> This is from the working connection - so it's "just log noise", it seems,
> not causing an actual session abort.

Good!
 
> My gut feeling is that there is some garbage at the *end* of the CRL file,
> so OpenSSL is able to read "loaded 1 CRLs" from the file, and then there is
> something more, which confuses OpenSSL - but not enough to reject the
> session.

Attached is the actual crl file in PEM format.

-- 
Ralf Hildebrandt
Charité - Universitätsmedizin Berlin
Geschäftsbereich IT | Abteilung Netzwerk

Campus Benjamin Franklin (CBF)
Haus I | 1. OG | Raum 105
Hindenburgdamm 30 | D-12203 Berlin

Tel. +49 30 450 570 155
ralf.hildebra...@charite.de
https://www.charite.de

Attachment: crl.pem
Description: application/pem-certificate-chain

_______________________________________________
Openvpn-users mailing list
Openvpn-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openvpn-users

Reply via email to