LinuxQuestions.org
Download your favorite Linux distribution at LQ ISO.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Software
User Name
Password
Linux - Software This forum is for Software issues.
Having a problem installing a new program? Want to know which application is best for the job? Post your question in this forum.

Notices


Reply
  Search this Thread
Old 12-06-2004, 07:42 AM   #1
omg-ffs
LQ Newbie
 
Registered: Oct 2004
Posts: 7

Rep: Reputation: 0
sendmail is being a bitch & I've run out of valium..


Lo all,

I'm getting an error while trying to connect to my sendmail server. The server works for both internal mail, and receiving/sending mail.

The problem lies with the certificates for SSL /STARTTLS. I have followed the mini tutorial on the sendmail site on how to generate the key pair (done it once already without problems for SSL in apache). www.sendmail.org/~ca/email/other/cagreg.html Then I did..

Quote:
Edit newreq.pem and remove the unsigned certificate (leaving the private key). Copy the resulting newreq.pem to /etc/mail/certs/key.pem and copy newcert.pem to /etc/mail/certs/cert.pem. Set the permissions on key.pem to 400.
Then restarted sendmail.

Opening up a port & then telneting in gives me:
Code:
Trying MYIP...
Connected to my.host.co.uk.
Escape character is '^]'.
220 my.host.co.uk ESMTP Sendmail 8.12.11/8.12.11; Mon, 6 Dec 2004 12:44:45 GMT
ehlo localhost
250-my.host.co.uk Hello my.host.co.uk [MYIP], pleased to meet you
250-ENHANCEDSTATUSCODES
250-PIPELINING
250-8BITMIME
250-SIZE
250-DSN
250-ETRN
250-AUTH DIGEST-MD5 CRAM-MD5
250-STARTTLS
250-DELIVERBY
250 HELP
quit
221 2.0.0 my.host.co.uk closing connection
Connection closed by foreign host.
Now trying to retrieve mail give this error in a win based prog called incredimail "A certificate chain processed, but terminated in a root certificate which is not trusted by the trust provider". If I accept the certificate, then it will retreive mail. It does this everytime.. claims the certificates arent valid or somesuch.

In my M4 config file, I even specified absolute paths to the keys:
Code:
define(`CERT_DIR',`/etc/mail/certs') 	
define(`confCACERT_PATH',`CERT_DIR') 	
define(`confCACERT',`/etc/mail/certs/cacert.pem') 	
define(`confSERVER_CERT',`/etc/mail/certs/cert.pem') 	
define(`confSERVER_KEY',`/etc/mail/certs/key.pem') 	
define(`confCLIENT_CERT',`/etc/mail/certs/cert.pem') 	
define(`confCLIENT_KEY',`/etc/mail/certs/key.pem')
Does anyone have any ideas as how to resolve my sendmail headache?

Thanks
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
should i use borland c++ or just start taking valium now? where's my pint? Linux - Software 4 11-22-2005 04:17 PM
BitchX... you can't type BITCH @ FedoraForum.org because it will save as ***** t3gah General 9 03-19-2005 09:26 AM
paybacks are a bitch...arn't they!? shmude General 5 05-15-2004 05:16 AM
Proftpd - I need a valium..... 88guy Linux - General 5 02-18-2004 10:11 AM
Why is snort being a bitch? Jiggy Linux - Security 10 11-25-2003 08:39 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Software

All times are GMT -5. The time now is 06:32 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration