Hi Chester! chester c young schrieb am 2005-01-12 19:45:27: > does anyone have any idea on how to have ssl with multiple domains? in > imapd-ssl, for example, a certificate is generated for one domain - > that works fine, but when a second domain logs in, the mail client > (thunderbird) gives a big warning that the certificate does not match.
For many protocols it is not possible for the server to know which
domain has been connected, when it has to start the SSL/TLS layer. This
includes SMTP, IMAP, and POP3.
As courier does not know which domain you connected to, there is no way
to select between different certificates. The only way would be to use
different IP addresses for the different domains, but I guess you are
trying to use the same IP address. As someone else said: Use the same
domain for the client to connect to instead of a different domain for
each mail domain.
> have tried to make it work without certificates (tls?), just using
> ssl2, but then the client says it cannot agree on an encryption method
> with the server.
TLS is version 3.1 of SSL. AFAIK all versions of SSL/TLS require the
server to use a certificate. Only for the client certificates are
optional.
Tot kijk
Matthias
--
Fon: +49-(0)70 0770 07770 http://web.amessage.info
Fax: +49-(0)89 312 88 654 xmpp:[EMAIL PROTECTED]
signature.asc
Description: Digital signature
