Skip to content
This repository has been archived by the owner on Jan 26, 2024. It is now read-only.

Mirakel doesn't accept root certificate chains for taskd sync #588

Open
itadventurer opened this issue Nov 4, 2014 · 3 comments
Open

Mirakel doesn't accept root certificate chains for taskd sync #588

itadventurer opened this issue Nov 4, 2014 · 3 comments

Comments

@itadventurer
Copy link
Member

Original Reporter: jenserat
Environment: Not Specified
Version: 2.7.*
Migrated From: https://mirakel.atlassian.net/browse/MIR-551

I try to sync Mirakel against a taskd 1.1 setup. I'm not using self-signed certificates, but Class 3 certificates issued by the community certification authority CAcert. They use an immediate certificate in-between:

Root (CAcert Class 1) -> Intermediate (CAcert Class 3) -> taskd certificate, user certificates

When trying to import the configuration file created following the user guide, I receive following error message: "Die Konfigurationsdatei ist fehlerhaft" (translated back to English something like "The configuration file is broken"), it seems that Mirakel doesn't accept certificate chains.

@itadventurer
Copy link
Member Author

weiznich said:
Fix is in gerrit: https://gerrit.azapps.de/r/1791

@itadventurer
Copy link
Member Author

jenserat said:
Config which does not work, without sensitive information.

@itadventurer
Copy link
Member Author

jenserat said:
Although I updated to 2.8, the problem still persists. Now taskd shows a message "Synchronisation abgeschlossen", "Schreibar hast Du eine fehlerhafte Konfigurationsdatei verwendet" (Schreibar should probably be Scheinbar?).

Debug logging in taskd does not show any connection attempt from Mirakel.

I attached an example configuration with the sensitive stuff removed.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Projects
None yet
Development

No branches or pull requests

1 participant