:43:d6:45:94:02:fd:23:
+        35:d6:8a:36:08:0c:db:11:f6:c5:2b:e4:6b:b0:ef:0d:ef:5f:
+        8a:91:b7:b2:f8:bc:30:4a:bf:1a:b7:7f:80:56:8a:6c:ba:20:
+        22:41:c7:5e:6b:f7:f6:db:19:c8:b3:aa:93:9f:d2:d6:a2:3b:
+        98:26:d5:a6:31:e6:16:b4:1d:73:a0:22:87:71:dc:de:9c:ed:
+        0f:4d:9c:20:f2:ca:76:67:bc:2d:57:61:68:7d:4b:fb:e1:b6:
+        c2:1c
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
+
Index: server/fedora/config/etc/pki/tls/certs/lpq.pem
===================================================================
--- server/fedora/config/etc/pki/tls/certs/lpq.pem	(revision 822)
+++ server/fedora/config/etc/pki/tls/certs/lpq.pem	(revision 822)
@@ -0,0 +1,71 @@
+From mitcert@MIT.EDU Thu Aug 28 22:15:25 2008
+Date: Thu, 28 Aug 2008 22:15:13 -0400 (EDT)
+From: mitcert@MIT.EDU
+To: geofft@mit.edu
+Subject: CSR for lpq.mit.edu (scripts vhost)  [help.mit.edu #695369]
+
+Certificate:
+    Data:
+        Version: 3 (0x2)
+        Serial Number: 2943 (0xb7f)
+        Signature Algorithm: sha1WithRSAEncryption
+        Issuer: C=US, ST=Massachusetts, O=Massachusetts Institute of Technology, OU=MIT Certification Authority
+        Validity
+            Not Before: Aug 27 16:00:00 2008 GMT
+            Not After : Aug 27 16:00:00 2009 GMT
+        Subject: C=US, ST=Massachusetts, L=Cambridge, O=Massachusetts Institute of Technology, OU=Student Information Processing Board, CN=lpq.mit.edu/Email=scripts@mit.edu
+        Subject Public Key Info:
+            Public Key Algorithm: rsaEncryption
+            RSA Public Key: (1024 bit)
+                Modulus (1024 bit):
+                    00:b5:3e:21:4d:c1:89:6b:01:8c:47:80:fe:b3:37:
+                    27:76:f8:52:41:e6:a2:3d:4b:76:78:e5:f2:66:3c:
+                    0f:b1:ad:fb:97:8f:2e:a2:b6:53:d3:b6:0e:e2:66:
+                    f9:b9:0b:b7:ce:b4:d5:f5:1c:1f:6f:22:7d:48:f5:
+                    6d:f0:16:cd:8e:48:79:d1:14:4a:14:2f:2f:f8:c4:
+                    bd:1d:87:cf:7d:8b:5c:77:ad:58:24:b0:0e:a1:6d:
+                    d6:0a:c7:d8:bc:2f:67:65:c8:5d:d8:d8:31:c2:67:
+                    4b:4a:f4:a1:a5:54:82:af:cb:34:08:2a:04:7f:8e:
+                    7c:4c:b7:db:dc:6a:8a:5d:81
+                Exponent: 65537 (0x10001)
+        X509v3 extensions:
+            X509v3 Basic Constraints: 
+                CA:FALSE
+            Netscape Cert Type: 
+                SSL Client, SSL Server, S/MIME
+            X509v3 Extended Key Usage: 
+                TLS Web Server Authentication, E-mail Protection, TLS Web Client Authentication
+            X509v3 Key Usage: 
+                Digital Signature, Non Repudiation, Key Encipherment
+            X509v3 Subject Key Identifier: 
