How to check client certifications?

2013-06-12 Thread Peter Bauer
I got a connection from someone with a client certification: Received: from foo.bar (foo.bar [10.0.0.1]) (using TLSv1.1 with cipher ECDHE-RSA-AES256-SHA (256/256 bits)) (Client CN mail.foo.bar, Issuer StartCom Class 1 Primary Intermediate Server CA (not verified)) by

Re: How to check client certifications?

2013-06-12 Thread Jeroen Geilman
On 06/12/2013 03:02 PM, Peter Bauer wrote: I got a connection from someone with a client certification: Received: from foo.bar (foo.bar [10.0.0.1]) (using TLSv1.1 with cipher ECDHE-RSA-AES256-SHA (256/256 bits)) (Client CN mail.foo.bar, Issuer StartCom Class 1 Primary

Re: How to check client certifications?

2013-06-12 Thread Viktor Dukhovni
On Wed, Jun 12, 2013 at 03:23:38PM +0200, Jeroen Geilman wrote: On 06/12/2013 03:02 PM, Peter Bauer wrote: How can I check the certificate of the incoming email? By fingerprint would be nice. And I would like to refuse it if check fails.

Re: How to check client certifications?

2013-06-12 Thread Viktor Dukhovni
On Wed, Jun 12, 2013 at 03:02:40PM +0200, Peter Bauer wrote: I got a connection from someone with a client certification: Received: from foo.bar (foo.bar [10.0.0.1]) (using TLSv1.1 with cipher ECDHE-RSA-AES256-SHA (256/256 bits)) (Client CN mail.foo.bar, Issuer StartCom Class