Am 2004-06-21 16:29:36, schrieb Andreas Schmidt: >On 2004.06.21 14:35, Michelle Konzack wrote: >>Mal ne Frage, wo sollten eigentlich die Server SSL certifikate sein ? >> >>$HOME/.ssh/ ? >> > >Siehe man fetchmail: >-sslcertck >(Keyword: sslcertck) Causes fetchmail to strictly check the server >certificate against a set of local trusted certificates (see the >sslcertpath option). > >--sslcertpath <directory> >(Keyword: sslcertpath) Sets the directory fetchmail uses to look up >local certificates. The default is your OpenSSL default one.
Also in meiner fetchmailrc habe ich
ssl
sslcertpath $HOME/.tdfetchmail
sslcertck
Jetzt liefert er mir das:
____ ( '/home/michelle/tmp/fetchmail' ) ______________________________
/
| Processing started : 2004-06-21 17:10:09
| fetchmail: 5.9.11 querying mx.freenet.de (protocol IMAP) at Mon Jun 21 17:10:09
2004: poll started
| fetchmail: Issuer Organization: TC TrustCenter for Security in Data Networks GmbH
| fetchmail: Unknown Issuer CommonName
| fetchmail: Server CommonName: mx.freenet.de
| fetchmail: mx.freenet.de key fingerprint:
F1:FA:76:F8:14:5C:FC:42:1C:47:9F:F8:52:DA:60:EF
| fetchmail: Warning: server certificate verification: unable to get local issuer
certificate
| 17003:error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify
failed:s3_clnt.c:779:
| fetchmail: SSL connection failed.
\______________________________________________________________________
Sieht weniger gut aus...
also ich habe das certifikat, was ich �ber 'mutt' bekommen habe,
in das Verzeichnis ~/.tdfetchmail kopiert.
Frage: Will fetchmail einen bestimmten Namen
f�r die Certifikatdatei haben ?
>Schoenen Gruss,
>
>Andreas
Greetings
Michelle
--
Linux-User #280138 with the Linux Counter, http://counter.li.org/
Michelle Konzack Apt. 917 ICQ #328449886
50, rue de Soultz MSM LinuxMichi
0033/3/88452356 67100 Strasbourg/France IRC #Debian (irc.icq.com)
signature.pgp
Description: Digital signature

