[Dovecot] SSL errors for just one client after updaing both dovecot and openssl

Reindl Harald h.reindl at thelounge.net
Sat Feb 23 18:32:45 EET 2013


Am 23.02.2013 17:03, schrieb Charles Marcus:
> OpenSSL was 1.0.0j, now updated to 1.0.1c
> Dovecot was 2.1.13, now updated to 2.1.15

on which distribtuion can you update openssl with a ABI-bump
without re-compile half of the system? 1.0.0x is not binary
compatible with 1.0.1x and that is as example why Fedora
17 stays at 1.0.0x and Fedora 18 has 1.01x

> I'm getting a bunch of lines like the following:
> 
> Feb 23 10:48:01 myhost dovecot: imap-login: Disconnected (no auth attempts in 29 secs): user=<>, rip=#.#.#.#,
> lport=993, TLS handshaking: SSL_accept() syscall failed: Connection reset by peer, session=<In+cO2bWngCthJz2>
> 
> where only the session id (and number of seconds for no auth attempts) is different...

how looks your "ssl_cipher_list"?
ssl_cipher_list = ALL:!LOW:!MEDIUM:!SSLv2:!MD5:!aNULL:!eNUL:!ADH:!AESGCM:!EXP:HIGH

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 263 bytes
Desc: OpenPGP digital signature
URL: <http://dovecot.org/pipermail/dovecot/attachments/20130223/95f24fa2/attachment-0003.bin>


More information about the dovecot mailing list