[Pkg-telepathy-maintainers] Bug#639667: telepathy-gabble: Claims my server's certificate is self-signed

Sam Morris sam at robots.org.uk
Wed Aug 31 11:43:10 UTC 2011


On Wed, 2011-08-31 at 13:25 +0200, Laurent Bigonville wrote:
> Le Wed, 31 Aug 2011 12:10:53 +0100,
> Sam Morris <sam at robots.org.uk> a écrit :
> 
> > On Wed, 2011-08-31 at 11:08 +0200, Laurent Bigonville wrote:
> > > Could you please try to add in empathy an explicit server?
> > > 
> > > The SSL certificate must also validate against the server part of
> > > the JID, so robots.org.uk here I guess.
> > 
> > What should I set it to? The server part of the JID is 'robots.org.uk'
> > and the certificate subject is 'CN=robots.org.uk'.
> 
> Well the issuer is 'CN=robots.org.uk'. The server certificate is
> 'CN=crypt.ethx.net'

Sorry, I shouldn't have been lazy and used the SMTP server as an
example. Though its certificate is signed by the same CA, the Jabber
server presents a different certificate.

I should have just pasted the output of running 'certtool -i' on the
Jabber server's certificate:

        X.509 Certificate Information:
        	Version: 3
        	Serial Number (hex): 14
        	Issuer: C=GB,O=robots.org.uk,OU=robots.org.uk certificate authority,CN=robots.org.uk certificate authority
        	Validity:
        		Not Before: Tue Oct 26 22:30:57 UTC 2010
        		Not After: Mon Oct 26 22:30:57 UTC 2015
        	Subject: CN=robots.org.uk
        	Subject Public Key Algorithm: RSA
        		Modulus (bits 2048):
        			9a:db:1a:27:23:6d:fc:1e:7d:e5:bc:dc:83:cb:ef:57
        			09:a8:2c:91:b7:9b:3d:2d:65:42:ac:6e:dc:3f:11:24
        			21:57:47:51:52:0f:bd:ee:5e:b8:57:c0:b5:45:b6:bd
        			18:0b:53:40:2f:8b:bd:a6:ab:0d:0d:50:28:d3:fe:72
        			21:ed:1e:18:a2:38:3d:2f:e4:a6:b9:db:86:06:da:85
        			af:d5:d5:55:6f:f7:55:e2:e4:78:a1:93:f3:dd:c6:84
        			66:fa:03:18:ea:e9:b4:9c:c9:13:5b:1a:bf:86:9f:3d
        			7a:92:59:1e:a7:91:de:74:ea:40:49:d0:f5:df:a3:e0
        			7b:38:2f:b2:66:1c:a2:97:b6:1b:bc:19:0a:04:d2:34
        			f1:d2:6d:af:62:ba:25:87:3e:8f:66:66:7f:b4:ab:e9
        			6e:5e:be:05:9c:36:f6:68:de:a1:bf:6c:5b:aa:2d:ce
        			b2:53:99:68:dd:23:4e:94:a2:1c:c4:9a:2f:9d:28:d8
        			a3:3c:d9:6b:5c:ff:99:62:c3:a2:5c:09:fd:df:5d:6b
        			5b:28:5f:cc:89:40:a7:1f:22:a6:71:05:8f:9b:6a:e1
        			a7:3b:cf:4b:42:b6:e3:9c:b5:ed:67:97:3c:66:1f:d6
        			f1:bc:08:cd:5e:60:38:39:d6:6e:f5:c1:fd:8e:d0:79
        		Exponent (bits 24):
        			01:00:01
        	Extensions:
        		Basic Constraints (critical):
        			Certificate Authority (CA): FALSE
        		Subject Key Identifier (not critical):
        			a60b5d20ca058fa85cf1e4fc07c7f025f7b395a8
        		Authority Key Identifier (not critical):
        			3b0d6e326f97672e4b1e8c5c62e6d8e575db7ff1
        	Signature Algorithm: RSA-SHA
        	Signature:
        		36:8e:4d:22:e3:ce:ff:0e:fa:61:0e:44:84:e5:b5:2b
        		2f:61:ce:25:b8:fe:ae:ea:70:4b:ab:e9:b7:9e:b9:59
        		8d:d6:df:0d:12:d0:33:35:80:f7:5b:a8:68:f4:71:72
        		37:2a:f0:6e:e9:f6:57:b2:4c:70:de:78:9c:db:5a:69
        		2a:fe:2a:ed:b4:5b:77:f2:a7:57:38:0e:c7:68:71:1d
        		a4:9a:94:49:88:9e:a5:82:30:60:54:d2:32:a9:a5:83
        		1d:f1:85:1b:e9:c1:79:ae:2b:44:f2:69:55:33:a1:71
        		2c:f8:03:cf:4f:b9:87:2c:f5:e5:a8:a1:d7:0e:80:c0
        Other Information:
        	MD5 fingerprint:
        		6ec97d67e8f5e51d8ed4f5d51fd6bdd1
        	SHA-1 fingerprint:
        		5e6ed6c5f18c150eadc871ec9a23aede9d299d08
        	Public Key Id:
        		a60b5d20ca058fa85cf1e4fc07c7f025f7b395a8

-- 
Sam Morris <sam at robots.org.uk>






More information about the Pkg-telepathy-maintainers mailing list