On Fri, Nov 20, 1998, Preston Brown wrote:

> > The problem is not mod_ssl-related AFAIK. Isn't this the problem where the
> > Thawte CA cert in NS 3.0 is expired? I think all the people have to do is to
> > replace it with the current Thawte CA cert (from NS 4.0 or from the
> > ca-bundle.crt of mod_ssl).
> 
> That's what I thought, but the people claim that the new Thawte
> Certificates at least pop up the "Certificate Expired" window and let you
> do the "override stuff" when used with other servers.  Apparently other
> servers don't show you the 'security library error' dialog box, and then
> simply shut up.

Hmmmm.... at least this "security library error" is not from mod_ssl or
SSLeay, AFAIK. Instead seems like they didn't really replaced the Thawte CA
cert. Or as in NS4, they perhaps just importet it, but didn't marked the CA
cert as valid. Perhaps this leads to the dialog box. At least I don't know
what we could do different on server/mod_ssl side... :-(

                                       Ralf S. Engelschall
                                       [EMAIL PROTECTED]
                                       www.engelschall.com
______________________________________________________________________
Apache Interface to SSLeay (mod_ssl)   www.engelschall.com/sw/mod_ssl/
Official Support Mailing List               [EMAIL PROTECTED]
Automated List Manager                       [EMAIL PROTECTED]

Reply via email to