[horde] OpenBSD 3.7 question

Vilius Ðumskas vilius at lnk.lt
Wed Jun 1 13:10:17 PDT 2005


Hello BOFH,

Wednesday, June 1, 2005, 9:06:27 PM, you wrote:

> * Vilius Å umskas <vilius at lnk.lt> [2005-05-29 23:38]:
>> BOFH <bofh at null-route.org> ra????:
>> 
>> > IMAP auth
>> > [Sun May 29 20:20:32 2005] [error] PHP Notice:  (null)(): Certificate
>> > failure for 0.mx.null-route.org: unable to get local issuer 
>> > certificate: /CN=0.mx.null-route.org (errflg=2) in Unknown on line 0
>> 
>> If you are authentificating agains IMAP server with self signed 
>> sertificate don't forget adding novalidate-cert in apropriate parameter
>> in conf.php.
>> 
>> In my casee:
>> imap/ssl/novalidate-cert
>> 
>> -- 
>>   Best Regards,
>> 
>>   Vilius

> OK, that works, but since I'm using a CA signed certificate from
> CACert (http://www.cacert.org/) and I have verified that the
> CACert RootCA is part of my CA chain (OpenSSL recognizes it),
> why do I have to specify not to check the validity?

> Is there something in php.ini that should be set to point to the
> CA chain?

I don't know why, but PHP's mail library (c-client) sometimes just not
like certificates. I'm using CA signed certificate too, and it is
valid in all aspects except PHP, so I disabled validation check. If you will find something, let me
know.

-- 
Best regards,
 Vilius                            mailto:vilius at lnk.lt



More information about the horde mailing list