<div dir="ltr"><div><br></div><div>Thanks Cheers Rob,<br><br>Protocol error messages are no longer displayed when adding the bc2025.pem file, but entering the command "kamcmd dispatcher.list | egrep" URI | FLAGS "shows us:<br><br>  URI: sip: <a href="http://sip.pstnhub.microsoft.com">sip.pstnhub.microsoft.com</a>; transport = tls<br>                                         FLAGS: IP<br>                                         URI: sip: <a href="http://sip2.pstnhub.microsoft.com">sip2.pstnhub.microsoft.com</a>; transport = tls<br>                                         FLAGS: IP<br>                                         URI: sip: <a href="http://sip3.pstnhub.microsoft.com">sip3.pstnhub.microsoft.com</a>; transport = tls<br>                                         FLAGS: IP<br><br>Is there something else that needs to be done?<br></div><div><br></div><div><div dir="ltr" class="gmail_signature" data-smartmail="gmail_signature"><div dir="ltr">Atentamente<b><br><br>Adalberto Carlos Mestanza T.</b><br><br></div></div></div><br></div><br><div class="gmail_quote"><div dir="ltr" class="gmail_attr">El jue, 7 ene 2021 a las 15:41, Carlos Mestanza T. (<<a href="mailto:mestacart@gmail.com">mestacart@gmail.com</a>>) escribió:<br></div><blockquote class="gmail_quote" style="margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex"><div dir="ltr"><div>I am a friend of Willy and we are doing this integration, today I create wildcard certificates in letsencrypt, for this use acme.sh and integrate it with the DNS CLOUDNS provider, the certificates were generated successfully, we replace the old ones, in the LOGs it gives us understanding q accept the certificates.<br></div><div><br></div><div><img src="cid:ii_kjnb9r3g0" alt="image.png" width="1065" height="31" style="margin-right: 0px;"><br></div><div><br></div><div><img src="cid:ii_kjnba9781" alt="image.png" width="1063" height="40" style="margin-right: 0px;"><br></div><div><br></div><div><br></div><div>But he has the same messages.<br></div><div><br></div><div><br></div><div>Jan  7 15:32:57 Kamailio-Server /usr/sbin/kamailio[24810]: ERROR: tls [tls_server.c:1283]: tls_h_read_f(): protocol level error<br>Jan  7 15:32:57 Kamailio-Server /usr/sbin/kamailio[24810]: ERROR: tls [tls_util.h:42]: tls_err_ret(): TLS write:error:14090086:SSL routines:ssl3_get_server_certificate:certificate verify failed<br>Jan  7 15:32:57 Kamailio-Server /usr/sbin/kamailio[24810]: ERROR: tls [tls_server.c:1287]: tls_h_read_f(): source IP: 52.114.132.46<br>Jan  7 15:32:57 Kamailio-Server /usr/sbin/kamailio[24810]: ERROR: tls [tls_server.c:1290]: tls_h_read_f(): destination IP: 161.35.44.66<br>Jan  7 15:32:57 Kamailio-Server /usr/sbin/kamailio[24810]: ERROR: <core> [core/tcp_read.c:1493]: tcp_read_req(): ERROR: tcp_read_req: error reading - c: 0x7fdfc14a8cf8 r: 0x7fdfc14a8e20 (-1)<br>Jan  7 15:32:57 Kamailio-Server /usr/sbin/kamailio[24811]: ERROR: tls [tls_server.c:1283]: tls_h_read_f(): protocol level error<br>Jan  7 15:32:57 Kamailio-Server /usr/sbin/kamailio[24811]: ERROR: tls [tls_util.h:42]: tls_err_ret(): TLS write:error:14090086:SSL routines:ssl3_get_server_certificate:certificate verify failed<br>Jan  7 15:32:57 Kamailio-Server /usr/sbin/kamailio[24811]: ERROR: tls [tls_server.c:1287]: tls_h_read_f(): source IP: 52.114.7.24<br>Jan  7 15:32:57 Kamailio-Server /usr/sbin/kamailio[24811]: ERROR: tls [tls_server.c:1290]: tls_h_read_f(): destination IP: 161.35.44.66<br>Jan  7 15:32:57 Kamailio-Server /usr/sbin/kamailio[24811]: ERROR: <core> [core/tcp_read.c:1493]: tcp_read_req(): ERROR: tcp_read_req: error reading - c: 0x7fdfc1424528 r: 0x7fdfc1424650 (-1)<br>Jan  7 15:33:06 Kamailio-Server /usr/sbin/kamailio[24804]: ERROR: tls [tls_server.c:1283]: