Mickael Besse wrote: > I use ethereal and this what is exchange between apache and FDS: > > SSLv2 Client Hello (apache to FDS) > > TLS Server Hello, Certificate, Certificate Request, Server Hello > Done (FDS to apache) > > TLS Certificate, Client Key Exchange, Change Cipher Spec, Encrypted > Handshake Message (apache to FDS) > > TLS Change Cipher Spec, Encrypted Handshake Message (FDS to apache) > > > TLS Encrypted Alert alert (21) (apache to FDS) > > > > does someone have an idea ?? > > I have two: 1. Apache doesn't trust or know about the CA that issued the certificate in FDS. 2. The hostname you are using in your Apache config to connect to the FDS server doesn't match the CN in the certificate subject. rob -------------- next part -------------- A non-text attachment was scrubbed... Name: smime.p7s Type: application/x-pkcs7-signature Size: 3178 bytes Desc: S/MIME Cryptographic Signature Url : http://lists.fedoraproject.org/pipermail/389-users/attachments/20060622/7e7622ad/attachment.bin