SSLeay and Chained Certs (InstantSSL/Comodo)
am 07.12.2006 02:29:14 von jseymourI've recently installed a thing called "usermin"
(http://www.webmin.com/index6.html). It is written in Perl and uses
Net::SSLeay. My server certs are provided by InstantSSL/Comodo. Now
the thing about these certs is they're not signed by a root CA, but
instead there's an intermediate cert which is, in turn, signed by a
root CA. These chained certs work with Apache, Postfix' SSL support,
and ipop3d, but not with usermin.
I'm guessing the problem is in SSLeay. The question is: Is there
some trick to using chained certs with SSLeay? I'd be willing to put
the work in, and submit a patch to usermin's maintainer(s), if
somebody could point me in the right direction.
The only thing I've found so far (other than others asking the same
question and apparently not getting an answer) is this:
http://lists.alioth.debian.org/pipermail/net-ssleay-devel/20 06-April/000061.html
Can anybody help?
TIA,
Jim
--
Jim Seymour | "There is no expedient to which a man will not
jseymour@LinxNet.com | go to avoid the labor of thinking."
http://jimsun.LinxNet.com | - Thomas A. Edison