fetchmail-friends
[Top] [All Lists]

Re: [fetchmail]Re: Bug#201113: fetchmail is missing a check for Subject Alternative Name (TLS cert.)

2005-02-19 06:58:58
ms419(_at_)freezone(_dot_)co(_dot_)uk writes:

Hi friends - I just racked up lots of error messages -


      fetchmail: Server CommonName mismatch: localhost != pop3.freezone.co.uk
      fetchmail: Server CommonName mismatch: localhost != pop3.freezone.co.uk


- before I tracked down the problem - my ISP just started supporting 
STLS & Fetchmail doesn't like their certificate.

The proper way to fix this is to complain to the ISP and request that
they issue proper SSL certificates.

An SSL certificate that doesn't protect from man-in-the-middle attacks
is worthless, so your workaround of disabling TLS/SSL is the right thing
to do, to avoid creating a false sense of security.

-- 
Matthias Andree


<Prev in Thread] Current Thread [Next in Thread>