Post Reply 
 
Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
optional client cert issue
2015-08-23, 21:55
Post: #2
RE: optional client cert issue
(2015-08-21 01:49)jcline Wrote:  Looks like I'm running into a known issue with optional client certs. When I try to chain boot from our https server I'm running into http://ipxe.org/err/410de3 which is not surprising given our setup. I found this via web search - http://lists.ipxe.org/pipermail/ipxe-dev...03989.html

Anyone know if there is a work around? Compile time option to not include client cert support maybe?

I've pushed what should be a fix to a temporary branch at http://git.ipxe.org/people/mcb30/ipxe.gi...ds/optcert.

Could you please try this code and let me know:

a) does it fix your problem? (i.e. does it continue the TLS connection when the server requests a certificate but iPXE has not been given any client certificate or private key?)

b) does it correctly provide the client certificate when iPXE is given a client certificate and private key to use?

If you can confirm both of these, then I can push the code to the master branch.

Thanks,

Michael
Visit this user's website Find all posts by this user
Quote this message in a reply
Post Reply 


Messages In This Thread
optional client cert issue - jcline - 2015-08-21, 01:49
RE: optional client cert issue - mcb30 - 2015-08-23 21:55



User(s) browsing this thread: 1 Guest(s)