tls_h_read_f(): protocol level error<br>Jan  7 15:33:06 Kamailio-Server /usr/sbin/kamailio[24804]: ERROR: tls [tls_util.h:42]: tls_err_ret(): TLS write:error:14090086:SSL routines:ssl3_get_server_certificate:certificate verify failed<br>Jan  7 15:33:06 Kamailio-Server /usr/sbin/kamailio[24804]: ERROR: tls [tls_server.c:1287]: tls_h_read_f(): source IP: 52.114.75.24<br>Jan  7 15:33:06 Kamailio-Server /usr/sbin/kamailio[24804]: ERROR: tls [tls_server.c:1290]: tls_h_read_f(): destination IP: 161.35.44.66<br>Jan  7 15:33:06 Kamailio-Server /usr/sbin/kamailio[24804]: ERROR: <core> [core/tcp_read.c:1493]: tcp_read_req(): ERROR: tcp_read_req: error reading - c: 0x7fdfc1424528 r: 0x7fdfc1424650 (-1)<br>Jan  7 15:33:07 Kamailio-Server /usr/sbin/kamailio[24805]: ERROR: tls [tls_server.c:1283]: tls_h_read_f(): protocol level error<br>Jan  7 15:33:07 Kamailio-Server /usr/sbin/kamailio[24805]: ERROR: tls [tls_util.h:42]: tls_err_ret(): TLS write:error:14090086:SSL routines:ssl3_get_server_certificate:certificate verify failed<br>Jan  7 15:33:07 Kamailio-Server /usr/sbin/kamailio[24805]: ERROR: tls [tls_server.c:1287]: tls_h_read_f(): source IP: 52.114.132.46<br>Jan  7 15:33:07 Kamailio-Server /usr/sbin/kamailio[24805]: ERROR: tls [tls_server.c:1290]: tls_h_read_f(): destination IP: 161.35.44.66<br>Jan  7 15:33:07 Kamailio-Server /usr/sbin/kamailio[24805]: ERROR: <core> [core/tcp_read.c:1493]: tcp_read_req(): ERROR: tcp_read_req: error reading - c: 0x7fdfc1494d20 r: 0x7fdfc1494e48 (-1)<br>Jan  7 15:33:07 Kamailio-Server /usr/sbin/kamailio[24806]: ERROR: tls [tls_server.c:1283]: tls_h_read_f(): protocol level error<br>Jan  7 15:33:07 Kamailio-Server /usr/sbin/kamailio[24806]: ERROR: tls [tls_util.h:42]: tls_err_ret(): TLS write:error:14090086:SSL routines:ssl3_get_server_certificate:certificate verify failed<br>Jan  7 15:33:07 Kamailio-Server /usr/sbin/kamailio[24806]: ERROR: tls [tls_server.c:1287]: tls_h_read_f(): source IP: 52.114.14.70<br>Jan  7 15:33:07 Kamailio-Server /usr/sbin/kamailio[24806]: ERROR: tls [tls_server.c:1290]: tls_h_read_f(): destination IP: 161.35.44.66<br></div><div><br></div><div><br></div><br clear="all"><div><div dir="ltr"><div dir="ltr">Atentamente<b><br><br>Adalberto Carlos Mestanza T.</b><br><br></div></div></div><br></div><br><div class="gmail_quote"><div dir="ltr" class="gmail_attr">El jue, 7 ene 2021 a las 8:08, <<a href="mailto:rob.van.den.bulk@gmail.com" target="_blank">rob.van.den.bulk@gmail.com</a>> escribió:<br></div><blockquote class="gmail_quote" style="margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex"><div lang="DE"><div><p class="MsoNormal"><span lang="EN-GB" style="font-family:Consolas;color:black">I Used this tls.cfg<u></u><u></u></span></p><p class="MsoNormal"><span lang="EN-GB" style="font-family:Consolas;color:black"><u></u> <u></u></span></p><p class="MsoNormal"><span lang="EN-GB" style="font-family:Consolas;color:black">Use bc2025.pem as extra, Microsoft needs this…<u></u><u></u></span></p><p class="MsoNormal"><span lang="EN-GB" style="font-family:Consolas;color:black"><u></u> <u></u></span></p><p class="MsoNormal"><span lang="EN-GB" style="font-family:Consolas;color:black">And works fine on different Kamailio-msteams sbcs<u></u><u></u></span></p><p class="MsoNormal"><span lang="EN-GB" style="font-family:Consolas;color:black"><u></u> <u></u></span></p><p class="MsoNormal"><span lang="EN-GB" style="font-family:Consolas;color:black"><u></u> <u></u></span></p><p class="MsoNormal"><span lang="EN-GB" style="font-family:Consolas;color:black">[server:default]<u></u><u></u></span></p><p class="MsoNormal"><span lang="EN-GB" style="font-family:Consolas;color:black">method = TLSv1.2+<u></u><u></u></span></p><p class="MsoNormal"><span