[Eisfair] E1: sdomain und SSL-Mail

Thomas Ostermaier thomas.ostermaier at orth-ostermaier.de
Do Dez 5 16:01:40 CET 2013


Am 01.12.2013 17:05, schrieb Thomas Ostermaier:
> Am 01.12.2013 15:39, schrieb Marcus Roeckrath:

>>
>>> Ist dies jetzt verschluesselt?
>>
>> IMHO ja.
>>
>> Exim sendet, wenn die Gegenstelle es anbietet, immer verschlüsselt.
>>

> Hallo Marcus,
> danke für den Tip.
> Ich werde nun mal versuchen, alle Konten umzustellen.
> Gruß Thomas
>
>
Hallo,
jetzt komme ich nicht weiter.
Folgene Meldung im Main-log:
2013-12-05 15:55:54 1VoaLH-0001Mf-7K SSL verify error: depth=0 
error=unable to get certificate CRL 
cert=/C=DE/ST=Rhineland-Palatinate/L=Montabaur/O=1 und 1 Internet 
AG/CN=smtp.1und1.de                   ▒
│2013-12-05 15:55:54 1VoaLH-0001Mf-7K TLS error on connection to 
smtp.1und1.de [212.227.15.183] (SSL_connect): error:14090086:SSL 
routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed            ▒
│2013-12-05 15:55:54 1VoaLH-0001Mf-7K TLS session failure: delivering 
unencrypted to smtp.1und1.de [212.227.15.183] (not in hosts_require_tls) 
                                                              ▒
│2013-12-05 15:55:55 1VoaLH-0001Mf-7K => thomas.ostermaier at t-online.de 
R=smart_route T=remote_587 H=smtp.1und1.de [212.227.15.183]


obwohl bei Abfrage der Chain:

* 
 
                                                             │
│| certificate: smtp.1und1.de.pem (005055bb) 
 
                                                              │
│| subject    : /C=DE/ST=Rhineland-Palatinate/L=Montabaur/O=1 und 1 
Internet AG/CN=smtp.1und1.de 
                                                                 │
│| issuer     : /C=US/O=Thawte, Inc./CN=Thawte SSL CA 
 
                                                              │
│| 
 
                                                              │
│+->| certificate: 2.pop.1und1.de.pem (978601d0) 
 
                                                              │
│   | subject    : /C=US/O=Thawte, Inc./CN=Thawte SSL CA 
 
                                                              │
│   | issuer     : /C=US/O=thawte, Inc./OU=Certification Services 
Division/OU=(c) 2006 thawte, Inc. - For authorized use only/CN=thawte 
Primary Root CA                                                     │
│   | 
 
                                                              │
│   +->| certificate: 3.pop.1und1.de.pem (2e4eed3c) 
 
                                                              │
│      | subject    : /C=US/O=thawte, Inc./OU=Certification Services 
Division/OU=(c) 2006 thawte, Inc. - For authorized use only/CN=thawte 
Primary Root CA                                                  │
│      | issuer     : /C=ZA/ST=Western Cape/L=Cape Town/O=Thawte 
Consulting cc/OU=Certification Services Division/CN=Thawte Premium 
Server CA/emailAddress=premium-server at thawte.com                        │
│      | 
 
                                                              │
│      +->| certificate: Thawte Premium Server CA.pem (98ec67f0) 
 
                                                              │
│         | subject    : /C=ZA/ST=Western Cape/L=Cape Town/O=Thawte 
Consulting cc/OU=Certification Services Division/CN=Thawte Premium 
Server CA/emailAddress=premium-server at thawte.com                     │
│         | issuer     : /C=ZA/ST=Western Cape/L=Cape Town/O=Thawte 
Consulting cc/OU=Certification Services Division/CN=Thawte Premium 
Server CA/emailAddress=premium-server at thawte.com                     │
│         | 
 
                                                              │
│         +-> end of chain! 
 
                                                              │
│


Was mache ich falsch?
Bin für Tips dankbar
Gruß Thomas




Mehr Informationen über die Mailingliste Eisfair