[pve-devel] spice tls + proxy: ssl_verify.c:484:openssl_verify: ssl: hostname

Dietmar Maurer dietmar at proxmox.com
Wed Jul 17 11:57:32 CEST 2013


> > maybe host-subject can help ?
> >
> > host-subject="OU=PVE Cluster Node,O=Proxmox Virtual
> > Environment,CN=base32ticket"
> 
> yes, that is what I thought - will test later.

OK, I have just committed an initial version using a local tcp port and TLS (qemu-server/pve-manager).

Please can you test if that works for you also?

I guess in future we need to extract 'host-subject' from /etc/pve/local/pve-ssl.pem, maybe with:

# openssl x509 -in /etc/pve/local/pve-ssl.pem -noout -subject

what you you think?






More information about the pve-devel mailing list