Bug 18071

Summary: wpa_supplicant can't use a Self Signed Cert
Product: Mageia Reporter: Zombie Ryushu <zombie_ryushu>
Component: RPM PackagesAssignee: Thomas Backlund <tmb>
Status: RESOLVED OLD QA Contact:
Severity: normal    
Priority: Normal CC: marja11
Version: 5   
Target Milestone: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Source RPM: wpa_supplicant CVE:
Status comment:

Description Zombie Ryushu 2016-03-26 06:11:02 CET
wpa_supplicant should be re-compiled and re-linked against gnutls rather than openssl. I'm getting Error 19 from WPA Supplicant because Mageia's wpa_supplicant is built against OpenSSL in such a way not to permit self signed certificates. Even after the cert is added to the certificate store,

Openssl verify command will now report the client cert as: 0 OK. After copying the ca cert into the bundle file.

However, wpa_supplicant will still fail the connection with TLS error 19.
Marja Van Waes 2016-03-28 21:31:38 CEST

CC: (none) => marja11
Assignee: bugsquad => tmb

Comment 1 Marja Van Waes 2018-04-24 18:56:24 CEST
Hi Zombie Ryushu,

Thank you for having taken the needed time to report this issue!

Did this bug get fixed? If so, please change its status to RESOLVED - FIXED

If it didn't, then we regret that we weren't able to fix it in Mageia 5. Mageia 5 has officially reached its End of Life on December 31st, 2017 https://blog.mageia.org/en/2017/11/07/mageia-5-eol-postponed/
It only continued to get important security updates since then, because we are waiting for a big Plasma5 update in Mageia 6, that'll fix many of the Mageia 5 => 6 upgrade issues.

If you haven't seen that this bug got fixed, then please check whether this bug still exists in Mageia 6. If it does, then please change the Version (near the top, at the left) to "6". If you know it exists in Cauldron, then change Version to Cauldron. If you see it in both Cauldron and Mageia 6, then please set Version to Cauldron and add MGA6TOO on the Whiteboard.

Thanks,
Marja
Comment 2 Marja Van Waes 2018-10-06 12:57:57 CEST
No reply, so closing as OLD

Status: NEW => RESOLVED
Resolution: (none) => OLD