I've got 1 Windows 2000 workstation running the current version of 
Seamonkey.  They pass though our V.2 ASSP install on port 587 for TLS.  
Everything was working fine until an hour ago.  At this point, 
250-STARTTLS is no longer offered.

Dropping to a Windows command prompt and doing a telnet server 587 shows 
that STARTTLS is not in the list of the ehlo, but the machine on the 
same switch, sitting next to it does get the STARTTLS offer.

On a hunch, I changed the machine's IP address and STARTTLS was 
offered.  Logs attached:

Sep-08-11 10:48:32 [Worker_3] 192.168.100.44 info: got STARTTLS request 
from 192.168.100.44
Sep-08-11 10:48:32 [Worker_3] 192.168.100.44 error: Couldn't upgrade to 
TLS for client 192.168.100.44: SSL connect accept failed because of 
handshake problemserror:14094418:SSL routines:SSL3_READ_BYTES:tlsv1 
alert unknown ca
Sep-08-11 10:48:32 [Worker_3] 192.168.100.44 info: no (more) data 
readable from 192.168.100.44 (connection closed by peer) - Connection 
reset by peer - last command was 'STARTTLS'
Sep-08-11 10:48:32 [Worker_3] Disconnected: 192.168.100.44
Sep-08-11 10:48:37 [Worker_1] Connected: 192.168.100.44:2842 > 
10.0.0.10:587 > 10.0.0.12:25
Sep-08-11 10:48:37 [Worker_1] Disconnected: 192.168.100.44
Sep-08-11 10:49:11 [Worker_1] Connected: 192.168.100.44:2843 > 
10.0.0.10:587 > 10.0.0.12:25
Sep-08-11 10:49:25 [Worker_1] Disconnected: 192.168.100.44
Sep-08-11 10:52:57 [Worker_2] Connected: 192.168.100.44:2882 > 
10.0.0.10:587 > 10.0.0.12:25
Sep-08-11 10:52:57 [Worker_2] Disconnected: 192.168.100.44
Sep-08-11 10:55:59 [Worker_2] Connected: 192.168.100.44:1031 > 
10.0.0.10:587 > 10.0.0.12:25
Sep-08-11 10:56:12 [Worker_2] Disconnected: 192.168.100.44
Sep-08-11 10:59:25 [Worker_3] Connected: 192.168.100.44:1033 > 
10.0.0.10:587 > 10.0.0.12:25
Sep-08-11 10:59:57 [Worker_3] Disconnected: 192.168.100.44


I've tried to find the database that would prevent TLS from being 
offered on this client, but don't seem to be able to find it.

Any suggestions?

Doug


-- 

Ben Franklin quote:

"Those who would give up Essential Liberty to purchase a little Temporary 
Safety, deserve neither Liberty nor Safety."


------------------------------------------------------------------------------
Doing More with Less: The Next Generation Virtual Desktop 
What are the key obstacles that have prevented many mid-market businesses
from deploying virtual desktops?   How do next-generation virtual desktops
provide companies an easier-to-deploy, easier-to-manage and more affordable
virtual desktop model.http://www.accelacomm.com/jaw/sfnl/114/51426474/
_______________________________________________
Assp-user mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/assp-user

Reply via email to