qpid-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Hari Pyla (JIRA)" <j...@apache.org>
Subject [jira] [Created] (QPID-5769) SSL config of C++ client (qpidc.conf) is picked up by the C++ broker (qpidd.conf)
Date Fri, 16 May 2014 10:56:35 GMT
Hari Pyla created QPID-5769:
-------------------------------

             Summary: SSL config of C++ client (qpidc.conf) is picked up by the C++ broker
(qpidd.conf)
                 Key: QPID-5769
                 URL: https://issues.apache.org/jira/browse/QPID-5769
             Project: Qpid
          Issue Type: Bug
          Components: C++ Broker, C++ Client
    Affects Versions: 0.28
            Reporter: Hari Pyla


When the broker is started with the following configuration.
===qpidd.conf===
acl-file=/etc/qpid/qpidd.acl
auth=yes
realm=QPID
no-data-dir=yes
sasl-config=/etc/sasl2/
log-to-stderr=no
log-enable=debug+
log-to-syslog=yes
ssl-cert-db=/tmp/test/server_db/
ssl-cert-password-file=/tmp/test/server_db/qpid-broker-pfile
ssl-cert-name=localhost
ssl-port=5671
require-encryption=yes
transport=ssl
ssl-require-client-authentication=yes
ssl-sasl-no-dict=no 

===qpidc.conf===
ssl-cert-name=QpidCppClient
ssl-cert-db=/tmp/test/client_db
ssl-cert-password-file=/tmp/test/client_db/qpid-client-pfile

The broker is picking up the cert-db of the client and looking for the broker cert name of
'localhost' in the client's cert db. If the contents of qpidc.conf are commented out then
the broker starts fine.

=== error===
[Broker] critical Unexpected error: Failed to load certificate 'localhost' (/builddir/build/BUILD/qpid-0.28-rc2/cpp/src/qpid/sys/ssl/SslSocket.cpp:176)




--
This message was sent by Atlassian JIRA
(v6.2#6252)

---------------------------------------------------------------------
To unsubscribe, e-mail: dev-unsubscribe@qpid.apache.org
For additional commands, e-mail: dev-help@qpid.apache.org


Mime
View raw message