lang="EN-GB" style="font-family:Consolas;color:black">verify_certificate = yes<u></u><u></u></span></p><p class="MsoNormal"><span lang="EN-GB" style="font-family:Consolas;color:black">require_certificate = yes<u></u><u></u></span></p><p class="MsoNormal"><span lang="EN-GB" style="font-family:Consolas;color:black">private_key = /etc/letsencrypt/live/sbc.combivoipdom.nl-0001/privkey.pem<u></u><u></u></span></p><p class="MsoNormal"><span lang="EN-GB" style="font-family:Consolas;color:black">certificate = /etc/letsencrypt/live/sbc.combivoipdom.nl-0001/fullchain.pem<u></u><u></u></span></p><p class="MsoNormal"><span lang="EN-GB" style="font-family:Consolas;color:black">ca_list = /etc/letsencrypt/live/sbc.combivoipdom.nl-0001/bc2025.pem<u></u><u></u></span></p><p class="MsoNormal"><span lang="EN-GB" style="font-family:Consolas;color:black">server_name = <a href="http://sbc.combivoipdom.nl" target="_blank">sbc.combivoipdom.nl</a><u></u><u></u></span></p><p class="MsoNormal"><span lang="EN-GB"><u></u> <u></u></span></p><p class="MsoNormal"><span lang="EN-GB" style="font-family:Consolas;color:black">[client:default]<u></u><u></u></span></p><p class="MsoNormal"><span lang="EN-GB" style="font-family:Consolas;color:black">method = TLSv1.2+<u></u><u></u></span></p><p class="MsoNormal"><span lang="EN-GB" style="font-family:Consolas;color:black">verify_certificate = yes<u></u><u></u></span></p><p class="MsoNormal"><span lang="EN-GB" style="font-family:Consolas;color:black">require_certificate = yes<u></u><u></u></span></p><p class="MsoNormal"><span lang="EN-GB" style="font-family:Consolas;color:black">private_key = /etc/letsencrypt/live/sbc.combivoipdom.nl-0001/privkey.pem<u></u><u></u></span></p><p class="MsoNormal"><span lang="EN-GB" style="font-family:Consolas;color:black">certificate = /etc/letsencrypt/live/sbc.combivoipdom.nl-0001/fullchain.pem<u></u><u></u></span></p><p class="MsoNormal"><span lang="EN-GB" style="font-family:Consolas;color:black">ca_list = /etc/letsencrypt/live/sbc.combivoipdom.nl-0001/bc2025.pem<u></u><u></u></span></p><p class="MsoNormal"><span lang="EN-GB" style="font-family:Consolas;color:black"><u></u> <u></u></span></p><p class="MsoNormal"><span lang="EN-GB" style="font-family:Consolas;color:black"><u></u> <u></u></span></p><p class="MsoNormal"><span lang="EN-GB" style="font-family:Consolas;color:black"><u></u> <u></u></span></p><p class="MsoNormal"><span lang="EN-GB" style="font-family:Consolas;color:black">Cheers Rob<u></u><u></u></span></p><p class="MsoNormal"><span lang="EN-GB"><u></u> <u></u></span></p><div><div style="border-right:none;border-bottom:none;border-left:none;border-top:1pt solid rgb(225,225,225);padding:3pt 0cm 0cm"><p class="MsoNormal"><b><span lang="NL">Van:</span></b><span lang="NL"> sr-users <<a href="mailto:sr-users-bounces@lists.kamailio.org" target="_blank">sr-users-bounces@lists.kamailio.org</a>> <b>Namens </b>Daniel-Constantin Mierla<br><b>Verzonden:</b> donderdag 7 januari 2021 08:53<br><b>Aan:</b> Kamailio (SER) - Users Mailing List <<a href="mailto:sr-users@lists.kamailio.org" target="_blank">sr-users@lists.kamailio.org</a>>; Willy Valles Rios <<a href="mailto:willyvalles17@gmail.com" target="_blank">willyvalles17@gmail.com</a>><br><b>CC:</b> Carlos Mestanza T. <<a href="mailto:mestacart@gmail.com" target="_blank">mestacart@gmail.com</a>><br><b>Onderwerp:</b> Re: [SR-Users] Problems establishing SIP signaling between MsTeams and Kamailio<u></u><u></u></span></p></div></div><p class="MsoNormal"><u></u> <u></u></p><p>Does this happen when Kamailio connects to MS Teams? The logs indicate the received TLS certificate is not trusted:<u></u><u></u></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:55 Kamailio-Server /usr/sbin/kamailio[32425]: ERROR: tls [tls_util.h:42]: tls_err_ret(): TLS write:error:14090086:SSL routines:ssl3_get_server_certificate:certificate verify failed<u></u><u></u></span></p><div><p class="MsoNormal"><u></u> <u></u></p></div><div><p class="MsoNormal">You can set debug=3 in kamailio.cfg and see if the DEBUG messages provide more hints. For me it worked fine with Letsencrypt certs in Kamailio and accepting what ever MS sent back. I used Debian 10 and libssl 1.1.