OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
TLS question: what checks are performed?

From: Adrian 'Dagurashibanipal' von Bidder (Careful! What I say *might* be a joke.) (avbidderfortytwo.ch)
Date: Thu Sep 11 2003 - 15:13:41 CDT


Yo!

I just set up TLS on my mailserver - now I'm curious: what checks do smtp and
smtpd perform when they receive a certificate? I know that default is to
accept everything on faith - and I don't want to change that. However, I
wonder in what circumstances a warning message is written to the log (to be
specific: what should the cn in the certificate be? The MX, or the hostname
from the reverse lookup, or just any hostname that resolves to the right IP
address?).

(Pointers to the relevant docs welcome, too).

cheers
-- vbi

--
A journey of a thousand miles starts under one's feet.
                -- Lao Tsu

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.3 (GNU/Linux)

iKcEABECAGcFAj9g13hgGmh0dHA6Ly9mb3J0eXR3by5jaC9sZWdhbC9ncGcvZW1h
aWwuMjAwMjA4MjI/dmVyc2lvbj0xLjUmbWQ1c3VtPTVkZmY4NjhkMTE4NDMyNzYw
NzFiMjVlYjcwMDZkYTNlAAoJEIukMYvlp/fWRC8An2IjcyJiKuLWJl9JzIQkQzWw
syv2AJ41/8EJDRSs+p0myd/0L8ClExIVlg==
=SRGG
-----END PGP SIGNATURE-----