On 08/23/2007 10:34 PM, Paul Panaitescu wrote:
Aug 23 22:27:37 mail postfix/smtpd[8199]: SSL3 alert
write:fatal:handshake failure
Aug 23 22:27:37 mail postfix/smtpd[8199]: SSL_accept:error in SSLv3
read client hello B
Aug 23 22:27:37 mail postfix/smtpd[8199]: SSL_accept:error in SSLv3
read client hello B
Aug 23 22:27:37 mail postfix/smtpd[8199]: SSL_accept error from
mail.westaco.com[127.0.0.1]: -1
Aug 23 22:27:37 mail postfix/smtpd[8199]: warning: TLS library
problem: 8199:error:1408A0C1:SSL routines:SSL3_GET_CLIENT_HELLO:no
shared cipher:s3_srvr.c:972:
Aug 23 22:27:37 mail postfix/smtpd[8199]: lost connection after
STARTTLS from mail.westaco.com[127.0.0.1]
Aug 23 22:27:37 mail postfix/smtpd[8199]: disconnect from
mail.westaco.com[127.0.0.1]
Aug 23 22:27:37 mail sendmail[8198]: STARTTLS=client, error: connect
failed=0, SSL_error=5, errno=0, retry=-1
Aug 23 22:27:37 mail sendmail[8198]: ruleset=tls_server,
arg1=SOFTWARE, relay=[127.0.0.1], reject=403 4.7.0 TLS handshake.
Aug 23 22:27:37 mail sendmail[8198]: l7NJRQOV008198: to=root,test,
ctladdr=test (500/500), delay=00:00:11, xdelay=00:00:00, mailer=relay,
pri=60013, relay=[127.0.0.1] [127.0.0.1], dsn=4.0.0, stat=Deferred:
403 4.7.0 TLS handshake.
partea asta zice destul de clar ca nu se inteleg la nivel SSL. ceea ce
neexistind certificate, nu as putea spune ca ma mira
si gata, mailul nu ajunge si pace
n-am reusit sa inteleg de ce, setarile TLS ale lu' postfix sunt asa:
#TLS
smtpd_tls_security_level = may
tls_random_source = dev:/dev/urandom
smtpd_tls_cert_file = none
smtpd_tls_loglevel = 3
#TLS
vreo sugestie ?
nu bag mina in foc, dar as zice ca eroarea provine din faptul ca nu ai
certificat.
ce zice postconf smtpd_tls_req_ccert ? daca e yes, incearca sa pui
smtpd_tls_req_ccert = no
evident, sugestia ar fi sa iti creezi si sa utilizezi un certificat,
chit ca devii propriul tau CA
_______________________________________________
RLUG mailing list
[email protected]
http://lists.lug.ro/mailman/listinfo/rlug