[paramiko] www.lag.net server issue?

Robey Pointer robey at lag.net
Sun Feb 17 16:21:38 PST 2008


On 14 Feb 2008, at 13:39, Adam Mercer wrote:

> On Thu, Feb 14, 2008 at 4:13 PM, Adam Mercer <ramercer at gmail.com>  
> wrote:
>
>> Is this a permanent change?

Sorry, I'd messed with setting up an SSL site, and ended up breaking  
the main site's configuration.

The non-SSL site should be back up and running now.


> As a followup to this I should add that there's going to be a problem
> if this is a permanent change as the certificate used on green.lag.net
> is self issued and its authenticity can't be determined, for example
> the following error is return when trying to fetch from
> https://green.lag.net using MacPorts:
>
> Fetching failed:: peer certificate cannot be authenticated with known
> CA certificates

Another good example of why SSH is a superior protocol to SSL. I'm not  
going to pay thousands of dollars to a financial corporation just to  
have the "right kind" of cert. Therefore self-signed certs are a fact  
of life, and all these SSL clients complaining about them just make  
SSL look confusing to end users.

robey




More information about the paramiko mailing list