On Jan 12, 2007, at 3:01 PM, DEVAL SHAH wrote:
[debug] ssl_engine_kernel.c(1762): OpenSSL: Read: SSLv3 read client certificate A [debug] ssl_engine_kernel.c(1781): OpenSSL: Exit: failed in SSLv3 read client certificate ASSL library error 1 in handshake (server abc.com:443)SSL Library Error: 336151570 error:14094412:SSL routines:SSL3_READ_BYTES:sslv3 alert bad certificate Subject CN in certificate not server name or identical to CA!? Connection closed to child 1 with abortive shutdown (server abc.com: 443)
I take it you are using client-side certificate authentication? What type of proxy is the client using when they see the problem?
Thanks, S. -- sctemme@xxxxxxxxxx http://www.temme.net/sander/ PGP FP: 51B4 8727 466A 0BC3 69F4 B7B8 B2BE BC40 1529 24AF
Attachment:
smime.p7s
Description: S/MIME cryptographic signature