stunnel verify level for both self-signed and third partycertificates

This is a discussion on stunnel verify level for both self-signed and third partycertificates within the Linux Security forums, part of the System Security and Security Related category; Hi all, I am using stunnel to send messages from my client application to a server. Local testing requires that ...


Go Back   Usenet Forums > System Security and Security Related > Linux Security

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1 (permalink)  
Old 02-04-2008
cudrnak@cig.mot.com
 
Posts: n/a
Default stunnel verify level for both self-signed and third partycertificates

Hi all,
I am using stunnel to send messages from my client application to a
server. Local testing requires that I use a self-signed certificate,
while the deployed product will use a thrid-party certificate
authority. I have 2 related questions on how to set this up. To make
the generation of the stunnel config file simple, I would like to use
one verify level for both testing and deployment. I think that level 2
is what I need. I used openssl to create a self-signed certificate for
the client, and another for the server. When I have verfiy=2 for
stunnel, verification fails. What do I need for stunnel to
successfully verify the server?

Thanks,

Scott
Reply With Quote
  #2 (permalink)  
Old 02-05-2008
C.
 
Posts: n/a
Default Re: stunnel verify level for both self-signed and third partycertificates

On 4 Feb, 18:57, cudr...@cig.mot.com wrote:
> Hi all,
> I am using stunnel to send messages from my client application to a
> server. Local testing requires that I use a self-signed certificate,
> while the deployed product will use a thrid-party certificate
> authority. I have 2 related questions on how to set this up. To make
> the generation of the stunnel config file simple, I would like to use
> one verify level for both testing and deployment. I think that level 2
> is what I need. I used openssl to create a self-signed certificate for
> the client, and another for the server. When I have verfiy=2 for
> stunnel, verification fails. What do I need for stunnel to
> successfully verify the server?
>
> Thanks,
>
> Scott


The public certificate of the signing authority needs to be available
to stunnel in the directory referenced by CApath in the serverside
config file.

C.
Reply With Quote
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT +1. The time now is 09:27 AM.


Powered by vBulletin® Version 3.6.8
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0