On Di, 15.02.2005, 13:20, Nicolas Ledez wrote: > Le Tue, Feb 15, 2005 at 11:38:43AM +0100, Christian Storch a écrit : ... > My ca was generated with attach script. > And my cyrus cert with do script. > >> Nicolas: How you've created your certs? >> The commands with arguments and version of openssl, libssl would be >> interesting. >> Perhaps the lines with tls_... within your imapd.conf, too. > > tls_cert_file: /etc/cyrus/imap.winch.my.crt > tls_key_file: /etc/cyrus/imap.winch.my.key > tls_ca_path: /etc/ssl/certs > tls_session_timeout: 0 > tls_cipher_list: TLSv1:SSLv3:SSLv2:!NULL:!EXPORT:!DES:!LOW:@STRENGTH >
I've tried your scripts for creating root and server certs. Testing with s_client on two different servers I got no errors but nearly the same output you've posted! woody: ii cyrus21-common 2.1.15-0woody.1.0 Cyrus mail system (common files) ii cyrus21-imapd 2.1.15-0woody.1.0 Cyrus mail system (IMAP support) ii libssl0.9.7 0.9.7d-0.backports.org.1 SSL shared libraries sid: ii cyrus21-common 2.1.17-3 Cyrus mail system (common files) ii cyrus21-imapd 2.1.17-3 Cyrus mail system (IMAP support) ii libssl0.9.7 0.9.7c-5 SSL shared libraries What versions are you using? - It's the only idea I have at the moment. Christian -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]