Ooops, I just found out that this previous statement is false. There is
hard coded check for client certificate in EPP module. Hash of this
client certificate is compared with corresponding record in registraracl
table. So as a result - SSL communication is required and cannot be
easily bypassed.
Jaromir
On Thu, 2009-03-05 at 22:31 +0100, Jaromír Talíř wrote:
I'm quite sure that it's possible to disable
ssl check but I never tried
it. You would have to tweak SSLCipherSuite option in apache
configuration file to allow this possibility and then, maybe, modify
code of fred-client in the place where ssl socket is opened. More
indepth knowledge of ssl communication is required.
Regards
Jaromir
On Thu, 2009-03-05 at 11:46 +0000, Petur Kirke wrote:
Suddenly i get this error, when i connect to
fred-client:
-----------------------------------------------------------------------------
Using configuration from /etc/fred/fred-client.conf
Connecting to localhost, port 700 ...
ERROR: socket.sslerror: (1, 'error:140770FC:SSL
routines:SSL23_GET_SERVER_HELLO:unknown protocol') (localhost:700)
Certificate not signed by verified certificate authority.
-----------------------------------------------------------------------------
I guess its because my certificate is out of date ?
Is it possible to disable SSL in fred-client ? (since no customers/registrars are using
it directly)
If it is possible, how can i do it ?
regards
Petur
This email and its attachments may be confidential and are intended solely for the use of
the individual to whom it is addressed.
If you are not the intended recipient or authorized to receive information for the
intended recipient you are notified that disclosing, copying, distributing or taking any
action in reliance on the contents of this information is strictly prohibited. If the
email contains proposals, they are valid for 30 days following the date of email
transmission. Finally, the recipient should check this email and any attachment for the
presence of viruses. The company accepts no liability for any damage caused by any virus
transmitted by email.
_______________________________________________
Fred-users mailing list
Fred-users(a)lists.nic.cz
https://lists.nic.cz/mailman/listinfo/fred-users
_______________________________________________
Fred-users mailing list
Fred-users(a)lists.nic.cz
https://lists.nic.cz/mailman/listinfo/fred-users