Sebastian,

Thank You for You help. I added "-cipher DEFAULT:@SECLEVEL=0" and this resolved the case. 🙂

Pozdrawiam serdecznie
Maciej Bogucki

On 11.03.2024 18:23, Sebastian Andrzej Siewior wrote:
On 2024-03-11 13:29:10 [+0100], Maciej Bogucki wrote:
Hi,
Hi,

When I use stiati compiled openssl form different system I can have the
connection

root@nsd-sdproxy1:~# /tmp/openssl version
OpenSSL 1.0.1t  3 May 2016
that is stone age.

root@nsd-sdproxy1:~# /tmp/openssl  s_client -connect 192.168.92.95:636
-CAfile /etc/ssl/certs/ca-certificates.crt
What happens if you add
        -cipher DEFAULT:@SECLEVEL=0

On teh remote side is Windows 2008 with Active Directory over SSL/TLS.
My condolences. If you can, get rid of it. It will haunt you!

Pozdrawiam serdecznie
Maciej Bogucki
Sebastian

Reply via email to