Hi


I want to use pop3 with ssl and outlook email clients.
but everyting seems to fail

First of all I compiled the newest version of openssl
version openssl-0.9.6

then I compiled the latest version of UWimap with ssl support.
make options "make lnp SPECIALAUTHENTICATORS=ssl" and in the make
file the switch  SSLTYPE=unix like they discribe in the
in theire document on
http://www.washington.edu/imap/documentation/SSLBUILD.html

In my /etc/inetd.conf I have added the pop3, spop3, imap and imaps
entry's
like in the document on 
http://www.washington.edu/imap/documentation/SSLBUILD.html


pop-2   stream  tcp     nowait  root     /usr/local/sbin/ipop2d ipop2d
pop-3  stream  tcp     nowait  root     /usr/local/sbin/ipop3d ipop3d
imap   stream  tcp     nowait  root     /usr/local/sbin/imapd  imapd
pop3s  stream  tcp     nowait  root     /usr/local/sbin/ipop3d ipop3d
imaps  stream  tcp     nowait  root     /usr/local/sbin/imapd  imapd


Then I created the certificates.

/usr/local/ssl/bin/openssl req -new -x509 -nodes -days 356 -out
imapd.pem
Using configuration from /usr/local/ssl/openssl.cnf
Generating a 1024 bit RSA private key
...................++++++
.........................................++++++
writing new private key to 'privkey.pem'
-----
You are about to be asked to enter information that will be
incorporated   
into your certificate request.
What you are about to enter is what is called a Distinguished Name or a
DN.
There are quite a few fields but you can leave some blank
For some fields there will be a default value,
If you enter '.', the field will be left blank.
-----
Country Name (2 letter code) [AU]:NL
State or Province Name (full name) [Some-State]:Zeeland
Locality Name (eg, city) []:Breskens
Organization Name (eg, company) [Internet Widgits Pty Ltd]:ekky.org
Organizational Unit Name (eg, section) []:ekky.org
Common Name (eg, YOUR name) []:grumpy.ekky.org
Email Address []:[EMAIL PROTECTED]


When I restart inet everything looks pretty good :-)

When I use netscape with imaps in Linux connect to my mailserver
everything works fine even outlook express and outlook 97 work fine 
with imaps.
When I try to fetch my email using pop3s (using ssl), then the first
time everytinhg goes very well, but then outlook will hang and he will
not do it again.

A output of tcpdump:

[first time with succes]

