Hi,

Simon Josefsson <[EMAIL PROTECTED]> writes:

> Hi!  Actually, the tools works fine without your patch, IF I use a
> newly generated key.

Hmm, but without the patch, the DH parameters aren't used since the
invocation of `gnutls_certificate_set_dh_params ()' is commented out,
are they?

> I suspect OpenCDK uses the wrong RSA key to encrypt and/or decrypt the
> data.  I have several old and expired keys in my private key.  IIRC,
> even GnuPG had a similar problem with my key some time ago.

Then the key is to blame.  ;-)

Or at least GnuTLS should return a more appropriate error, like
`GNUTLS_A_CERTIFICATE_EXPIRED'.

Thanks,
Ludovic.



_______________________________________________
Help-gnutls mailing list
[email protected]
http://lists.gnu.org/mailman/listinfo/help-gnutls

Reply via email to