Hello Alan and Tony Finch,
many thanks for your ideas about this.
Alan, you are right, Openssl is the problem. So I've rebuilt my exim with
GnuTLS, and now it's working fine!!!
Although, I won't confirm that my Openssl configuration was OK. So if
someone of you all is using exim as client with TLS and server certificate
verification and Openssl and it's working, please let me know!
So long
Leo
-----Ursprüngliche Nachricht-----
Von: exim-users-bounces@??? [
mailto:exim-users-bounces@exim.org] Im
Auftrag von Alan J. Flavell
Gesendet: Samstag, 20. August 2005 17:53
An: Exim users list
Betreff: Re: [exim] Problem with Exchange server and Exim as client SSL/TLS
On Sat, 20 Aug 2005, Leonhard Voos wrote:
[...]
> For example when I have the exported server certificate in abc.pem and
> the exported root certificate in def.pem I can do in the shell:
>
> "openssl verify abc.pem" and get the error above.
>
> When I type "openssl verify -CAfile def.pem abc.pem" I get "OK".
>
> So again, where does exim know, which is the right CAfile for the
> verify process?
It looks to me as if your problem is not with exim nor with Exchange, but
with Openssl.
As such, my hunch is that the Openssl solution which is given for PINE in
this web page
http://www.madboa.com/geek/pine-ssl/ would be equally
effective for your problem. The key steps are summarised at
http://www.madboa.com/geek/pine-ssl/#summary , with links to more detail.
Hope this helps a bit.
--
## List details at
http://www.exim.org/mailman/listinfo/exim-users
## Exim details at
http://www.exim.org/
## Please use the Wiki with this list -
http://www.exim.org/eximwiki/