I have a root cert from Thawte and I'm trying to figure out where it's
supposed to go.

I have Redhat's imap-2000 with ssl support running on my mail server.  It
has a certificate issued to it by Thawte.  I have no problems with mail
clients like Netscape Messenger, etc., but I cannot connect to my imap
server with pine-4.30 (also from Redhat with ssl support).  It says "Unable
to get local issuer's certificate".

Anyway to make a long story short, I got a copy of Thawte's root cert and I
checked connecting to my imap server with 'openssl s_client'.  If I specify
the CAfile, there are no verify problems.  Without it, as you'd expect, I
get the verify error messages - "unable to to get local issue certificate"

So, now I'm down to figuring out how to install Thawte's root cert.  I've
tried mucking around with openssl.cnf, defining the environment variable
OPENSSL_CONF to point to my modified openssl.cnf, but no luck.

-- 
Kenneth Teh                            Email [EMAIL PROTECTED]
Physics Division                         Tel 630.252.3073
Argonne National Laboratory              Fax 630.252.2864
9700 S. Cass Ave.
Argonne, IL 60439
USA

______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to