<u></u><u></u></p></div><div><p class="MsoNormal"><u></u> <u></u></p></div><div><p class="MsoNormal">Cheers,<br>Daniel<u></u><u></u></p></div><div><p class="MsoNormal"><u></u> <u></u></p></div><div><p class="MsoNormal">On 06.01.21 21:47, Willy Valles Rios wrote:<u></u><u></u></p></div><blockquote style="margin-top:5pt;margin-bottom:5pt"><div><div><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Hello community,<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal;min-height:14px"><span style="font-size:9pt;font-family:Helvetica,sans-serif"><u></u> <u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">I am having trouble establishing SIP signaling between MsTeams and Kamailio. I currently have this configuration in my tls.cfg file<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal;min-height:14px"><span style="font-size:9pt;font-family:Helvetica,sans-serif"><u></u> <u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">[server: default]<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">method = TLSv1.2 +<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">verify_certificate = yes<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">require_certificate = yes<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">private_key = /etc/kamailio/certificates/private-key.pem<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">certificate = /etc/kamailio/certificates/certificate.pem<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal;min-height:14px"><span style="font-size:9pt;font-family:Helvetica,sans-serif"><u></u> <u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">[client: default]<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">method = TLSv1.2 +<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">verify_certificate = yes<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">require_certificate = yes<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">private_key = /etc/kamailio/certificates/private-key.pem<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">certificate = /etc/kamailio/certificates/certificate.pem<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal;min-height:14px"><span style="font-size:9pt;font-family:Helvetica,sans-serif"><u></u> <u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">My domain was certified with ssl through an authoritative certifier (GoDaddy), however I see these errors in the / var / log / messages of the Kamailio server.<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal;min-height:14px"><span style="font-size:9pt;font-family:Helvetica,sans-serif"><u></u> <u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: tls [tls_mod.c:389]: mod_init(): With ECDH-Support!<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: tls [tls_mod.c:392]: mod_init(): With Diffie Hellman<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: tls [tls_init.c:722]: tls_h_mod_init_f(): compiled with openssl version "OpenSSL 1.0.2k-fips 26 Jan 2017" (0x100020bf), kerberos support: on, compression: on<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: tls [tls_init.c:730]: tls_h_mod_init_f(): installed openssl library version "OpenSSL 1.0.2k-fips 26 Jan 2017" (0x100020bf), kerberos support: on, zlib compression: on#012 compiler: gcc -I. -I.. -I../include -fPIC -DOPENSSL_PIC -DZLIB -DOPENSSL_THREADS -D_REENTRANT -DDSO_DLFCN -DHAVE_DLFCN_H -DKRB5_MIT -m64 -DL_ENDIAN -Wall -O2 -g -pipe -Wall -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector-strong --param=ssp-buffer-size=4 -grecord-gcc-switches -m64 -mtune=generic -Wa,--noexecstack -DPURIFY -DOPENSSL_IA32_SSE2 -DOPENSSL_BN_ASM_MONT -DOPENSSL_BN_ASM_MONT5 -DOPENSSL_BN_ASM_GF2m -DRC4_ASM -DSHA1_ASM -DSHA256_ASM -DSHA512_ASM -DMD5_ASM -DAES_ASM -DVPAES_ASM -DBSAES_ASM -DWHIRLPOOL_ASM -DGHASH_ASM -DECP_NISTZ256_ASM<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: WARNING: tls [tls_init.c:787]: tls_h_mod_init_f(): openssl bug #1491 (crash/mem leaks on low memory) workaround enabled (on low memory tls operations will fail preemptively) with free memory thresholds 13107200 and 6553600 bytes<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: [core/cfg/cfg_ctx.c:598]: cfg_set_now(): tls.low_mem_threshold1 has been changed to 13107200<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: [core/cfg/cfg_ctx.c:598]: cfg_set_now(): tls.low_mem_threshold2 has been changed to 6553600<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: [main.c:2834]: main(): processes (at least): 25 - shm size: 67108864 - pkg size: 4194304<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: [core/udp_server.c:154]: probe_max_receive_buffer(): SO_RCVBUF is initially 212992<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: [core/udp_server.c:206]: probe_max_receive_buffer(): SO_RCVBUF is finally 425984<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: tls [tls_domain.c:305]: ksr_tls_fill_missing(): TLSs: tls_method=22<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: tls [tls_domain.c:317]: ksr_tls_fill_missing(): TLSs: certificate='/etc/kamailio/certificados/certificate.pem'<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: tls [tls_domain.c:324]: ksr_tls_fill_missing(): TLSs: ca_list='(null)'<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: tls [tls_domain.c:331]: ksr_tls_fill_missing(): TLSs: crl='(null)'<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: tls [tls_domain.c:335]: ksr_tls_fill_missing(): TLSs: require_certificate=1<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: tls [tls_domain.c:342]: ksr_tls_fill_missing(): TLSs: cipher_list='(null)'<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: tls [tls_domain.c:349]: ksr_tls_fill_missing(): TLSs: private_key='/etc/kamailio/certificados/private-key.pem'<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: tls [tls_domain.c:353]: ksr_tls_fill_missing(): TLSs: verify_certificate=1<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: tls [tls_domain.c:356]: ksr_tls_fill_missing(): TLSs: verify_depth=9<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: tls [tls_domain.c:359]: ksr_tls_fill_missing(): TLSs: verify_client=0<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: NOTICE: tls [tls_domain.c:1107]: ksr_tls_fix_domain(): registered server_name callback handler for socket [:0], server_name='' ...<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: tls [tls_domain.c:697]: set_verification(): TLSs: Client MUST present valid certificate<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: tls [tls_domain.c:305]: ksr_tls_fill_missing(): TLSc: tls_method=22<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: tls [tls_domain.c:317]: ksr_tls_fill_missing(): TLSc: certificate='/etc/kamailio/certificados/certificate.pem'<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: tls [tls_domain.c:324]: ksr_tls_fill_missing(): TLSc: ca_list='(null)'<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: tls [tls_domain.c:331]: ksr_tls_fill_missing(): TLSc: crl='(null)'<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: tls [tls_domain.c:335]: ksr_tls_fill_missing(): TLSc: require_certificate=1<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: tls [tls_domain.c:342]: ksr_tls_fill_missing(): TLSc: cipher_list='(null)'<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: tls [tls_domain.c:349]: ksr_tls_fill_missing(): TLSc: private_key='/etc/kamailio/certificados/private-key.pem'<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: tls [tls_domain.c:353]: ksr_tls_fill_missing(): TLSc: verify_certificate=1<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: tls [tls_domain.c:356]: ksr_tls_fill_missing(): TLSc: verify_depth=9<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: tls [tls_domain.c:359]: ksr_tls_fill_missing(): TLSc: verify_client=0<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32409]: INFO: tls [tls_domain.c:697]: set_verification(): TLSc: Server MUST present valid certificate<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32422]: INFO: jsonrpcs [jsonrpcs_sock.c:443]: jsonrpc_dgram_process(): a new child 0/32422<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:45 Kamailio-Server /usr/sbin/kamailio[32424]: INFO: ctl [io_listener.c:214]: io_listen_loop(): io_listen_loop: using epoll_lt io watch method (config)<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:55 Kamailio-Server /usr/sbin/kamailio[32425]: ERROR: tls [tls_server.c:1283]: tls_h_read_f(): protocol level error<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:55 Kamailio-Server /usr/sbin/kamailio[32425]: ERROR: tls [tls_util.h:42]: tls_err_ret(): TLS write:error:14090086:SSL routines:ssl3_get_server_certificate:certificate verify failed<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:55 Kamailio-Server /usr/sbin/kamailio[32425]: ERROR: tls [tls_server.c:1287]: tls_h_read_f(): source IP: 52.114.75.24<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:55 Kamailio-Server /usr/sbin/kamailio[32425]: ERROR: tls [tls_server.c:1290]: tls_h_read_f(): destination IP: 161.35.44.66<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:55 Kamailio-Server /usr/sbin/kamailio[32425]: ERROR: [core/tcp_read.c:1493]: tcp_read_req(): ERROR: tcp_read_req: error reading - c: 0x7f45242be028 r: 0x7f45242be150 (-1)<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:55 Kamailio-Server /usr/sbin/kamailio[32426]: ERROR: tls [tls_server.c:1283]: tls_h_read_f(): protocol level error<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:55 Kamailio-Server /usr/sbin/kamailio[32426]: ERROR: tls [tls_util.h:42]: tls_err_ret(): TLS write:error:14090086:SSL routines:ssl3_get_server_certificate:certificate verify failed<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:55 Kamailio-Server /usr/sbin/kamailio[32426]: ERROR: tls [tls_server.c:1287]: tls_h_read_f(): source IP: 52.114.132.46<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:55 Kamailio-Server /usr/sbin/kamailio[32426]: ERROR: tls [tls_server.c:1290]: tls_h_read_f(): destination IP: 161.35.44.66<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:55 Kamailio-Server /usr/sbin/kamailio[32426]: ERROR: [core/tcp_read.c:1493]: tcp_read_req(): ERROR: tcp_read_req: error reading - c: 0x7f45242d9278 r: 0x7f45242d93a0 (-1)<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:55 Kamailio-Server /usr/sbin/kamailio[32427]: ERROR: tls [tls_server.c:1283]: tls_h_read_f(): protocol level error<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:55 Kamailio-Server /usr/sbin/kamailio[32427]: ERROR: tls [tls_util.h:42]: tls_err_ret(): TLS write:error:14090086:SSL routines:ssl3_get_server_certificate:certificate verify failed<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:55 