Summary: | sylpheed-claws 2.0.0 and IMAP via SSL does not work | ||
---|---|---|---|
Product: | Gentoo Linux | Reporter: | Michal <kapalka> |
Component: | Current packages | Assignee: | Marius Mauch (RETIRED) <genone> |
Status: | RESOLVED UPSTREAM | ||
Severity: | normal | CC: | colin, net-mail+disabled |
Priority: | High | ||
Version: | 2005.1 | ||
Hardware: | x86 | ||
OS: | Linux | ||
Whiteboard: | |||
Package list: | Runtime testing required: | --- | |
Attachments: | sylpheed-claws --debug output |
Description
Michal
2006-02-05 05:22:49 UTC
Which exact version of sylpheed-claws are you using? What does `openssl s_client -connect servername:port` look like? Has libetpan been emerged with USE="ssl" too ? it has to. (In reply to comment #1) > Which exact version of sylpheed-claws are you using? > What does `openssl s_client -connect servername:port` look like? I tried sylpheed-claws 2.0.0_rc1 and 2.0.0_rc4 -- neither of them works with IMAP and SSL (1.0.5-r1 works, however). openssl output (unnecessary details removed): CONNECTED(00000003) depth=0 /C=CH/ST=Vaud/L=Lausanne/O=EPFL/CN=mailbox.epfl.ch/emailAddress=Nicolas.Repond@epfl.ch verify error:num=20:unable to get local issuer certificate verify return:1 depth=0 /C=CH/ST=Vaud/L=Lausanne/O=EPFL/CN=mailbox.epfl.ch/emailAddress=Nicolas.Repond@epfl.ch verify error:num=27:certificate not trusted verify return:1 depth=0 /C=CH/ST=Vaud/L=Lausanne/O=EPFL/CN=mailbox.epfl.ch/emailAddress=Nicolas.Repond@epfl.ch verify error:num=21:unable to verify the first certificate verify return:1 --- Certificate chain 0 s:/C=CH/ST=Vaud/L=Lausanne/O=EPFL/CN=mailbox.epfl.ch/emailAddress=Nicolas.Repond@epfl.ch i:/C=CH/ST=Vaud/L=Lausanne/O=EPFL/CN=EPFL Certification Authority/emailAddress=cert-auth@epfl.ch --- Server certificate -----BEGIN CERTIFICATE----- (...) -----END CERTIFICATE----- subject=/C=CH/ST=Vaud/L=Lausanne/O=EPFL/CN=mailbox.epfl.ch/emailAddress=Nicolas.Repond@epfl.ch issuer=/C=CH/ST=Vaud/L=Lausanne/O=EPFL/CN=EPFL Certification Authority/emailAddress=cert-auth@epfl.ch --- No client certificate CA names sent --- SSL handshake has read 800 bytes and written 346 bytes --- New, TLSv1/SSLv3, Cipher is RC4-MD5 Server public key is 1024 bit SSL-Session: Protocol : SSLv3 Cipher : RC4-MD5 Session-ID: (...) Session-ID-ctx: Master-Key: (...) Key-Arg : None Start Time: 1139242567 Timeout : 300 (sec) Verify return code: 21 (unable to verify the first certificate) --- * OK Messaging Multiplexor (iPlanet Messaging Server 5.2 HotFix 1.25 (built Mar 3 2004)) (In reply to comment #2) > Has libetpan been emerged with USE="ssl" too ? it has to. Yes, and I tried many versions of libetpan that are in portage now, each with ssl USE flag and neither worked. Thus, it's probably not the problem with the library but with sylpheed-claw itself. Hm, sylpheed-claws-1.0.x certainly wasn't using libetpan, as you claim in your original post. It still had its own IMAP implementation at that time. Anyway, try remerging openssl (with --oneshot as to not clutter your world file) - I remember this helped me back when I had this exact problem with s-c 1.9.100 (I think). However, the bug which was causing this was found and fixed between libetpan and s-c. (In reply to comment #5) > Hm, sylpheed-claws-1.0.x certainly wasn't using libetpan, as you claim in your > original post. It still had its own IMAP implementation at that time. I didn't know about that. Sorry for the confusion. > Anyway, try remerging openssl (with --oneshot as to not clutter your world > file) - I remember this helped me back when I had this exact problem with s-c > 1.9.100 (I think). However, the bug which was causing this was found and fixed > between libetpan and s-c. Did not help. I remerged openssl and tried with libetpan 0.41 and 0.42. I also tried to disable unnecessary flags (sasl and gnutls) which were set before, but it also did not help. Which may be a sign to go back to Thunderbird which works well (besides crashing from time to time -- but it has nothing to do with IMAP over SSL, I guess). Could you send the output of sylpheed-claws --debug ? Created attachment 79160 [details]
sylpheed-claws --debug output
(In reply to comment #8) > Created an attachment (id=79160) [edit] > sylpheed-claws --debug output Attached. Note that I have to remove the ".sylpheed-claws" directory before running sylpheed-claws as otherwise the program is unusable (it doesn't show any IMAP folders) and I have to reconfigure it again anyway. Once I remove the folder, the configuration wizard shows up and I configure everything with the same data as for sylpheed 2.04 and sylpheed-claws 1.0.5 (both work well with IMAP over SSL). tracked upstream now at http://www.thewildbeast.co.uk/sylpheed-claws/bugzilla/show_bug.cgi?id=921 |