[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: TLS hostname check screwed up?



Michael Ströder <michael@stroeder.com> writes:

> HI!
>
> I'm using libldap of RE24 and have a problem with host name checking when
> doing TLS.
>
> OpenLDAP's debug output (real hostname exactly replaced by srv.domain.local):
>
> ------------------------------ snip ------------------------------
> TLS: hostname (srv.domain.local.) does not match common name in certificate
> (srv.domain.local).
> ------------------------------ snip ------------------------------
>
> Is this because of the trailing dot?

Did you update opensuse-11.1 recently? I have faced some problems with
updated openssl-0.9.8h-28.10.1 and certificate verfication.

-Dieter

-- 
Dieter Klünter | Systemberatung
http://dkluenter.de
GPG Key ID:8EF7B6C6
53°08'09,95"N
10°08'02,42"E