Hi all, I'm testing mediaproxy 2.5.2 on a debian 6.0 server and followed the simple install instructions from repositories. I created certificates using tinyCA changing the option in Netscape Certificate Type to "SSL Server, SSL Client" and load them on the server with the appropriate name (relay.crt, relay,key, ca.pem, and crl.pem)
Installed software: ii mediaproxy-relay 2.5.2squeeze MediaProxy relay ii libgnutls26 2.8.6-1+squeeze2 the GNU TLS library - runtime library ii python-gnutls 1.2.4squeeze Python wrapper for the GNUTLS library Log output: ul 9 12:16:16 debian603 media-relay[12930]: Starting MediaProxy Relay 2.5.2 Jul 9 12:16:17 debian603 media-relay[12930]: using set_wakeup_fd Jul 9 12:16:17 debian603 media-relay[12930]: Set resource limit for maximum open file descriptors to 11000 Jul 9 12:16:17 debian603 media-relay[12930]: fatal error: failed to create MediaProxy Relay: ASN1 parser: Error in DER parsing. Jul 9 12:16:17 debian603 media-relay[12930]: Traceback (most recent call last): Jul 9 12:16:17 debian603 media-relay[12930]: File "/usr/bin/media-relay", line 103, in <module> Jul 9 12:16:17 debian603 media-relay[12930]: relay = MediaRelay() Jul 9 12:16:17 debian603 media-relay[12930]: File "/usr/lib/python2.6/dist-packages/mediaproxy/relay.py", line 319, in __init__ Jul 9 12:16:17 debian603 media-relay[12930]: self.cred = X509Credentials(cert_name='relay') Jul 9 12:16:17 debian603 media-relay[12930]: File "/usr/lib/python2.6/dist-packages/mediaproxy/tls.py", line 132, in __init__ Jul 9 12:16:17 debian603 media-relay[12930]: twisted.X509Credentials.__init__(self, self.X509cert, self.X509key, [self.X509ca], [self.X509crl]) Jul 9 12:16:17 debian603 media-relay[12930]: File "/usr/lib/python2.6/dist-packages/mediaproxy/tls.py", line 99, in __get__ Jul 9 12:16:17 debian603 media-relay[12930]: return descriptor.get() Jul 9 12:16:17 debian603 media-relay[12930]: File "/usr/lib/python2.6/dist-packages/mediaproxy/tls.py", line 82, in get Jul 9 12:16:17 debian603 media-relay[12930]: self.object = self.klass(f.read()) Jul 9 12:16:17 debian603 media-relay[12930]: File "<string>", line 1, in __init__ Jul 9 12:16:17 debian603 media-relay[12930]: File "/usr/lib/python2.6/dist-packages/gnutls/validators.py", line 273, in check_args Jul 9 12:16:17 debian603 media-relay[12930]: return func(*func_args) Jul 9 12:16:17 debian603 media-relay[12930]: File "/usr/lib/python2.6/dist-packages/gnutls/crypto.py", line 213, in __init__ Jul 9 12:16:17 debian603 media-relay[12930]: gnutls_x509_privkey_import(self._c_object, byref(data), format) Jul 9 12:16:17 debian603 media-relay[12930]: File "/usr/lib/python2.6/dist-packages/gnutls/library/errors.py", line 54, in check_status Jul 9 12:16:17 debian603 media-relay[12930]: raise GNUTLSError(ErrorMessage(retcode)) Jul 9 12:16:17 debian603 media-relay[12930]: GNUTLSError: ASN1 parser: Error in DER parsing. I re-created the cert files to see whether there was some problem but they still show the same behaviour. Could it be any problem with GNUTLS version? Is there any special rule to create the certificate (I've created another one for opensips and the SIP server was able to read it)? Thanks in advance for any hint, Best regards, Samuel.
_______________________________________________ Users mailing list [email protected] http://lists.opensips.org/cgi-bin/mailman/listinfo/users
