Problem with nnrpd/SSL

Patrick Leslie Polzer leslie.polzer at gmx.net
Thu Apr 7 09:32:56 UTC 2005


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hello,

I have some serious problem with my nnrpd - it refuses to start in SSL
mode giving me no clues why. Setup:


# ldd `which nnrpd`|grep ssl
        libssl.so.0 => /usr/lib/libssl.so.0 (0xb7fb5000)

# cat /etc/inn/sasl.conf
tls_ca_path: /root/SSL/news
tls_cert_file: /root/SSL/news/cert.pem
tls_key_file: /root/SSL/news/key.pem

# ls -l /root/SSL/news
total 8
- -rw-r-----  1 news news 993 2005-04-07 10:07 cert.pem
- -rw-------  1 news news 887 2005-04-07 10:07 key.pem

...and I also tried it with some other cert setup I have lying around:

# ls -l /root/SSL
total 24
- -rw-r--r--  1 root root 1220 2005-04-07 10:00 ca.crt
- -rw-r--r--  1 root root  891 2005-04-07 10:00 ca.key
drwxr-xr-x  2 root root 4096 2005-04-07 10:07 news/
- -rw-r--r--  1 root root 3639 2005-04-07 10:00 server.crt
- -rw-r--r--  1 root root  684 2005-04-07 10:00 server.csr
- -rw-r--r--  1 root root  891 2005-04-07 10:00 server.key


And yes, nnrpd uses /etc/inn/sasl.conf. System is Slackware10
with a custom inn package.

Here's the quite verbose error message I get:

# nnrpd -f -S -p 563
580 Error initializing TLS


Kind regards,

Leslie
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.0 (GNU/Linux)
Comment: Using GnuPG with Thunderbird - http://enigmail.mozdev.org

iD8DBQFCVP5In/ep3VLXAokRAkX8AJ4h9IsFzyApIfwjFQu5aXTAwMQqnwCgnUuO
GpTl3E5NYpbJUYeuIz0yQAg=
=xqJY
-----END PGP SIGNATURE-----


More information about the inn-workers mailing list