Re: [users@httpd] Mutual Authentication issue in 2.2.17 openssl 1.0.0d

2011-08-20 Thread J-H Johansen
On Thu, Aug 18, 2011 at 5:44 PM, paddy carroll wrote: > I don't accept it is an openssl issue. > I have already verified that the client connection from openssl to the > apache server is reporting the correct certificates, and likewise that the > server is returning a correct unexpired certificate

Re: [users@httpd] Mutual Authentication issue in 2.2.17 openssl 1.0.0d

2011-08-18 Thread paddy carroll
I don't accept it is an openssl issue. I have already verified that the client connection from openssl to the apache server is reporting the correct certificates, and likewise that the server is returning a correct unexpired certificate and CA chain to the client. It is not an openssl issue as op

Re: [users@httpd] Mutual Authentication issue in 2.2.17 openssl 1.0.0d

2011-08-18 Thread J-H Johansen
On Sun, Aug 14, 2011 at 11:42 AM, paddy carroll wrote: > Hi, > > I have spent too long staring at my crypto material and apache logs. I'm > stuck. > I have checked and also had a colleague check my crypto trust chain, > certificates and keys more than once. > I have a reverse proxy setup > > clien

[users@httpd] Mutual Authentication issue in 2.2.17 openssl 1.0.0d

2011-08-14 Thread paddy carroll
Hi, I have spent too long staring at my crypto material and apache logs. I'm stuck. I have checked and also had a colleague check my crypto trust chain, certificates and keys more than once. I have a reverse proxy setup client --> firewall --> reverse proxy --> tomcat firewall presents all req