Maintained by: NLnet Labs

[Unbound-users] SSL handshake fails solved

zongo saiba
Sat Sep 21 20:59:06 CEST 2013


On 21/09/2013 16:14, zongo saiba wrote:
> On 21/09/2013 14:41, zongo saiba wrote:
>> Greetings Guys,
>>
>> First thank you for 'unbound' - I can never be thankful enough for such
>> a beautiful piece of software.
>>
>> unbound 1.4.20 - no issue whatsoever - perfect
>>
>> Updated to 1.4.21 - Now getting error below
>>
>> "error: SSL handshake failed
>> 140735179567580:error:14090086:SSL
>> routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify
>> failed:s3_clnt.c:1168:"
>>
>> Platform - OSX 10.8.4 Server
>> Recompiled with 'libevent'
>> Rebuild certificates afterwards and then got error above.
>>
>> I am using openssl 1.0.1e not the original openssl from OSX - Could that
>> be an issue ?
>>
>> Any help is much appreciated of course and have a beautiful weekend.
>>
>> zongo saiba
>>
> Got it - for those running on OSX just move the certifcates of the
> server 'unbound' to /etc/certificates under OS X; and you are back to
> running smoothly.
> 
> I still get the error below even though i have re-compiled unbound with
> libevent
> 
> 21/09/2013 16:07:20.657 unbound[128]: [128:0] warning: too many file
> descriptors requested. The builtinmini-event cannot handle more than
> 1024. Config for less fds or compile with libevent.
> 
All is well - Everything is back to running smoothly again with 1.4.21 :)

Thanks to all and great weekend.

zongo saiba