>> Are you using a self-signed certificate? I'm seeing the same thing.
>
> No, ours come from a CA.
Hm. Well, I can duplicate this issue pretty easily with OpenSSL 0.9.8e (CentOS
5.10), but not with OpenSSL 1.0.1e-fips (CentOS 6.5)
# mkdir -p /tmp/sslkeys
# openssl req -new -x509 -nodes -out
On Thu, 10 Apr 2014 20:34:11 GMT, Jesse Defer wrote:
> When upgrading from 2.4.7 to 2.4.9 we found that the server complained about
> missing DH PARAMETERS
> in our certificate and would not start. Adding dhparams to it fixed it.
> After some troubleshooting
> we found that only systems that di