Re: pop3-ssl problem

2002-06-01 Thread Johannes Posel

Dear Peter,

Hey, cool, I too have strange problems with TB and SSL POP3.

Here's whats going on. Thebat tells me:

 01.06.2002, 17:38:28: FETCH - receiving mail messages
 01.06.2002, 17:38:28: FETCH - Initiating TLS handshake
 01.06.2002, 17:38:28: FETCH - connection finished - 0 messages received

But at this time, there were 13 messages in the box. If I disable
POP3-SSL support, then I can fetch them. This is what the server tells
me:

Jun  1 17:38:52 gci stunnel[15048]: localhost.pop3 connected from 217.88.116.239:3685
Jun  1 17:38:52 gci stunnel[15048]: SSL_accept: error:14094419:SSL 
routines:SSL3_READ_BYTES:tlsv1 alert access denied

Yes, I'm using Stunnel together with QMail-POP3d. What bugs me is that
on the same machine, it works with Outlook Express, and that this is a
real certificate (Thawte), not a self generated...

Any clues? Drop me a note if you want a POP box to try it out...

Cheers,
 Johannesmailto:[EMAIL PROTECTED]

-- 
Es gibt in diesem Netz Gute und Böse. Wer die Bösen sind,
entscheiden die Guten. (Michael Ottenbruch in de.admin.news.regeln)


__
Archives   : http://tbtech.thebat.dutaint.com
Moderators : mailto:[EMAIL PROTECTED]
Unsubscribe: mailto:[EMAIL PROTECTED]




Re: pop3-ssl problem

2002-06-01 Thread Peter Palmreuther

Hello Johannes,

On Saturday, June 1, 2002 at 5:42:08 PM you wrote (at least in part):

JP Drop me a note if you want a POP box to try it out...

Drop :-) The same as I already know and used for discovering the
RELAY-issue?
-- 
Regards
Peter Palmreuthermailto:[EMAIL PROTECTED]
(The Bat! v1.60n on Windows 2000 5.0 Build 2195 Service Pack 1)

Lies and betrayals, fruit covered nails. . .


__
Archives   : http://tbtech.thebat.dutaint.com
Moderators : mailto:[EMAIL PROTECTED]
Unsubscribe: mailto:[EMAIL PROTECTED]




Re: pop3-ssl problem

2002-06-01 Thread Johannes Posel

Dear Peter,

Going back 22:09 01.06.2002...

 Drop :-) The same as I already know and used for discovering the
 RELAY-issue?

No *eg* ;)

Cheers,
 Johannesmailto:[EMAIL PROTECTED]

-- 
I have made mistakes but I have never made the mistake of claiming
that I have never made one.

Winamp now playing: -=[Madonna - All by myself]=- 


__
Archives   : http://tbtech.thebat.dutaint.com
Moderators : mailto:[EMAIL PROTECTED]
Unsubscribe: mailto:[EMAIL PROTECTED]




Re: pop3-ssl problem

2002-05-31 Thread Peter Palmreuther

Sorry ... forgot to add TBTECH to To: and therefore have to post it
separately ..

Hello Yalcin,

On Thursday, May 30, 2002 at 5:36:28 PM you wrote in
mid:[EMAIL PROTECTED] (at least in part):

 
YC This is the story: :-)
YC I installed a mail server based http://shupp.org/toaster/

*A* ... AFAIK and see Bill's offering the latest devel branch, so APOP
shouldn't be a problem in general :-)
But I don't know if he really tested the latest patches he wrote against
The Bat!, formerly there were some problems using The Bat!, at least for
SMTP-AUTH based on CRAM-MD5 ... I'll have to have a closer look for this
and maybe drop a note to Bill.

YC I installed the all the necessary software (also stunnel and openssl)
YC I only want that, usernames and password dont captured during the
YC reading mail.

So using SSL connections will suffer and if APOP fails it's not the most
worse scenario .. OK.

YC Here is the problem:
YC Most of my users use Netscape mail client and they have no problem with
YC POP3 with SSL. But I like TB :-) and want the same security with the
YC others :-)

OK, their POP3-over-SSL works, so stunnel as the culprit is no debate (I
think).

[stunnel error message snipped]
YC I have not got a real certificate, is it problem for TB

That might be, but that's no reason for stunnel to fail. You should see an
error message about untrusted certificated in The Bat!'s log file.

But for 'debugging' stunnel we're running straight OT on this list so I'd
suggest you subscribe TBTECH

YC TBTech List: mailto:[EMAIL PROTECTED]

if not already done and we continue to discuss there (unless a moderator
drops me a note I should continue on TBOT ?!?).

I'll cross-post this message there so you can reply to this message if
you're subscribed and I'll try to instruct for further steps ...

First will be sending the output of

cat /var/qmail/supervise/qmail-pop3d/run

Read you on TBTECH ...

Pit
-- 
Regards
Peter Palmreuthermailto:[EMAIL PROTECTED]
(The Bat! v1.60j on Windows 2000 5.0 Build 2195 Service Pack 2)

Climate is what we expect, weather is what we get.


__
Archives   : http://tbtech.thebat.dutaint.com
Moderators : mailto:[EMAIL PROTECTED]
Unsubscribe: mailto:[EMAIL PROTECTED]