# tcpdump port 995

tcpdump: listening on eth0
18:27:43.644817 pc11.ekky.org.1056 > grumpy.ekky.org.pop3s: R
981975:981975(0) win 0 (DF)
18:27:53.785761 pc11.ekky.org.nim > grumpy.ekky.org.pop3s: S
7721675:7721675(0) win 8192 <mss 1460,nop,nop,sackOK> (DF)
18:27:53.785872 grumpy.ekky.org.pop3s > pc11.ekky.org.nim: S
3636984806:3636984806(0) ack 7721676 win 5840 <mss 1460,nop,nop,sackOK>
(DF)
18:27:53.792153 pc11.ekky.org.nim > grumpy.ekky.org.pop3s: . ack 1 win
8760 (DF)
18:27:55.328346 pc11.ekky.org.nim > grumpy.ekky.org.pop3s: P 1:100(99)
ack 1 win 8760 (DF)
18:27:55.328465 grumpy.ekky.org.pop3s > pc11.ekky.org.nim: . ack 100 win
5840 (DF)
18:27:55.333466 grumpy.ekky.org.pop3s > pc11.ekky.org.nim: P
1:1013(1012) ack 100 win 5840 (DF)
18:27:55.392417 pc11.ekky.org.nim > grumpy.ekky.org.pop3s: P
100:282(182) ack 1013 win 7748 (DF)
18:27:55.430048 grumpy.ekky.org.pop3s > pc11.ekky.org.nim: . ack 282 win
6432 (DF)
18:27:55.453163 grumpy.ekky.org.pop3s > pc11.ekky.org.nim: P
1013:1056(43) ack 282 win 6432 (DF)
18:27:55.750058 grumpy.ekky.org.pop3s > pc11.ekky.org.nim: P
1013:1056(43) ack 282 win 6432 (DF)
18:27:55.751789 pc11.ekky.org.nim > grumpy.ekky.org.pop3s: . ack 1056
win 7705 (DF)
18:27:55.751888 grumpy.ekky.org.pop3s > pc11.ekky.org.nim: P
1056:1125(69) ack 282 win 6432 (DF)
18:27:55.795765 pc11.ekky.org.nim > grumpy.ekky.org.pop3s: P 282:314(32)
ack 1125 win 7636 (DF)
18:27:55.795844 grumpy.ekky.org.pop3s > pc11.ekky.org.nim: . ack 314 win
6432 (DF)
18:27:55.796735 grumpy.ekky.org.pop3s > pc11.ekky.org.nim: P
1125:1187(62) ack 314 win 6432 (DF)
18:27:55.833336 pc11.ekky.org.nim > grumpy.ekky.org.pop3s: P 314:349(35)
ack 1187 win 7574 (DF)
18:27:55.870065 grumpy.ekky.org.pop3s > pc11.ekky.org.nim: . ack 349 win
6432 (DF)
18:27:55.910926 grumpy.ekky.org.pop3s > pc11.ekky.org.nim: P
1187:1238(51) ack 349 win 6432 (DF)
18:27:55.937371 pc11.ekky.org.nim > grumpy.ekky.org.pop3s: P 349:376(27)
ack 1238 win 7523 (DF)
18:27:55.937476 grumpy.ekky.org.pop3s > pc11.ekky.org.nim: . ack 376 win
6432 (DF)
18:27:55.938389 grumpy.ekky.org.pop3s > pc11.ekky.org.nim: P
1238:1268(30) ack 376 win 6432 (DF)
18:27:55.957220 pc11.ekky.org.nim > grumpy.ekky.org.pop3s: P 376:403(27)
ack 1268 win 7493 (DF)
18:27:55.959466 grumpy.ekky.org.pop3s > pc11.ekky.org.nim: P
1268:1303(35) ack 403 win 6432 (DF)
18:27:55.960692 grumpy.ekky.org.pop3s > pc11.ekky.org.nim: F
1303:1303(0) ack 403 win 6432 (DF)
18:27:55.963225 pc11.ekky.org.nim > grumpy.ekky.org.pop3s: . ack 1304
win 7458 (DF)
18:27:55.968414 pc11.ekky.org.nim > grumpy.ekky.org.pop3s: F 403:403(0)
ack 1304 win 7458 (DF)
18:27:55.968488 grumpy.ekky.org.pop3s > pc11.ekky.org.nim: . ack 404 win
6432 (DF)


[second time when outlook fails]

18:30:03.649028 pc11.ekky.org.1060 > grumpy.ekky.org.pop3s: S
7793917:7793917(0) win 8192 <mss 1460,nop,nop,sackOK> (DF)
18:30:03.649137 grumpy.ekky.org.pop3s > pc11.ekky.org.1060: S
3753727654:3753727654(0) ack 7793918 win 5840 <mss 1460,nop,nop,sackOK>
(DF)
18:30:03.653529 pc11.ekky.org.1060 > grumpy.ekky.org.pop3s: . ack 1 win
8760 (DF)
18:30:03.663379 pc11.ekky.org.1060 > grumpy.ekky.org.pop3s: P 1:97(96)
ack 1 win 8760 (DF)
18:30:03.663480 grumpy.ekky.org.pop3s > pc11.ekky.org.1060: . ack 97 win
5840 (DF)
18:30:03.704432 grumpy.ekky.org.pop3s > pc11.ekky.org.1060: P
1:1013(1012) ack 97 win 5840 (DF)
18:30:03.933250 pc11.ekky.org.1060 > grumpy.ekky.org.pop3s: . ack 1013
win 7748 (DF)




So can somebody please tell me what I'm doing wrong


thanks



Piet.
______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to