SSL client certificate

Discussion about XChat on Linux and other unix like systems.

SSL client certifica

Postby mrmonday » 17 Oct 2007 19:01

How can I get XChat to send an ssl client certificate when it connects via ssl? When I asked in #xchat on freenode I was told it was supported, but no one knew how to set it up. Thanks in advance :)
mrmonday
 
Posts: 8
Joined: 02 Jun 2007 08:20

Postby peterz » 18 Oct 2007 01:29

It'll read this file: ~/.xchat2/<network>.pem
User avatar
peterz
 
Posts: 1035
Joined: 09 Jun 2004 13:51
Location: Australia

Postby mrmonday » 18 Oct 2007 15:45

How do I generate a certificate file? I know I can make one using certtool, but don't know how to do it properly. Thanks again.
mrmonday
 
Posts: 8
Joined: 02 Jun 2007 08:20

Postby mrmonday » 23 Oct 2007 19:28

Well I managed to generate a certificate using

Code: Select all
certtool --generate-privkey --outfile key.perm
certtool --generate-self-signed --load-privkey key.pem --outfile cert.pem



I then copied it to ~/.xchat2 and renamed it mynetwork.pem. It seems that XChat doesn't send the key though. Is there any reason for this? Thanks.
mrmonday
 
Posts: 8
Joined: 02 Jun 2007 08:20

Postby Khisanth » 23 Oct 2007 22:55

put both the key and the cert in the .pem

cat key.pem cert.pem > ~/.xchat2/someNetwork.pem
Khisanth
 
Posts: 1724
Joined: 10 Jun 2004 05:23

Postby mrmonday » 24 Oct 2007 09:28

Thanks Khisanth, that worked :D
mrmonday
 
Posts: 8
Joined: 02 Jun 2007 08:20

Postby chips » 27 Mar 2008 20:46

I do not have certtool in my linux box. I am running xchat 2.8.4. Here is my network setup:

Image

With/without server password in server password input field, ssl certificate is not being used by xchat. If I don't input server password into the field, then I can't login to my sbnc account.

I created the local xchat certificate and the key using openssl http://board.shroudbnc.info/index.php?t=msg&th=136. Placed pem file into .xchat folder.
cat key.pem cert.pem > ~/.xchat2/someNetwork.pem

Name of the pem file is given as network name. Which is found in xchat->Network List ->Networks.

When I connect to one of my bouncers, I get;
--sBNC- Error: You are not using a client certificate.

Any idea why xchat is not loading the pem file?

thank you.
chips
 
Posts: 3
Joined: 02 Feb 2008 04:55


Return to XChat

Who is online

Users browsing this forum: No registered users and 1 guest