BIND 10 #83: cmdctl and missing key/certificate

BIND 10 Development do-not-reply at isc.org
Tue Jun 29 02:32:28 UTC 2010


#83: cmdctl and missing key/certificate
----------------------+-----------------------------------------------------
 Reporter:  jreed     |        Owner:  UnAssigned                                    
     Type:  defect    |       Status:  reviewing                                     
 Priority:  major     |    Milestone:  05. 3rd Incremental Release: Serious Secondary
Component:  bind-ctl  |   Resolution:                                                
 Keywords:            |    Sensitive:  0                                             
----------------------+-----------------------------------------------------

Comment(by zhanglikun):

 Replying to [comment:5 jreed]:
 > Replying to [comment:4 zhanglikun]:
 > > cmdctl still runs when missing key/cert file(There is one error
 message provided to user), but any user can’t login to cmdctl, cmdctl will
 deny any connection from clients, but it doesn't do any impact on the
 service provided by Auth server.
 >
 > I don't see the error message for the admin running bind10 / cmdctl.
 What is the svn revision number for this "error message"? Or please copy
 and paste the error message or point me to the code.


 Hi jeremy, you can only get the error message when you try to connect with
 cmdctl(Should I give the error when cmdctl starting),

 Steps:
 1. Remove "/usr/local/etc/bind10-devel/cmdctl-keyfile.pem".
 2. Start Bind10 with '-v' option.
 3. Start Bindctl. the error message will be printed on the screen.
 like:
 "[b10-cmdctl] Fail to get user information, will deny any user"
 ""

 "[b10-cmdctl] Deny client's connection because key file
 '/usr/local/etc/bind10-devel/cmdctl-keyfile.pem' doesn't exist"

 "[b10-cmdctl] Deny client's connection because certificate file
 '/usr/local/etc/bind10-devel/cmdctl-certfile.pem' doesn't exist"

-- 
Ticket URL: <http://bind10.isc.org/ticket/83#comment:6>
BIND 10 Development <http://bind10.isc.org>
BIND 10 Development


More information about the bind10-tickets mailing list