[Pkg-exim4-users] Re: TLS timeouts

Ross Boylan ross at biostat.ucsf.edu
Mon Sep 18 19:30:09 UTC 2006


On Mon, Sep 18, 2006 at 12:20:27PM -0700, Ross Boylan wrote:
> I just activated TLS on one of my machines by running the exim-gencert
> script and defining the appropriate macro.  Bizarrely, this was
> working for awhile, but now I'm getting
> another (corn), also running Debian exim4, inside my network I get
> 2006-09-18 11:07:13 TLS error on connection from corn.betterworld.us [192.168.40.2] (gnutls_handshake): timed out
> 2006-09-18 11:07:14 TLS error on connection from corn.betterworld.us [192.168.40.2] (gnutls_handshake): timed out
> 
> That message refers to a connection inside my network, for which I
> think I've enabled all packets.  However, I'm also getting this error
> from an outside server that did manage to send TLS messages when I
> first set things up yesterday.
> 
> The only thing that's changed is that I did a dist-upgrade after I had
> things setup, and that did include libgnutls13.
> 
> Any suggestions for diagnosis/cures?
> 
> I'm restarting exim to see if that helps.

The restart seems to have cured the problem.  The logs also show the
problem began just after the dist-upgrade.  They also show that some
remote connections were getting TLS at the same time my local machine
(corn) was getting TLS errors.  Odd.

The connect from corn also got this error on wheat (wheat=system with
TLS):
2006-09-18 11:12:13 SMTP command timeout on connection from corn.betterworld.us [192.168.40.2]
2006-09-18 11:12:14 SMTP command timeout on connection from corn.betterworld.us [192.168.40.2]

By the way, should invoke-rc.d exim4 reload have been sufficient to
activate TLS?  That seemed not to work in my initial tests; restart
did work.




More information about the Pkg-exim4-users mailing list