From owner-freebsd-questions Thu Jan 23 2: 0:30 2003 Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id AB53C37B401 for ; Thu, 23 Jan 2003 02:00:28 -0800 (PST) Received: from fixx.co.za (gemini.fixx.co.za [196.34.165.222]) by mx1.FreeBSD.org (Postfix) with ESMTP id 7FA8243F13 for ; Thu, 23 Jan 2003 02:00:27 -0800 (PST) (envelope-from fixx@fixx.co.za) Received: from [196.34.165.222] (helo=gemini.fixx.co.za) by fixx.co.za with esmtp (Exim 3.36 #1) id 18beBZ-0001Pt-00 for freebsd-questions@freebsd.org; Thu, 23 Jan 2003 12:02:13 +0200 Date: Thu, 23 Jan 2003 12:02:13 +0200 (SAST) From: Wayne Swart To: FreeBSD Mailing list Subject: stunnel problem Message-ID: <20030123113748.W1502-100000@gemini.fixx.co.za> MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII Sender: owner-freebsd-questions@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.ORG Lo can someone please help me with a stunnel problem i am using bsd 4.7 and generated my own CA using /usr/src/crypto/openssl/apps/CA.sh but when i want to use the CA with stunnel, the stunnel.sh script logs the following error: 2003.01.23 11:21:31 LOG5[5372:134598656]: stunnel 4.04 on i386-portbld-freebsd4.7 PTHREAD+LIBWRAP with OpenSSL 0.9.6g 9 Aug 2002 2003.01.23 11:21:31 LOG7[5372:134598656]: RAND_status claims sufficient entropy for the PRNG 2003.01.23 11:21:31 LOG6[5372:134598656]: PRNG seeded successfully 2003.01.23 11:21:31 LOG7[5372:134598656]: Certificate: /usr/local/etc/stunnel/cakey.pem 2003.01.23 11:21:31 LOG7[5372:134598656]: Key file: /usr/local/etc/stunnel/cakey.pem 2003.01.23 11:21:31 LOG3[5372:134598656]: error stack: 140B3009 : error:140B3009:SSL routines:SSL_CTX_use_RSAPrivateKey_file:missing asn1 eos 2003.01.23 11:21:31 LOG3[5372:134598656]: SSL_CTX_use_RSAPrivateKey_file: 906D06C: error:0906D06C:PEM routines:PEM_read_bio:no start line am i using the right CA ? it is the one that CA.sh puts under ./demoCA/private? I do not really understand that error, so i am not to sure if it is the script or the certificate that is causing the error. can someone please help me with this? thanks a mil wayne To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-questions" in the body of the message