Am 12.11.2012 16:15, schrieb Michael Meyer:
> *** Reindl Harald wrote:
>>
>>
>> Am 12.11.2012 15:42, schrieb Michael Meyer:
>>> *** Reindl Harald wrote:
>>>
>>>> and no it does work with libmicrohttpd-0.9.15 and 
>>>> gnutls-2.12.17-1.fc17.x86_64
>>>> "Login failed. OMP service is down"
>>>
>>> [...]
>>>
>>>> lib  serv:WARNING:2012-11-12 14h21.02 utc:13223: openvas_server_new: 
>>>> failed to set credentials key file
>>>> lib  serv:WARNING:2012-11-12 14h21.02 utc:13223: openvas_server_new:   
>>>> cert file: /var/lib/openvas/CA/clientcert.pem
>>>> lib  serv:WARNING:2012-11-12 14h21.02 utc:13223: openvas_server_new:   key 
>>>> file :
>>>
>>> RTFM ;)
>>>
>>> http://lists.wald.intevation.org/pipermail/openvas-discuss/2011-February/002527.html
>>> https://svn.wald.intevation.org/svn/openvas/trunk/openvas-manager/INSTALL
>>
>> you are missing that this all did fine run and IS configured
>> and stooped working after upgrade to F16, so i did RTFM this
>> nearly a year ago, see below (PEM = key + cert)
>>
>> [root@openvas:~]$ ls /var/lib/openvas/CA/
>> insgesamt 0
>> lrwxrwxrwx 1 root root 38 2011-12-18 19:45 cacert.pem -> 
>> /etc/openvas/openvas.thelounge.net.pem
>> lrwxrwxrwx 1 root root 38 2011-12-18 19:45 servercert.pem -> 
>> /etc/openvas/openvas.thelounge.net.pem
> 
> I can't see a clientcert.pem here. Again, read the managers INSTALL.

well, besides that this all worked..... now there is a ton of symlinks
to /etc/openvas/openvas.thelounge.net.pem, see at bottom

now we are at gnutls problem
i was there many months ago with OpenVAS4
the cert/key-problems may be caused by the followed update to
openVAS5 in the hope the compatibility vugs are fixed

[root@openvas:/var/log/openvas]$ cat *.log
lib  auth:WARNING:2012-11-12 16h33.00 CET:13948: Authentication configuration 
could not be loaded.
lib  auth:WARNING:2012-11-12 15h33.00 utc:13954: Authentication configuration 
could not be loaded.
event auth:MESSAGE:2012-11-12 15h33.25 utc:13960: Authentication success for 
user root
(081c6769-4a35-4521-b28b-a76c1e4e3165)
lib  serv:WARNING:2012-11-12 15h33.25 UTC:13960: openvas_server_connect: failed 
to shake hands with server: A TLS
packet with unexpected length was received.
lib  serv:WARNING:2012-11-12 15h33.25 UTC:13960:    Failed to shutdown server 
socket: Transport endpoint is not
connected
lib  serv:WARNING:2012-11-12 15h33.25 UTC:13960:    Failed to gnutls_bye: 
GnuTLS internal error.
[Mon Nov 12 15:33:07 2012][13955] openvassd 3.3.1 started
__________________________________________________

[root@openvas:/var/log/openvas]$ locate pem | grep openvas | grep -v /root/
/etc/openvas/openvas.thelounge.net.pem
/etc/pki/openvas/CA/cacert.pem
/etc/pki/openvas/CA/clientcert.pem
/etc/pki/openvas/CA/clientkey.pem
/etc/pki/openvas/CA/servercert.pem
/etc/pki/openvas/CA/serverkey.pem
/etc/pki/openvas/private/CA/cakey.pem
/etc/pki/openvas/private/CA/clientkey.pem
/etc/pki/openvas/private/CA/serverkey.pem
/var/lib/openvas/CA/cacert.pem
/var/lib/openvas/CA/clientcert.pem
/var/lib/openvas/CA/clientkey.pem
/var/lib/openvas/CA/servercert.pem
/var/lib/openvas/CA/serverkey.pem
/var/lib/openvas/private/CA/cacert.pem
/var/lib/openvas/private/CA/clientcert.pem
/var/lib/openvas/private/CA/clientkey.pem
/var/lib/openvas/private/CA/servercert.pem
/var/lib/openvas/private/CA/serverkey.pem


Attachment: signature.asc
Description: OpenPGP digital signature

_______________________________________________
Openvas-discuss mailing list
[email protected]
https://lists.wald.intevation.org/cgi-bin/mailman/listinfo/openvas-discuss

Reply via email to