Re: [exim/exim] [Bug]: GNUTLS certificate validation incompatible with certificates lacking a commonName attribute (Issue #3215)

adsbarratt via Exim-dev <[email protected]> Wed, 15 Apr 2026 06:30:36 +0100
Newsgroups gmane.mail.exim.devel
Message-ID <exim/exim/issues/3215/comment/[email protected]>
As was pointed out in a follow-up on exim-dev, one other difference is that the exim.org certificate has a Subject DN:

0 s:CN=cumin.exim.org

whereas my test setup does not:

0 s:                                                                                                    
  i:C = US, O = Let's Encrypt, CN = YR2                                                                 

I've replaced the certificate with a new RSA one to rule that out as a difference. It still fails from my test setup.

---
View it on Exim Forgejo ( https://code.exim.org/exim/exim/issues/3215#issuecomment-239525 ) or reply to this email directly.