Uploaded image for project: 'James Server'
  1. James Server
  2. JAMES-2631

TLS 1.2 problems with Certificate Request

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Closed
    • Major
    • Resolution: Fixed
    • 3.0.1
    • None
    • None
    • None

    Description

      We are using james 3.0.1 configured to use TLS in remote deliveries. The sending of emails over TLS is working fine but we have problems sending emails to a particular server which performs a "Certificate Request". When this happens, in a tcpdump capture I can see that, James returns an error Alert (Level: Fatal, Description: Certificate Unknown).
       
      The certificate used by the remote server is issued by a well know CA. In the picture server_request.png you can see as the remote server requests a "Certificate request" to the client (in this case to James).
       
      In the file james_reponse.png you can see how James sends a Fatal alert.
       
      I have been looking into the documentation but I haven't found the way to specify a keystore in the mailetcontainer.xml. Is this possible? Anyone knows how to fix this?
       
       

      Attachments

        1. james_response.png
          46 kB
          Arnau Rebassa
        2. server_request.png
          68 kB
          Arnau Rebassa

        Issue Links

          Activity

            People

              Unassigned Unassigned
              arebassa Arnau Rebassa
              Votes:
              1 Vote for this issue
              Watchers:
              3 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: