On Mon, Aug 20, 2012 at 3:34 PM, pscheep...@epo.org wrote:
Hi George,
Back at work, trying to solve the initialconfig problem.
I started with a restart this morning with all the files in the
/var/sipxdata/tmp/ in place (restored them friday).
Then added a server through the GUI
This
not starting anymore.
Sent by:
sipx-users-boun...@list.sipfoundry.org
On Mon, Aug 20, 2012 at 3:34 PM, pscheep...@epo.org wrote:
Hi George,
Back at work, trying to solve the initialconfig problem.
I started with a restart this morning with all the files in the
/var/sipxdata/tmp
On Fri, Aug 17, 2012 at 3:20 AM, pscheep...@epo.org wrote:
Hi George, still not ok...
I deleted the contents of the first 2 directories on the secondaries.
The /var/sipxdata/certdb only exists on the master.
First I only deleted the certs of the secondaries there, no success, still
error
Hi George, here it is.
Seems OK but I don't know whether it needs/puts the (new or old) keys from
the primary in the tar as well.
In the /var/sipxdata/certdb are still the old primary keys that expired
(gssipx02.internal.epo.org.crt).
In the /etc/sipxpbx/ssl directory is the new ssl.crt that
On Fri, Aug 17, 2012 at 11:06 AM, pscheep...@epo.org wrote:
Hi George, here it is.
Seems OK but I don't know whether it needs/puts the (new or old) keys from
the primary in the tar as well.
In the /var/sipxdata/certdb are still the old primary keys that expired
...@list.sipfoundry.org wrote on 17-08-2012 10:29:19:
From:
George Niculae geo...@ezuce.com
To:
Discussion list for users of sipXecs software
sipx-users@list.sipfoundry.org
Date:
17-08-2012 10:29
Subject:
Re: [sipx-users] SipX not starting anymore.
Sent by:
sipx-users-boun
on 17-08-2012 10:29:19:
From:
George Niculae geo...@ezuce.com
To:
Discussion list for users of sipXecs software
sipx-users@list.sipfoundry.org
Date:
17-08-2012 10:29
Subject:
Re: [sipx-users] SipX not starting anymore.
Sent by:
sipx-users-boun...@list.sipfoundry.org
On Fri, Aug
On Fri, Aug 17, 2012 at 2:49 PM, pscheep...@epo.org wrote:
Hi George,
Here is the log file, at 2012-08-17T11:24:03.13 the initial-config
starts, the next message is
RequestExceptionReporter:Unable to process client request: Script finished
with exit code: 1
So indeed not good.
With
Hi george, I deleted everything in /var/sipxdata/tmp
Then the initialconfig is not run anymore, so that is not good.
Put everything back except tar.gz's, then it still does not work.
These were the tar's:
sipx-configuration.tar.gz
sipx-snapshot-gmsipx02.internal.epo.org.tar.gz
I got back from holiday and discovered my primary server was not OK.
It showed the following:
/usr/lib/ruby/1.8/net/http.rb:586:in `connect': certificate verify failed
(OpenSSL::SSL::SSLError)
(the rest is gone because of user error :( )
I tried a sipxproc -R, this did not work.
Then I
On Thu, Aug 16, 2012 at 11:55 AM, pscheep...@epo.org wrote:
I got back from holiday and discovered my primary server was not OK.
It showed the following:
/usr/lib/ruby/1.8/net/http.rb:586:in `connect': certificate verify failed
(OpenSSL::SSL::SSLError)
(the rest is gone because of user
I use the standard certs, I thought they would not expire tht soon.
I am running 4.4.0-287.gb0a66 btw.
Can you give me a quick hint how to check?
Paul
Douglas Hubler dhub...@ezuce.com wrote on 16-08-2012 18:00:37:
On Thu, Aug 16, 2012 at 11:55 AM, pscheep...@epo.org wrote:
I got back
On Thu, Aug 16, 2012 at 12:06 PM, pscheep...@epo.org wrote:
I use the standard certs, I thought they would not expire tht soon.
I am running 4.4.0-287.gb0a66 btw.
Can you give me a quick hint how to check?
files in /etc/sipxpbx/ssl are text based and would show expire date
Thanks,
Expired indeed:
Validity
Not Before: Jun 29 08:31:15 2009 GMT
Not After : Jun 28 08:31:15 2012 GMT
So I need to generate new keys, should I just follow this:
http://wiki.sipfoundry.org/display/sipXecs/SSL+Keys+and+Keystores
Paul
Douglas Hubler
just regenerate them...
http://wiki.sipfoundry.org/display/sipXecs/SSL+Certificates
On Thu, Aug 16, 2012 at 12:06 PM, pscheep...@epo.org wrote:
I use the standard certs, I thought they would not expire tht soon.
I am running 4.4.0-287.gb0a66 btw.
Can you give me a quick hint how to check?
Done that, that solves everything for the Primary server.
I think I can do the same on my 2 secondaries or should I use this:
libexec/sipXecs/initial-config secondaryServerHostName ,
mentioned in
http://wiki.sipfoundry.org/display/sipXecs/SSL+Keys+and+Keystores
Paul
Michael Picher
ayuh
On Thu, Aug 16, 2012 at 12:37 PM, pscheep...@epo.org wrote:
Done that, that solves everything for the Primary server.
I think I can do the same on my 2 secondaries or should I use this:
libexec/sipXecs/initial-config
secondaryServerHostName ,
mentioned in *
I am a bit stuck now.
I generated keys with /usr/bin/ssl-cert/gen-ssl-keys.sh for secondary on
primary.
Copied them over and installed them with /usr/bin/ssl-cert/install-cert.sh
Then tried to push profiles, doesn't work.
and tried restart services, doesn't work.
How should I install new keys on
Any help is greatly appreciated, I have now a working primary and 2
secondaries that don't talk to the primary.
How and where do I generate keys for the secondaries (on primary?)
How and where do I install these keys (on secondary?)
Paul
pscheep...@epo.org wrote on 16-08-2012 20:17:46:
I am a
On Thu, Aug 16, 2012 at 10:05 PM, pscheep...@epo.org wrote:
Any help is greatly appreciated, I have now a working primary and 2
secondaries that don't talk to the primary.
How and where do I generate keys for the secondaries (on primary?)
How and where do I install these keys (on secondary?)
Hi George,
Sorry for the late response but I first went home to have a look at my 16
year old son who has over 40deg celsius fever probably because of food
poisoning from a French road restaurant.
Thanks for the tip, but it doesnt work completely, I cant send profiles,
the jobs fail:
File
On Fri, Aug 17, 2012 at 12:28 AM, pscheep...@epo.org wrote:
Hi George,
Sorry for the late response but I first went home to have a look at my 16
year old son who has over 40deg celsius fever probably because of food
poisoning from a French road restaurant.
Sorry to hear this, hope he gets
On Fri, Aug 17, 2012 at 1:05 AM, pscheep...@epo.org wrote:
Hi George,
Here the sipxconfig log.
I browsed through it and saw that PKIX validation failed and signature
check failed
so there are probably still issues with old certificates.
If you dont see a fix then I will do a complete
23 matches
Mail list logo