[Csync2] Making SSL errors more helpful

Ben Klang ben at alkaloid.net
Mon Oct 9 02:58:33 CEST 2006


Hello List,

I recently discovered the csync2 tool while working on a cluster experiment.  
Unfortunately I ran into a frustrating inability to diagnose why my SSL 
connections weren't working.  To help remedy that, I have created this small 
patch which changes the somewhat vague "Establishing SSL connection failed."  
into a string which reports the underlying error from the library.  I did not 
check for more places where a similar modification would be desirable, but 
this may be of use to others so I'm submitting it.

That being said, maybe I can ask for some advice.  I attempted to use my 
pre-existing SSL certificate for the server that I have generated with a 
certificate authority (ie. not self-signed).  While using this cert, I'm 
getting the error back: "The cipher type is unsupported." from the GNUTLS 
library.  Does anyone have any advice on that?

Thanks,
/BAK/
-- 
Ben Klang
Alkaloid Networks
404.475.4850
ben at alkaloid.net
-------------- next part --------------
A non-text attachment was scrubbed...
Name: csync2-conn-SSL-verbose-error.patch
Type: text/x-diff
Size: 749 bytes
Desc: not available
Url : http://lists.linbit.com/pipermail/csync2/attachments/20061008/9e8b1dd3/csync2-conn-SSL-verbose-error.bin


More information about the Csync2 mailing list