TLS handshake fails ("SSL_accept:error in error") for server->server connection (smtp submit dovecot->postfix) if /etc/pki/tls/openssl.cnf "Options=" includes 'ServerPreference' ?

PGNet Dev at
Fri Sep 25 17:01:18 UTC 2020

On 9/25/20 8:55 AM, Viktor Dukhovni wrote:
> Well, I expected you to post a working and non-workin trace for the
> *same* server endpoint, with the good and bad configuration.
> Secondly,

> Where's the recording of the successful transmission to port 465 (and
> not say 587).

you asked for a capture of the _failed_ transaction.

>	For further progress a PCAP file is needed which contains a
>	full capture of exactly one TCP connection corresponding to this
>	failure.

>	You need to post A PCAP file that tshark can read with a single
>	TCP session containing the failed handshake.

you did not ask for captures of BOTH failed & successful transactions.

i'll pass on the drama.

again, thx anyway.

