>On 4/30/2010 1:50 PM, Josh Patten wrote: >> Today on my test 4.2 environment I received an alarm email that the >> CallResolver-Agent stopped unexpectedly on the secondary HA >server and >> could not start. Here was the error: >> >> 2010.04.30 13:43:04 LOG7[5134:3086362320]: RAND_status claims >> sufficient entropy for the PRNG 2010.04.30 13:43:04 >> LOG7[5134:3086362320]: PRNG seeded successfully 2010.04.30 13:43:04 >> LOG7[5134:3086362320]: Certificate: /etc/sipxpbx/ssl/ssl.crt >> 2010.04.30 13:43:04 LOG7[5134:3086362320]: Certificate loaded >> 2010.04.30 13:43:04 LOG7[5134:3086362320]: Key file: >> /etc/sipxpbx/ssl/ssl.key 2010.04.30 13:43:04 LOG7[5134:3086362320]: >> Private key loaded 2010.04.30 13:43:04 LOG7[5134:3086362320]: Verify >> directory set to /etc/sipxpbx/ssl/authorities 2010.04.30 13:43:04 >> LOG7[5134:3086362320]: Added /etc/sipxpbx/ssl/authorities revocation >> lookup directory 2010.04.30 13:43:04 LOG7[5134:3086362320]: SSL >> context initialized for service postgresql 2010.04.30 13:43:04 >> LOG3[5134:3086362320]: FIPS_mode_set: 2D06C06E: error:2D06C06E:FIPS >> routines:FIPS_mode_set:fingerprint does not match >> >> Any recommendation on how I should tackle this problem? It >looks like >> I have a certificate issue but I'm not sure. >>
Josh, can you tell me what version of stunnel you're using (rpm -qa | grep stunnel) and also show me your stunnel configuration file (usually its /etc/sipxpbx/sipxcallresolver-agent-config). I've never seen this issue before nor can I find any information on it. The current version of stunnel that we're using is 4.26-1. Thanks Raymond _______________________________________________ sipx-users mailing list sipx-users@list.sipfoundry.org List Archive: http://list.sipfoundry.org/archive/sipx-users Unsubscribe: http://list.sipfoundry.org/mailman/listinfo/sipx-users sipXecs IP PBX -- http://www.sipfoundry.org/