+                54:11:7C:09:55:44:1C:94:45:A9:A2:76:46:2B:2C:24:26:6A:44:E8
+    Signature Algorithm: sha1WithRSAEncryption
+        35:d2:f1:8e:f1:91:bb:fd:d6:08:c7:d7:7b:5e:6f:a1:de:14:
+        be:c6:d6:2c:ed:4b:32:56:41:45:54:1c:24:01:80:ae:19:f6:
+        4f:86:16:11:52:12:9e:0e:13:93:94:bb:ed:6b:bb:c8:7b:bb:
+        11:3d:d0:5f:0f:cf:f8:9e:62:d0:cd:47:09:4e:d3:5d:80:9b:
+        bf:30:0d:4b:00:8b:fe:f7:8e:09:5c:57:5d:aa:56:33:97:5c:
+        49:be:a6:6f:58:65:74:70:6c:97:11:d4:ec:a7:f0:fe:1b:23:
+        fd:a9:60:ef:b3:d6:0a:21:36:2d:42:d2:d1:90:15:3c:d7:dc:
+        4e:3a
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
+
Index: server/fedora/config/etc/pki/tls/certs/next.pem
===================================================================
--- server/fedora/config/etc/pki/tls/certs/next.pem	(revision 822)
+++ server/fedora/config/etc/pki/tls/certs/next.pem	(revision 822)
@@ -0,0 +1,71 @@
+From mitcert@MIT.EDU Thu Aug 28 22:16:41 2008
+Date: Thu, 28 Aug 2008 22:16:31 -0400 (EDT)
+From: mitcert@MIT.EDU
+To: geofft@mit.edu
+Subject: CSR for next.mit.edu (scripts vhost)  [help.mit.edu #695366]
+
+Certificate:
+    Data:
+        Version: 3 (0x2)
+        Serial Number: 2945 (0xb81)
+        Signature Algorithm: sha1WithRSAEncryption
+        Issuer: C=US, ST=Massachusetts, O=Massachusetts Institute of Technology, OU=MIT Certification Authority
+        Validity
+            Not Before: Aug 27 16:00:00 2008 GMT
+            Not After : Aug 27 16:00:00 2009 GMT
+        Subject: C=US, ST=Massachusetts, L=Cambridge, O=Massachusetts Institute of Technology, OU=Student Information Processing Board, CN=next.mit.edu/Email=scripts@mit.edu
+        Subject Public Key Info:
+            Public Key Algorithm: rsaEncryption
+            RSA Public Key: (1024 bit)
+                Modulus (1024 bit):
+                    00:b5:3e:21:4d:c1:89:6b:01:8c:47:80:fe:b3:37:
+                    27:76:f8:52:41:e6:a2:3d:4b:76:78:e5:f2:66:3c:
+                    0f:b1:ad:fb:97:8f:2e:a2:b6:53:d3:b6:0e:e2:66:
+                    f9:b9:0b:b7:ce:b4:d5:f5:1c:1f:6f:22:7d:48:f5:
+                    6d:f0:16:cd:8e:48:79:d1:14:4a:14:2f:2f:f8:c4:
+                    bd:1d:87:cf:7d:8b:5c:77:ad:58:24:b0:0e:a1:6d:
+                    d6:0a:c7:d8:bc:2f:67:65:c8:5d:d8:d8:31:c2:67:
+                    4b:4a:f4:a1:a5:54:82:af:cb:34:08:2a:04:7f:8e:
+                    7c:4c:b7:db:dc:6a:8a:5d:81
+                Exponent: 65537 (0x10001)
+        X509v3 extensions:
+            X509v3 Basic Constraints: 
+                CA:FALSE
+            Netscape Cert Type: 
+                SSL Client, SSL Server, S/MIME
+            X509v3 Extended Key Usage: 
