Public bug reported:

Binary package hint: monit

Hi,

I hope, this is a bug. I have configured monit to use ssl with a http
server:

set httpd port 2812
    ssl enable
    pemfile /etc/monit/monit.pem
    allow md5 /etc/monit/htpasswd admin
    signature enable

I created a cert-request. After that I went to cacert.org and let the
cert be signed:

http://www.roessner-net.com/bilder/cacert.png

See:

ls -l /usr/share/ca-certificates/cacert.org/
insgesamt 16
drwxr-xr-x 2 root root 4096 2008-06-19 10:10 ./
drwxr-xr-x 9 root root 4096 2008-06-19 10:10 ../
-rw-r--r-- 1 root root 2151 2008-04-15 16:33 class3.crt
-rw-r--r-- 1 root root 2569 2008-04-15 16:33 root.crt

As you can see, cacert.org is officially supported with Ubuntu. But
monit tells me:

Aug 23 14:06:10 srv1 monit[23757]: monit HTTP server started
Aug 23 14:06:10 srv1 monit[23757]: Monit started
Aug 23 14:06:13 srv1 monit[23757]: monit: check_preverify(): SSL connection 
rejected because certificate verification has failed -- Error 20
Aug 23 14:06:13 srv1 monit[23757]: monit: embed_accepted_ssl_socket(): Openssl 
engine error: error:140890B2:SSL routines:func(137):reason(178)

And my browser shows me that the CA is not trusted. And this is the
reason, why I hope there is a bug. I really, really searched @Google,
but could not find answers on this topic. Could it be that monit was
built without the ca-certificates?

** Affects: monit (Ubuntu)
     Importance: Undecided
         Status: New

-- 
[hardy] monit ssl support
https://bugs.launchpad.net/bugs/260638
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to