Maintained by: NLnet Labs

[Unbound-users] SSL handshake fails

zongo saiba
Sat Sep 21 16:14:13 CEST 2013


On 21/09/2013 14:41, zongo saiba wrote:
> Greetings Guys,
> 
> First thank you for 'unbound' - I can never be thankful enough for such
> a beautiful piece of software.
> 
> unbound 1.4.20 - no issue whatsoever - perfect
> 
> Updated to 1.4.21 - Now getting error below
> 
> "error: SSL handshake failed
> 140735179567580:error:14090086:SSL
> routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify
> failed:s3_clnt.c:1168:"
> 
> Platform - OSX 10.8.4 Server
> Recompiled with 'libevent'
> Rebuild certificates afterwards and then got error above.
> 
> I am using openssl 1.0.1e not the original openssl from OSX - Could that
> be an issue ?
> 
> Any help is much appreciated of course and have a beautiful weekend.
> 
> zongo saiba
> 
Got it - for those running on OSX just move the certifcates of the
server 'unbound' to /etc/certificates under OS X; and you are back to
running smoothly.

I still get the error below even though i have re-compiled unbound with
libevent

21/09/2013 16:07:20.657 unbound[128]: [128:0] warning: too many file
descriptors requested. The builtinmini-event cannot handle more than
1024. Config for less fds or compile with libevent.