[Techtalk] tls and mail server

Elwing elwing at elwing.org
Tue Oct 27 23:11:58 UTC 2009


What version of cyrus are you using?  There is a bug before 2.3.20 (I  
think) that won't accept the cert configuration unless you have a CA  
(most people don't).  It's been fixed in newer versions, and if not, I  
have a patch at http://weblog.elwing.org/elwing/index.php/2007/07/18/cyrus-imap-and-certificates/ 
  (and more details about the problem).

I've also seen this error when the key doesn't match the cert, and a  
few other things related to the certificates.. it's really hit or miss  
with the *excellent* error messages that cyrus gives you.

Elwing


On Oct 27, 2009, at 6:59 PM, Maria McKinley wrote:

> Greetings,
>
> I am running cyrus/tls/ldap. The imaps connection is not working,  
> but the imap and smtp connections are:
>
> ella:/var/log# testsaslauthd -u "test" -p "xxx" -s smtp
> 0: OK "Success."
> ella:/var/log# testsaslauthd -u "test" -p "xxx" -s imaps
> 0: NO "authentication failed"
> ella:/var/log# testsaslauthd -u "test" -p "xxx" -s imap
> 0: OK "Success."
>
> I can't figure out why this would be. Weirdly, I can connect and  
> check my mail on 993, but trying to access sieve gives errors and  
> times out, and there are lots of these errors in the logs:
>
> cyrus/imaps[18287]: Fatal error: tls_start_servertls() failed
>
> Anybody have an idea where to check? In the meantime, I continue to  
> google and check config files...
>
> thanks,
> maria
> _______________________________________________
> Techtalk mailing list
> Techtalk at linuxchix.org
> http://mailman.linuxchix.org/mailman/listinfo/techtalk



More information about the Techtalk mailing list