Re: TLS Handshake failure

Scott Neugroschl <[email protected]> Wed, 19 Dec 2012 16:15:55 -0800
Newsgroups gmane.comp.encryption.cryptlib
Message-ID <[email protected]>
On 12/19/2012 1:06 PM, Mathias Spoerr wrote:
> Hello Peter,
>
> thank you very much for your answer. I get the following error:
> "Server name 'hostname.test.com' doesn't match host name '172.22.61.1' in
> server's certificate"
>
> When using the IP address instead of the DNS name it's working. How do I
> tell cryptlib to not care if the certificate is invalid?
>
>
The correct method is to put an subject altname into the cert, so it 
will recognize either the FQDN or the IP.
See RFC 4985

http://www.ietf.org/rfc/rfc4985.txt



_______________________________________________
Cryptlib mailing list
[email protected] via Mail: [email protected]
Archive: ftp://ftp.franken.de/pub/crypt/cryptlib/archives/
http://news.gmane.org/gmane.comp.encryption.cryptlib
Posts from non-subscribed addresses are blocked to prevent spam, please
subscribe in order to post messages.