Can't get Client certificates to work
|
2013-03-25, 13:50
Post: #6
|
|||
|
|||
RE: Can't get Client certificates to work
(2013-03-25 13:20)Viator Wrote: I've recreated all keys and certs (the way I did describe in my first post) to be sure they match and then I tried to use ca.crt - same result. With client-certificate verification turned on, the client won't start but does so if the verification is switched off. :-( The client certificate name doesn't really matter. You can use the SSLRequire directive for Apache to restrict which client certificates are accepted; I think the default is to accept any certificates which can be validated. Quote:In the "docu" theres a cross certificate mentioned (openssl ca -config ca.cnf -extensions cross -notext -preserveDN -ss_cert startcom.crt -out startcom-cross.crt) but I do not know if an how this is important for me. How should I use this certificates? Cross-signing is not relevant to your setup. Have you checked the server log files to see if it contains any explanations? Failing that, you could try capturing the traffic, and post the capture file somewhere I can fetch it. Michael |
|||
« Next Oldest | Next Newest »
|
Messages In This Thread |
Can't get Client certificates to work - Viator - 2013-03-22, 18:42
RE: Can't get Client certificates to work - mcb30 - 2013-03-23, 22:02
RE: Can't get Client certificates to work - Viator - 2013-03-25, 09:56
RE: Can't get Client certificates to work - mcb30 - 2013-03-25, 11:57
RE: Can't get Client certificates to work - Viator - 2013-03-25, 13:20
RE: Can't get Client certificates to work - mcb30 - 2013-03-25 13:50
RE: Can't get Client certificates to work - robinsmidsrod - 2013-03-28, 22:04
RE: Can't get Client certificates to work - Viator - 2013-03-29, 09:58
RE: Can't get Client certificates to work - robinsmidsrod - 2013-03-29, 17:19
RE: Can't get Client certificates to work - Viator - 2013-04-02, 14:43
|
User(s) browsing this thread: 1 Guest(s)