Bug#737921: [TLS1.2] gnutls only likes SHA1 and SHA256 certificates

Jan Nordholz jnordholz at sec.t-labs.tu-berlin.de
Fri Feb 7 07:43:31 UTC 2014


Hi Daniel,

> I agree this is a bad error message for the situation where the digest
> isn't supported.
> 
> Have you tested this against libgnutls28?  GnuTLS 3.2.10-2 is the latest
> version in jessie and sid, and 3.2.8.1-2~bpo70+1 is in wheezy-backports.
>  I believe you'll find it resolved in this version.

well, I tested against gnutls-serv, which indeed seems to work (and that
one's linked to gnutls28). However my original problem occurred with exim,
and I was reluctant to recompile those packages as I don't know how much of
the gnutls API has changed and would need fixing in exim.

Good to know that the library migration will eventually take care of this.


Thanks,

Jan



More information about the Pkg-gnutls-maint mailing list