Client Verify DepthΒΆ

Change to what depth a client certificate should be verified.

It is possible to specify to what depth a client certificate should be verified:

Verify depth 0: Only self-signed certificates is allowed.
Verify depth 1: One signature is checked, so certificates directly signed
 by the root cert are allowed, but nothing more.
Verify depth 2: Possible to validate up to two signatures, so chains
 with one intermediate certificate are allowed. (Default)

Verify depth? <2>:
Verify depth set to 2
Activate new settings? (<Y>/n):
No updates to crl from http://ca.corp.com/CorpInternalRootCAv1.crl
No updates to crl from http://ca.corp.com/CorpPerson4CAv1.crl
No updates to crl from https://dept.ca.corp.com/corp-crl.pem
Nothing to do
Restart the web server to activate the new settings? (<Y>/n): y