On Thu, Aug 18, 2011 at 5:44 PM, paddy carroll wrote:
> I don't accept it is an openssl issue.
> I have already verified that the client connection from openssl to the
> apache server is reporting the correct certificates, and likewise that the
> server is returning a correct unexpired certificate
I don't accept it is an openssl issue.
I have already verified that the client connection from openssl to the apache
server is reporting the correct certificates, and likewise that the server is
returning a correct unexpired certificate and CA chain to the client.
It is not an openssl issue as op
On Sun, Aug 14, 2011 at 11:42 AM, paddy carroll wrote:
> Hi,
>
> I have spent too long staring at my crypto material and apache logs. I'm
> stuck.
> I have checked and also had a colleague check my crypto trust chain,
> certificates and keys more than once.
> I have a reverse proxy setup
>
> clien
Hi,
I have spent too long staring at my crypto material and apache logs. I'm stuck.
I have checked and also had a colleague check my crypto trust chain,
certificates and keys more than once.
I have a reverse proxy setup
client --> firewall --> reverse proxy --> tomcat
firewall presents all req