Dr. Stephen Henson wrote:
Does the client CA chain include an intermediate certificate which is not
being sent: so the server can't build the chain to verify it?
I've checked the actual exchange with Wireshark, and it shows that the
client is sending the entire chain: client, CA 3, CA 2, root CA. The
root CA is the same as the one I'm using in the server.
Dan.
--
Dan Ellis, Software Engineer, BSC Team
ip.access ltd < http://www.ipaccess.com >
Building 2020, Cambourne Business Park, Cambourne, Cambridge, CB3 6DW
Tel: 01954 713790, Fax: 01954 713799
______________________________________________________________________
OpenSSL Project http://www.openssl.org
User Support Mailing List openssl-users@openssl.org
Automated List Manager [EMAIL PROTECTED]