OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Lutz Jaenicke (Lutz.Jaenicke_at_aet.TU-Cottbus.DE)
Date: Mon Dec 02 2002 - 10:36:03 CST

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    On Mon, Dec 02, 2002 at 01:48:43PM -0300, Ernesto Silva wrote:
    > On the other way, now "test" doesn't verificate "correo's" certificate. I
    > have put "correo's" ca certificate in "test" directories, and I also
    > configured
    > smtp_tls_CApath=/etc/postfix/certs
    > and did a "c_rehash /etc/postfix/certs". Links were created.
    >
    > I'm sending both log files again, I think we're getting closer, but there's
    > still something missing. Remember, each server has a different CA, and both
    > are generated locally.

    Are you running chrooted? Are the entries in /etc/postfix/certs world
    readable? CApath only looks up during runtime, so if chroot is used,
    you must have local copies in /var/spool/postfix and/or they must be readable
    by the "postfix" user.

    Best regards,
            Lutz

    -- 
    Lutz Jaenicke                             Lutz.Jaenickeaet.TU-Cottbus.DE
    http://www.aet.TU-Cottbus.DE/personen/jaenicke/
    BTU Cottbus, Allgemeine Elektrotechnik
    Universitaetsplatz 3-4, D-03044 Cottbus