On Mon, 2002-11-25 at 13:52, Paul Dorneanu wrote:
> "The server you are connected to is using a security certificate that 
> could not be verified.
> A certificate chain processed, but terminated in a root certificate 
> which is not trusted by the trust provider.
> Do you want to continue using this server?"
> 
Depinde ce server de server de SMTP folosesti. Am patit aceeasi
chestie cu Apache si un certificat legal dar care nu era semnat
direct de un RA ci de o autoritate intermediara certificata de RA si
Mozilla nu-mi recunostea certificatul; solutia a fost sa downl.
certificatul autoritatii intermediare semnat de RA (si care era "crezut"
de Mozilla). Sper ca ai inteles ce-am vrut sa zic.

 In Apache trebuia sa specific:
 SSLCertificateChainFile=certintermediar.pem

De ex. pentru Postfix:

===> sample-tls.cf <===
# Example: the certificate for "server.dom.ain" was 
# issued by "intermediate CA" which itself has a certificate of "root 
# CA". Create the server.pem file by 
  cat server_cert.pem intemediate_CA.pem root_CA.pem > server.pem
===> ...

Ce MTA folsoesti ? Parca Qmail avea chiar o directiva speciala gen
Apache pentru asa ceva.


mitu
---
Pentru dezabonare, trimiteti mail la 
[EMAIL PROTECTED] cu subiectul 'unsubscribe rlug'.
REGULI, arhive si alte informatii: http://www.lug.ro/mlist/


Raspunde prin e-mail lui