[openssl.org #3212] smime verification failure

2014-01-06 Thread Kurt Roeckx via RT
Hi, I received an smime signed email but I had a problem verifying the signature. What I get was 3 certificates in the chain, but it didn't look for the certificate in my CApath. The orders of the certs as shown by pkcs7 -print_certs was: 2 3 1 Where 1 was the end user certificate, 2 is the is

RE: [openssl.org #3212] smime verification failure

2014-01-06 Thread Dave Thompson
From: owner-openssl-dev On Behalf Of Kurt Roeckx via RT Sent: Monday, January 06, 2014 04:22 I received an smime signed email but I had a problem verifying the signature. What I get was 3 certificates in the chain, but it didn't look for the certificate in my CApath. The orders of the

Re: [openssl.org #3212] smime verification failure

2014-01-06 Thread Dr. Stephen Henson
On Mon, Jan 06, 2014, Dave Thompson wrote: From: owner-openssl-dev On Behalf Of Kurt Roeckx via RT Sent: Monday, January 06, 2014 04:22 I received an smime signed email but I had a problem verifying the signature. What I get was 3 certificates in the chain, but it didn't look for the

Re: [openssl.org #3212] smime verification failure

2014-01-06 Thread Kurt Roeckx
On Mon, Jan 06, 2014 at 05:38:27PM -0500, Dave Thompson wrote: When only certificate 2 and 1 are send, I the verififcation is succesful because it's now trying to find the issuer of 2, being 3, and does find that in my CApath. Are you sure the '3' in your truststore is the same as the