Advertisement
Guest User

Untitled

a guest
Apr 1st, 2015
206
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.43 KB | None | 0 0
  1. amqps://un:pw@myhost.example.com:5679?cacertfile=/etc/ssl/certs/example.com.cacert.crt&certfile=/etc/ssl/certs/example.com.crt&keyfile=/etc/ssl/private/example.com.key&verify=verify_peer
  2.  
  3. SSL_accept: 14094410: error:14094410:SSL routines:SSL3_READ_BYTES:sslv3 alert handshake failure
  4.  
  5. openssl s_client -connect myhost.example.com:5679 -cert /etc/ssl/certs/example.com.crt -key /etc/ssl/private/example.com.key -CAfile /etc/ssl/certs/example.com.cacert.crt
  6.  
  7. Negotiated TLSv1/SSLv3 ciphersuite: ECDHE-RSA-AES256-GCM-SHA384 (256-bit encryption)
  8.  
  9. [
  10. {kernel, [
  11.  
  12. ]},
  13. {ssl, [{versions, ['tlsv1.2', 'tlsv1.1' ]}]},
  14. {rabbit, [
  15. {ssl_listeners, [5671]},
  16. {ssl_options, [{cacertfile,"/etc/ssl/certs/example.com.cacert.crt"},
  17. {certfile,"/etc/ssl/certs/example.com.crt"},
  18. {keyfile,"/etc/ssl/private/example.com.key"},
  19. {versions, ['tlsv1.2', 'tlsv1.1']},
  20. {depth, 2},
  21. {verify,verify_peer},
  22. {fail_if_no_peer_cert,false}]},
  23. {tcp_listen_options, [binary, {packet,raw},
  24. {reuseaddr,true},
  25. {backlog,128},
  26. {nodelay,true},
  27. {exit_on_close,false},
  28. {keepalive,false}]},
  29.  
  30. {default_user, <<"guest">>},
  31. {default_pass, <<"guest">>},
  32. {heartbeat, 580}
  33. ]}
  34. ]
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement