Description of problem: when checking the chain of certificates for starttls, sendmail is not looking in confCACERT_PATH for hash-linked trusted certificates. Version-Release number of selected component (if applicable): rpm-version: sendmail-8.12.10-1.1.1 How reproducible: always Steps to Reproduce: 1.configure sendmail for tls 2.relay mail over provider who requires smtp_auth/tls 3.see logfile and/or watch confCACERT_PATH with dazuko Actual results: Logentry, saying, remote cert could not be verified, because local issuer cert could not be found. Expected results: As issuer cert is trusted, it should be found in confCACERT_PATH, but corresponding cert isn't touched by sendmail. Additional info: When simulating with openssl s_client and explicitly offering issuer cert as CAfile, verification is successful.
Please check this with the rawhide package. There was a fix for the certificate directory of sendmail.
Where do I get a package fitting into FC1? Taking the actual development package would break several dependencies on my system.
Please rebuild from the rawhide SRPM.
Closed per above message and lack of response. Note that FC1 is not even supported by Fedora Legacy currently.