On Sat, 6 May 2000, Garrett Wollman wrote:

# I've had this problem with recent values of OpenSSL since last
# November.  I haven't gotten around to playing with permutations of the
# openssl.cnf file yet.  I tried my site certificate on various versions
# of Netscape and Exploder, and all of them failed in a similar manner,
# but `openssl s_client' worked just fine, and all the other clients
# failed identically against `openssl s_server'.  I sent a note about
# this to the OpenSSL mailing-list, and did not receive a single
# relevant response.

So what do you use as a workaround?  The openssl port?  The old
SSLeay port?  Would using DSA instead of RSA make matters better?


