Bug#674990: exim breaks (again?) with TLS packet with unexpected length

Marc Haber mh+debian-packages at zugschlus.de
Tue May 29 09:12:36 UTC 2012


On Tue, May 29, 2012 at 05:59:04PM +0900, Norbert Preining wrote:
> > How many CAs do you have enabled to trust?
> 
> First all as shipped with debian, then I removed all and restarted
> exim, same effect and same error.

Interesting. Generally, Gnutls will error out with the TLS packet with
unexpected length as a quite generic case.

> I checked with gnutls-cli (or so) that no certificate is loaded.
> 
> Is there a way to verify what certificates are loaded by exim?

Not that I am aware of, but Andreas is very much more fluent in
GnuTLS. In exim 4.80, the GnuTLS code was greatly overhauled, so I
guess that upstream would be less than willing to invest time into the
old GnuTLS code.

Can you give a transcript of a gnutls-cli session from your server to
the smarthost, if you wish in private mail to andreas and me.

Greetings
Marc

-- 
-----------------------------------------------------------------------------
Marc Haber         | "I don't trust Computers. They | Mailadresse im Header
Mannheim, Germany  |  lose things."    Winona Ryder | Fon: *49 621 31958061
Nordisch by Nature |  How to make an American Quilt | Fax: *49 621 31958062





More information about the Pkg-exim4-maintainers mailing list