2.3.11 STARTTLS broken if tls_ca_file is defined

(no email)
Date: Wed Jan 02 2008 - 11:46:11 EST

  • Next message: David Carter: "Incremental squat updates and IMAP "SCAN" extension"

    Hy all,
    I wish you an happy new year for 2k8.
     
     
    I've readden this bug on the mailing list, but could not reply cause i removed it.
     
    Since I upgraded to 2.3.11, It's seems i've got the same problem.
    I can use TLS via SSL via imaps on port 993 when i disable the tls_ca_file :
    imaps[45635]: TLS server engine: cannot load CA data
    Jan 2 17:34:47 imaptest imaps[45635]: starttls: TLSv1 with cipher AES256-SHA (256/256 bits reused) no authentication
    Jan 2 17:34:47 imaptest imaps[45635]: login: [x.x.x.x] toto2 plain+TLS User logged in
     
    but I can't connect to TLS via imapd on port 143 :
     
    TLS server engine: cannot load CA data
    Jan 2 17:35:37 imaptest imap[45653]: TLS server engine: No CA file specified. Client side certs may not work
    Jan 2 17:35:37 imaptest imap[45653]: STARTTLS negotiation failed: [ x.x.x.x ]
     
    I use client certificate.
     
    What can i do to solve it?

    Thanks a lot.
    Best Regards.
     
     

     Créez votre adresse électronique prÃ=20
     1 Go d'espace de stockage, anti-spam et anti-virus intégrés.


    ----
    Cyrus Home Page: http://cyrusimap.web.cmu.edu/
    Cyrus Wiki/FAQ: http://cyrusimap.web.cmu.edu/twiki
    List Archives/Info: http://asg.web.cmu.edu/cyrus/mailing-list.html
    

  • Next message: David Carter: "Incremental squat updates and IMAP "SCAN" extension"





    Hosted Email Solutions

    Invaluement Anti-Spam DNSBLs



    Powered By FreeBSD   Powered By FreeBSD