Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 10 Feb 2017 13:12:10 +0000
From:      bugzilla-noreply@freebsd.org
To:        freebsd-ports-bugs@FreeBSD.org
Subject:   [Bug 216963] net-im/prosody does not find root certificates and ignores capath option
Message-ID:  <bug-216963-13@https.bugs.freebsd.org/bugzilla/>

next in thread | raw e-mail | index | archive | help
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D216963

            Bug ID: 216963
           Summary: net-im/prosody does not find root certificates and
                    ignores capath option
           Product: Ports & Packages
           Version: Latest
          Hardware: Any
                OS: Any
            Status: New
          Severity: Affects Some People
          Priority: ---
         Component: Individual Port(s)
          Assignee: lx@FreeBSD.org
          Reporter: freebsd@zilon.de
             Flags: maintainer-feedback?(lx@FreeBSD.org)
          Assignee: lx@FreeBSD.org

Prosody seems to be unable to find the root certificates that are installed=
 by
the ca_root_nss port and consequently connections secure connections to oth=
er
servers fail. Also if the capath option (see
https://prosody.im/doc/certificates#specify_trusted_certificate_store) does=
 not
work and seems to be ignored.=20

If the cafile option (https://prosody.im/doc/advanced_ssl_config#cafile) is
used instead and pointed to the file, prosody works fine.

The disadvantage of the latter is that the actual file hast to be modified =
if
additional certificates are added. This wouldn't be necessary if capath wou=
ld
work and one could simply put additional certificates to that folder.

--=20
You are receiving this mail because:
You are the assignee for the bug.=



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-216963-13>