+                TLS Web Server Authentication, E-mail Protection, TLS Web Client Authentication
+            X509v3 Key Usage: 
+                Digital Signature, Non Repudiation, Key Encipherment
+            X509v3 Subject Key Identifier: 
+                54:11:7C:09:55:44:1C:94:45:A9:A2:76:46:2B:2C:24:26:6A:44:E8
+    Signature Algorithm: sha1WithRSAEncryption
+        04:1a:e6:99:94:6b:73:b0:e2:9f:b4:31:47:93:53:a1:42:58:
+        8c:e8:f9:39:fb:61:c0:f6:9a:46:e3:e4:6a:81:82:0a:ca:37:
+        b0:27:d6:bc:32:2c:21:15:e7:ed:f0:80:f0:3d:d6:81:3b:a5:
+        b6:77:f4:55:8b:68:b7:d6:fe:da:a7:84:d7:84:a4:78:df:14:
+        69:79:33:2f:41:e1:3a:c4:a5:ec:2b:f3:4d:d2:e1:2a:3e:34:
+        01:05:99:71:c2:1c:a2:a5:b2:06:1d:27:1b:fd:3e:20:6e:ac:
+        ee:60:63:a6:9a:f0:84:7e:6b:4e:2f:df:75:07:85:f7:bb:73:
+        c0:92
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
+
Index: server/fedora/config/etc/pki/tls/certs/queues.pem
===================================================================
--- server/fedora/config/etc/pki/tls/certs/queues.pem	(revision 822)
+++ server/fedora/config/etc/pki/tls/certs/queues.pem	(revision 822)
@@ -0,0 +1,71 @@
+From mitcert@MIT.EDU Thu Aug 28 22:13:11 2008
+Date: Thu, 28 Aug 2008 22:13:01 -0400 (EDT)
+From: mitcert@MIT.EDU
+To: geofft@mit.edu
+Subject: CSR for queues.mit.edu (scripts vhost)  [help.mit.edu #695371]
+
+Certificate:
+    Data:
+        Version: 3 (0x2)
+        Serial Number: 2941 (0xb7d)
+        Signature Algorithm: sha1WithRSAEncryption
+        Issuer: C=US, ST=Massachusetts, O=Massachusetts Institute of Technology, OU=MIT Certification Authority
+        Validity
+            Not Before: Aug 27 16:00:00 2008 GMT
+            Not After : Aug 27 16:00:00 2009 GMT
+        Subject: C=US, ST=Massachusetts, L=Cambridge, O=Massachusetts Institute of Technology, OU=Student Information Processing Board, CN=queues.mit.edu/Email=scripts@mit.edu
+        Subject Public Key Info:
+            Public Key Algorithm: rsaEncryption
+            RSA Public Key: (1024 bit)
+                Modulus (1024 bit):
+                    00:b5:3e:21:4d:c1:89:6b:01:8c:47:80:fe:b3:37:
+                    27:76:f8:52:41:e6:a2:3d:4b:76:78:e5:f2:66:3c:
+                    0f:b1:ad:fb:97:8f:2e:a2:b6:53:d3:b6:0e:e2:66:
+                    f9:b9:0b:b7:ce:b4:d5:f5:1c:1f:6f:22:7d:48:f5:
+                    6d:f0:16:cd:8e:48:79:d1:14:4a:14:2f:2f:f8:c4:
+                    bd:1d:87:cf:7d:8b:5c:77:ad:58:24:b0:0e:a1:6d:
+                    d6:0a:c7:d8:bc:2f:67:65:c8:5d:d8:d8:31:c2:67:
+                    4b:4a:f4:a1:a5:54:82:af:cb:34:08:2a:04:7f:8e:
+                    7c:4c:b7:db:dc:6a:8a:5d:81
+                Exponent: 65537 (0x10001)
+        X509v3 extensions:
+            X509v3 Basic Constraints: 
+                CA:FALSE
+            Netscape Cert Type: 
+                SSL Client, SSL Server, S/MIME
+            X509v3 Extended Key Usage: 
+                TLS Web Server Authentication, E-mail Protection, TLS Web Client Authentication
+            X509v3 Key Usage: 
+                Digital Signature, Non Repudiation, Key Encipherment
+            X509v3 Subject Key Identifier: 
+                54:11:7C:09:55:44:1C:94:45:A9:A2:76:46:2B:2C:24:26:6A:44:E8
+    Signature Algorithm: sha1WithRSAEncryption
+        6b:1e:d2:cf:18:ff:c8:18:4f:d9:4e:c8:b1:e0:4d:94:6d:7b:
+        28:3c:ab:e8:60:e3:e1:14:ed:ac:85:5a:6a:17:67:03:81:bf:
+        78:39:cd:5c:7e:0d:0f:02:a8:27:b2:e9:af:6b:45:9d:b0:01:
+        45:13:71:27:cf:49:14:32:c9:19:0b:91:1a:34:05:ca:29:ea:
+        94:d5:61:5e:fa:f5:a0:02:48:0f:b2:8f:aa:d3:2b:4b:46:f9:
+        ff:e1:00:14:1f:c9:d6:2a:b8:ae:b4:46:57:2e:6b:19:dc:70:
+        1a:fc:11:7c:d3:01:2e:83:af:3c:bc:23:90:7b:48:77:36:48:
+        5c:dd
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
+
Index: server/fedora/config/etc/pki/tls/certs/wakeup.pem
===================================================================
--- server/fedora/config/etc/pki/tls/certs/wakeup.pem	(revision 822)
+++ server/fedora/config/etc/pki/tls/certs/wakeup.pem	(revision 822)
@@ -0,0 +1,71 @@
+From mitcert@MIT.EDU Thu Aug 28 22:16:26 2008
+Date: Thu, 28 Aug 2008 22:15:54 -0400 (EDT)
+From: mitcert@MIT.EDU
+To: geofft@mit.edu
+Subject: CSR for wakeup.mit.edu (scripts vhost)  [help.mit.edu #695368]
+
+Certificate:
+    Data:
+        Version: 3 (0x2)
+        Serial Number: 2944 (0xb80)
+        Signature Algorithm: sha1WithRSAEncryption
+        Issuer: C=US, ST=Massachusetts, O=Massachusetts Institute of Technology, OU=MIT Certification Authority
+        Validity
+            Not Before: Aug 27 16:00:00 2008 GMT
+            Not After : Aug 27 16:00:00 2009 GMT
+        Subject: C=US, ST=Massachusetts, L=Cambridge, O=Massachusetts Institute of Technology, OU=Student Information Processing Board, CN=wakeup.mit.edu/Email=scripts@mit.edu
+        Subject Public Key Info:
+            Public Key Algorithm: rsaEncryption
+            RSA Public Key: (1024 bit)
+                Modulus (1024 bit):
+                    00:b5:3e:21:4d:c1:89:6b:01:8c:47:80:fe:b3:37:
+                    27:76:f8:52:41:e6:a2:3d:4b:76:78:e5:f2:66:3c:
+                    0f:b1:ad:fb:97:8f:2e:a2:b6:53:d3:b6:0e:e2:66:
+                    f9:b9:0b:b7:ce:b4:d5:f5:1c:1f:6f:22:7d:48:f5:
+                    6d:f0:16:cd:8e:48:79:d1:14:4a:14:2f:2f:f8:c4:
+                    bd:1d:87:cf:7d:8b:5c:77:ad:58:24:b0:0e:a1:6d:
+                    d6:0a:c7:d8:bc:2f:67:65:c8:5d:d8:d8:31:c2:67:
+                    4b:4a:f4:a1:a5:54:82:af:cb:34:08:2a:04:7f:8e:
+                    7c:4c:b7:db:dc:6a:8a:5d:81
+                Exponent: 65537 (0x10001)
+        X509v3 extensions:
+            X509v3 Basic Constraints: 
+                CA:FALSE
+            Netscape Cert Type: 
+                SSL Client, SSL Server, S/MIME
+            X509v3 Extended Key Usage: 
+                TLS Web Server Authentication, E-mail Protection, TLS Web Client Authentication
+            X509v3 Key Usage: 
+                Digital Signature, Non Repudiation, Key Encipherment
+            X509v3 Subject Key Identifier: 
+                54:11:7C:09:55:44:1C:94:45:A9:A2:76:46:2B:2C:24:26:6A:44:E8
+    Signature Algorithm: sha1WithRSAEncryption
+        8b:9b:7c:e8:02:8c:f3:02:09:18:93:a8:d1:44:b0:91:3a:d0:
+        a8:f6:e0:04:e6:60:ac:7c:99:f4:3b:20:86:a6:87:6b:5d:24:
+        e7:f9:bc:ef:02:9e:32:fc:a2:e8:64:ec:26:cc:31:d4:1b:7e:
+        36:62:22:34:04:07:13:70:20:1a:53:72:16:5f:a3:3e:ac:86:
+        0d:f1:e8:5e:1b:47:92:26:47:44:7e:0f:eb:19:68:f7:23:12:
+        f7:cb:f9:10:db:6c:f8:fb:d9:2e:29:cd:59:c8:e0:e1:03:da:
+        08:c2:57:8e:ac:10:f4:bc:22:e7:9b:50:8c:71:f6:f4:ab:ff:
+        38:f2
+-----BEGIN CERTIFICATE-----
+MIIDOTCCAqKgAwIBAgICC4AwDQYJKoZIhvcNAQEFBQAwezELMAkGA1UEBhMCVVMx
+FjAUBgNVBAgTDU1hc3NhY2h1c2V0dHMxLjAsBgNVBAoTJU1hc3NhY2h1c2V0dHMg
+SW5zdGl0dXRlIG9mIFRlY2hub2xvZ3kxJDAiBgNVBAsTG01JVCBDZXJ0aWZpY2F0
+aW9uIEF1dGhvcml0eTAeFw0wODA4MjcxNjAwMDBaFw0wOTA4MjcxNjAwMDBaMIHR
+MQswCQYDVQQGEwJVUzEWMBQGA1UECBMNTWFzc2FjaHVzZXR0czESMBAGA1UEBxMJ
+Q2FtYnJpZGdlMS4wLAYDVQQKEyVNYXNzYWNodXNldHRzIEluc3RpdHV0ZSBvZiBU
+ZWNobm9sb2d5MS0wKwYDVQQLEyRTdHVkZW50IEluZm9ybWF0aW9uIFByb2Nlc3Np
+bmcgQm9hcmQxFzAVBgNVBAMTDndha2V1cC5taXQuZWR1MR4wHAYJKoZIhvcNAQkB
+Fg9zY3JpcHRzQG1pdC5lZHUwgZ8wDQYJKoZIhvcNAQEBBQADgY0AMIGJAoGBALU+
+IU3BiWsBjEeA/rM3J3b4UkHmoj1Ldnjl8mY8D7Gt+5ePLqK2U9O2DuJm+bkLt860
+1fUcH28ifUj1bfAWzY5IedEUShQvL/jEvR2Hz32LXHetWCSwDqFt1grH2LwvZ2XI
+XdjYMcJnS0r0oaVUgq/LNAgqBH+OfEy329xqil2BAgMBAAGjdTBzMAkGA1UdEwQC
+MAAwEQYJYIZIAYb4QgEBBAQDAgXgMCcGA1UdJQQgMB4GCCsGAQUFBwMBBggrBgEF
+BQcDBAYIKwYBBQUHAwIwCwYDVR0PBAQDAgXgMB0GA1UdDgQWBBRUEXwJVUQclEWp
+onZGKywkJmpE6DANBgkqhkiG9w0BAQUFAAOBgQCLm3zoAozzAgkYk6jRRLCROtCo
+9uAE5mCsfJn0OyCGpodrXSTn+bzvAp4y/KLoZOwmzDHUG342YiI0BAcTcCAaU3IW
+X6M+rIYN8eheG0eSJkdEfg/rGWj3IxL3y/kQ22z4+9kuKc1ZyODhA9oIwleOrBD0
+vCLnm1CMcfb0q/848g==
+-----END CERTIFICATE-----
+
Index: server/fedora/config/etc/pki/tls/certs/westgate.pem
===================================================================
--- server/fedora/config/etc/pki/tls/certs/westgate.pem	(revision 822)
+++ server/fedora/config/etc/pki/tls/certs/westgate.pem	(revision 822)
@@ -0,0 +1,71 @@
+From mitcert@MIT.EDU Thu Aug 28 22:18:03 2008
+Date: Thu, 28 Aug 2008 22:17:52 -0400 (EDT)
+From: mitcert@MIT.EDU
+To: geofft@mit.edu
+Subject: CSR for westgate.mit.edu (scripts vhost)  [help.mit.edu #695364]
+
+Certificate:
+    Data:
+        Version: 3 (0x2)
+        Serial Number: 2947 (0xb83)
+        Signature Algorithm: sha1WithRSAEncryption
+        Issuer: C=US, ST=Massachusetts, O=Massachusetts Institute of Technology, OU=MIT Certification Authority
+        Validity
+            Not Before: Aug 27 16:00:00 2008 GMT
+            Not After : Aug 27 16:00:00 2009 GMT
+        Subject: C=US, ST=Massachusetts, L=Cambridge, O=Massachusetts Institute of Technology, OU=Student Information Processing Board, CN=westgate.mit.edu/Email=scripts@mit.edu
+        Subject Public Key Info:
+            Public Key Algorithm: rsaEncryption
+            RSA Public Key: (1024 bit)
+                Modulus (1024 bit):
+                    00:b5:3e:21:4d:c1:89:6b:01:8c:47:80:fe:b3:37:
+                    27:76:f8:52:41:e6:a2:3d:4b:76:78:e5:f2:66:3c:
+                    0f:b1:ad:fb:97:8f:2e:a2:b6:53:d3:b6:0e:e2:66:
+                    f9:b9:0b:b7:ce:b4:d5:f5:1c:1f:6f:22:7d:48:f5:
+                    6d:f0:16:cd:8e:48:79:d1:14:4a:14:2f:2f:f8:c4:
+                    bd:1d:87:cf:7d:8b:5c:77:ad:58:24:b0:0e:a1:6d:
+                    d6:0a:c7:d8:bc:2f:67:65:c8:5d:d8:d8:31:c2:67:
+                    4b:4a:f4:a1:a5:54:82:af:cb:34:08:2a:04:7f:8e:
+                    7c:4c:b7:db:dc:6a:8a:5d:81
+                Exponent: 65537 (0x10001)
+        X509v3 extensions:
+            X509v3 Basic Constraints: 
+                CA:FALSE
+            Netscape Cert Type: 
+                SSL Client, SSL Server, S/MIME
+            X509v3 Extended Key Usage: 
+                TLS Web Server Authentication, E-mail Protection, TLS Web Client Authentication
+            X509v3 Key Usage: 
+                Digital Signature, Non Repudiation, Key Encipherment
+            X509v3 Subject Key Identifier: 
+                54:11:7C:09:55:44:1C:94:45:A9:A2:76:46:2B:2C:24:26:6A:44:E8
+    Signature Algorithm: sha1WithRSAEncryption
+        94:40:6d:a8:48:57:93:52:9c:21:59:96:4f:41:cd:8f:ff:b7:
+        ff:f1:20:b6:c7:ed:4c:3c:cc:15:82:4c:a2:13:27:39:e4:d2:
+        20:89:72:f0:f6:b5:24:05:ed:a2:31:d4:c6:22:b5:7e:d8:7d:
+        21:a0:cf:8d:49:88:6c:a8:03:24:44:eb:96:33:4f:a8:9b:6b:
+        b2:10:3a:d7:48:2d:64:cb:a6:24:a6:9f:b3:7c:6f:9e:53:23:
+        a1:48:69:a1:a6:f2:3a:0e:1e:af:5b:33:6e:e3:03:27:0e:d5:
+        7a:85:9c:d6:80:bb:e3:cf:34:21:4f:df:6b:83:67:3e:73:5d:
+        46:8e
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
+