Kamailio-Server /usr/sbin/kamailio[32427]: ERROR: tls [tls_server.c:1287]: tls_h_read_f(): source IP: 52.114.14.70<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:55 Kamailio-Server /usr/sbin/kamailio[32427]: ERROR: tls [tls_server.c:1290]: tls_h_read_f(): destination IP: 161.35.44.66<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Jan 6 15:13:55 Kamailio-Server /usr/sbin/kamailio[32427]: ERROR: [core/tcp_read.c:1493]: tcp_read_req(): ERROR: tcp_read_req: error reading - c: 0x7f45242be028 r: 0x7f45242be150 (-1)<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal;min-height:14px"><span style="font-size:9pt;font-family:Helvetica,sans-serif"><u></u> <u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Could you help me identify the problem please.<u></u><u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal;min-height:14px"><span style="font-size:9pt;font-family:Helvetica,sans-serif"><u></u> <u></u></span></p><p style="margin:0cm 0cm 0.0001pt;font-variant-numeric:normal;font-variant-east-asian:normal;font-stretch:normal"><span style="font-size:9pt;font-family:Helvetica,sans-serif">Cheers<u></u><u></u></span></p></div><div><div><div><div><div><div><div><div><div><div><div><div><div><div><div><div><p class="MsoNormal"><u></u> <u></u></p></div><div><p class="MsoNormal"><span style="font-family:Verdana,sans-serif">Saludos Cordiales</span><u></u><u></u></p></div><div><p class="MsoNormal"><span style="color:rgb(136,136,136)">-- </span><u></u><u></u></p></div><div><div><p class="MsoNormal" style="background:rgb(253,253,253)"><u><span style="font-size:10pt;font-family:"Times New Roman",serif;color:rgb(136,136,136)">Willy Valles Rios</span></u><span style="color:black"> </span><u></u><u></u></p><div><div><p class="MsoNormal" style="background:rgb(253,253,253)"><b><span style="font-family:Arial,sans-serif;color:rgb(191,144,0)">Unified Communications Specialist</span></b><u></u><u></u></p></div><div><p class="MsoNormal" style="background:rgb(253,253,253)"><span style="color:rgb(136,136,136)"><u></u> <u></u></span></p></div><div><p class="MsoNormal" style="background:rgb(253,253,253)"><span style="font-family:"Trebuchet MS",sans-serif;color:rgb(136,136,136)">phone: +51955747343</span><span style="color:rgb(136,136,136)"><u></u><u></u></span></p></div><div><p class="MsoNormal" style="background:rgb(253,253,253)"><span style="font-family:"Trebuchet MS",sans-serif;color:rgb(136,136,136)">em@il: </span><span style="font-family:"Trebuchet MS",sans-serif;color:rgb(51,102,153)"><a href="mailto:willyvalles17@gmail.com" target="_blank">willyvalles17@gmail.com</a></span><span style="color:rgb(136,136,136)"><u></u><u></u></span></p></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div><p class="MsoNormal"><br><br><u></u><u></u></p><pre>_______________________________________________<u></u><u></u></pre><pre>Kamailio (SER) - Users Mailing List<u></u><u></u></pre><pre><a href="mailto:sr-users@lists.kamailio.org" target="_blank">sr-users@lists.kamailio.org</a><u></u><u></u></pre><pre><a href="https://lists.kamailio.org/cgi-bin/mailman/listinfo/sr-users" target="_blank">https://lists.kamailio.org/cgi-bin/mailman/listinfo/sr-users</a><u></u><u></u></pre></blockquote><pre>-- <u></u><u></u></pre><pre>Daniel-Constantin Mierla -- <a href="http://www.asipto.com" target="_blank">www.asipto.com</a><u></u><u></u></pre><pre><a href="http://www.twitter.com/miconda" target="_blank">www.twitter.com/miconda</a> -- <a href="http://www.linkedin.com/in/miconda" target="_blank">www.linkedin.com/in/miconda</a><u></u><u></u></pre><pre>Funding: <a href="https://www.paypal.me/dcmierla" target="_blank">https://www.paypal.me/dcmierla</a><u></u><u></u></pre></div></div></blockquote></div>
</blockquote></div>