This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

POP3 protcetion does not work anymore since 9.210-20

Hi,

before I had 9.209-8 firmware and everything was cool, today I updated to 9.210-20 and my POP3 proxy doesn't work anymore.

This is from the live log
2014:12:04-22:21:57 ***utm pop3proxy[26469]: Fatal: Failed to accept SSL client
2014:12:04-22:21:57 ***utm pop3proxy[26469]: SSL Error: 0x1408a0c1d (error:1408A0C1:SSL routines:SSL3_GET_CLIENT_HELLO:no shared cipher)
2014:12:04-22:21:57 ***utm pop3proxy[26470]: Fatal: Failed to accept SSL client
2014:12:04-22:21:57 ***utm pop3proxy[26470]: SSL Error: 0x1408a0c1d (error:1408A0C1:SSL routines:SSL3_GET_CLIENT_HELLO:no shared cipher)
2014:12:04-22:23:30 ***utm pop3proxy[26535]: Accepted client connection from 192.168.2.20 for 212.227.15.162 (pop.1und1.de Servers server_id 2)
2014:12:04-22:23:30 ***utm pop3proxy[26534]: Accepted client connection from 192.168.2.20 for 212.227.17.169 (pop.gmx.net Servers server_id 1)
2014:12:04-22:23:30 ***utm pop3proxy[26534]: Fatal: Failed to accept SSL client
2014:12:04-22:23:30 ***utm pop3proxy[26535]: Fatal: Failed to accept SSL client
2014:12:04-22:23:30 ***utm pop3proxy[26534]: SSL Error: 0x1408a0c1d (error:1408A0C1:SSL routines:SSL3_GET_CLIENT_HELLO:no shared cipher)
2014:12:04-22:23:30 ***utm pop3proxy[26535]: SSL Error: 0x1408a0c1d (error:1408A0C1:SSL routines:SSL3_GET_CLIENT_HELLO:no shared cipher) 

Any idea? It looks like there is a cipher missing now...

I am working with thunderbird

Cheers


This thread was automatically locked due to age.
Parents
  • What happens if you disable POP3 and then re-enable it?

    What's the result of:

    # grep tls_ciphers /var/chroot-pop3/etc/*



    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Reply
  • What happens if you disable POP3 and then re-enable it?

    What's the result of:

    # grep tls_ciphers /var/chroot-pop3/etc/*



    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Children
  • Hi,

    switch on/off doesn't change anything

    here is the grep

    /var/chroot-pop3/etc/pop3proxy.conf:tls_ciphers_client=DEFAULT
    /var/chroot-pop3/etc/pop3proxy.conf:tls_ciphers_server=RC4:HIGH:!MD5:!aNULL:!EDH:!SSLv3
    /var/chroot-pop3/etc/pop3proxy.conf-default:tls_ciphers_client=DEFAULT
    /var/chroot-pop3/etc/pop3proxy.conf-default:tls_ciphers_server=RC4:HIGH:!MD5:!aNULL:!EDH:!SSLv3

    Cheers,
    Tee