Re: STARTTLS connection on jabberd2

2015-02-26 Thread Tomasz Sterna
Dnia 2015-02-26, czw o godzinie 12:00 +0100, Matěj Cepl pisze: https://bugzilla.redhat.com/show_bug.cgi?id=1179229. What do you think about my comment 3 and the attached patch? I have no idea. My knowledge of TLS is close to vague. -- /o__ Q: What do monsters eat? (_^' A: Things.

Re: STARTTLS connection on jabberd2

2015-02-26 Thread Tomasz Sterna
Dnia 2015-02-26, czw o godzinie 01:09 +0100, Matěj Cepl pisze: pemfile=/etc/pki/tls/certs/luther.ceplovi.cz-intermediate.crt .crt suggests that this is certificate only. You need a .pem with full chain of all certificates from the CA, to your certificate (if not present in global

Re: STARTTLS connection on jabberd2

2015-02-26 Thread Matěj Cepl
On 26/02/15 11:23, Tomasz Sterna wrote: Dnia 2015-02-26, czw o godzinie 01:09 +0100, Matěj Cepl pisze: pemfile=/etc/pki/tls/certs/luther.ceplovi.cz-intermediate.crt .crt suggests that this is certificate only. You need a .pem with full chain of all certificates from the CA, to your

STARTTLS connection on jabberd2

2015-02-25 Thread Matěj Cepl
Hi, I am installing jabberd2 from RHEL-6 package and the configuration seems to be bit broken (yes, I do need jabberd2, persuading me to switch to another server doesn't help me). I am now getting connection from the remote client, but unfortunately only without TLS and over unencrypted sessions.