Hi all,

I made following changes in my Postgres server which means I am enabling one 
way authentication: (Disabled Mutual authentication. Only client will 
authenticate server.)
hostssl all             myuser          0.0.0.0/0               md5 clientcert=0

I am trying psql with following options where I am providing client 
certificates also. It is connected perfectly.
psql "host= 10.10.11.18 sslmode=verify-ca sslrootcert=em-ca-crt.pem 
sslcert=em-client-crt.pem sslkey=em-client-key.pem port=5433 user=postgres 
dbname=postgres"

Same when we used with C api (PQconnectdb((const char *)str);) it is failing 
with following error message.

“tlsv1 alert unknown ca” 
<https://serverfault.com/questions/793260/what-does-tlsv1-alert-unknown-ca-mean>

Also we tried with Java test program. It is connecting properly. Can you please 
suggest what could be the reason?

Regards
Tarkeshwar


Reply via email to