BUG: _presence_ of valid openssl.cnf Option = 'ServerPreference' causes Dovecot submission relay FAIL: "failed: Failed to initialize SSL: ..."

Aki Tuomi aki.tuomi at open-xchange.com
Wed Sep 23 12:14:06 EEST 2020


> On 22/09/2020 21:00 PGNet Dev <pgnet.dev at gmail.com> wrote:
> 
>  
> On 9/22/20 10:51 AM, Aki Tuomi wrote:
> >>>
> > 
> > Well, dovecot does not actually do any parsing for system-wide openssl.cnf. This sounds more like OpenSSL issue than dovecot issue.
> 
> I've NO issue with that config/setting with any _other_ app -- whether in general openssl-lib-linked usage, or specifically for a mail submitter (e.g., postfix).  The ServerPreference setting is seen/respected/utilized as intended.
> 
> It's ONLY Dovecot that's reproducibly firing the error, as reported above.
> 
> It's also NOT a generalized openssl problem "with" Dovecot -- all (well, so far ...) _other_ crypto-/openssl-related capabilities in Dovecot are behaving normally.

Hi!

I tried to reproduce this with the config you provided. I made sure openssl uses the configuration, but alas, it works just fine for me.

Aki


More information about the dovecot mailing list