[SR-Users] Kamailio SIP TLS issue

Sergey Basov sergey.v.basov at gmail.com
Tue Oct 25 08:51:30 CEST 2016


Hi Daniel,

In attachment part of the log with debug=3 after kamailio starts and
when it is accepting connection to 10.1.23.23 and 10.1.23.33 port 5061

If you need more info I will try to provide it

kamailio v 4.4.3 on rhel 7 x86_64

Thank you.
--
Best regards,
Sergey Basov                     e-mail: sergey.v.basov at gmail.com



2016-10-25 9:29 GMT+03:00 Daniel-Constantin Mierla <miconda at gmail.com>:
> Hello,
>
> can you run with debug=3 in kamailio.cfg and see if you can spot
> anything relevant at startup, when the tls module is initialized and
> loads the certificates?
>
> Cheers,
> Daniel
>
>
> On 25/10/16 03:29, Sergey Basov wrote:
>> Hi All
>>
>> I have some strange behavior of kamailio with TLS.
>>
>> I have configured second IP addres on server, added it to tls
>> listener, and tls.cfg file.
>>
>> But when I try to connect using
>>
>> openssl s_client -showcerts -connect 10.1.23.33:5061 -tls1 -state
>> and
>> openssl s_client -showcerts -connect 10.1.23.23:5061 -tls1 -state
>>
>> I see same certificates (sip2 my config samples are bellow)
>>
>> if I make changes in port number (for ip 10.1.23.33 set port 5091 in
>> both config parts) - I see correct certificates.
>>
>> Does anyone have this problem?
>>
>> Thanks in advance.
>>
>> ----- listen section ----
>>
>> listen=tls:10.1.23.23:5061
>> listen=tls:10.1.23.33:5061
>>
>> ----- tls.cfg ------
>>
>> [server:default]
>> method = TLSv1+
>> verify_certificate = no
>> require_certificate = no
>> private_key = /etc/kamailio/keys/sip1.key
>> certificate = /etc/kamailio/keys/sip1.crt
>>
>> [server:10.1.23.33:5061]
>> method = TLSv1+
>> verify_certificate = no
>> require_certificate = no
>> private_key = /etc/kamailio/keys/sip1.key
>> certificate = /etc/kamailio/keys/sip1.crt
>>
>> [server:10.1.23.23:5061]
>> method = TLSv1+
>> verify_certificate = no
>> require_certificate = no
>> private_key = /etc/kamailio/keys/sip2.key
>> certificate = /etc/kamailio/keys/sip2.crt
>>
>> --
>> Best regards,
>> Sergey Basov                     e-mail: sergey.v.basov at gmail.com
>>
>> _______________________________________________
>> SIP Express Router (SER) and Kamailio (OpenSER) - sr-users mailing list
>> sr-users at lists.sip-router.org
>> http://lists.sip-router.org/cgi-bin/mailman/listinfo/sr-users
>
> --
> Daniel-Constantin Mierla
> http://twitter.com/#!/miconda - http://www.linkedin.com/in/miconda
> Kamailio Advanced Training, Berlin, Oct 24-26, 2016 - http://www.asipto.com
>
>
> _______________________________________________
> SIP Express Router (SER) and Kamailio (OpenSER) - sr-users mailing list
> sr-users at lists.sip-router.org
> http://lists.sip-router.org/cgi-bin/mailman/listinfo/sr-users
-------------- next part --------------

------  connect to 10.1.23.23:5061

Oct 25 09:40:06 sip1 /usr/sbin/kamailio[12666]: DEBUG: <core> [tcp_main.c:3786]: send2child(): checking per-socket specific workers (12653/118..12660/122) [tls:10.1.23.23:5061]
Oct 25 09:40:06 sip1 /usr/sbin/kamailio[12666]: DEBUG: <core> [tcp_main.c:3821]: send2child(): selected tcp worker 20 118(12653) for activity on [tls:10.1.23.23:5061], 0x7f5cf929cdd0
Oct 25 09:40:06 sip1 /usr/sbin/kamailio[12653]: DEBUG: tls [tls_server.c:197]: tls_complete_init(): completing tls connection initialization
Oct 25 09:40:06 sip1 /usr/sbin/kamailio[12653]: DEBUG: tls [tls_server.c:226]: tls_complete_init(): Using initial TLS domain TLSs<10.1.23.23:5061> (dom 0x7f5cf8964a88 ctx 0x7f5cf8dbbad0 sn [])
Oct 25 09:40:06 sip1 /usr/sbin/kamailio[12653]: DEBUG: tls [tls_domain.c:703]: sr_ssl_ctx_info_callback(): SSL handshake started
Oct 25 09:40:06 sip1 /usr/sbin/kamailio[12653]: DEBUG: tls [tls_domain.c:715]: sr_ssl_ctx_info_callback(): SSL handshake done
Oct 25 09:40:06 sip1 /usr/sbin/kamailio[12653]: DEBUG: tls [tls_domain.c:718]: sr_ssl_ctx_info_callback(): SSL disable renegotiation
Oct 25 09:40:06 sip1 /usr/sbin/kamailio[12653]: DEBUG: tls [tls_server.c:411]: tls_accept(): TLS accept successful
Oct 25 09:40:06 sip1 /usr/sbin/kamailio[12653]: DEBUG: tls [tls_server.c:418]: tls_accept(): tls_accept: new connection from 192.168.32.136:53376 using TLSv1/SSLv3 AES256-SHA 256
Oct 25 09:40:06 sip1 /usr/sbin/kamailio[12653]: DEBUG: tls [tls_server.c:421]: tls_accept(): tls_accept: local socket: 10.1.23.23:5061
Oct 25 09:40:06 sip1 /usr/sbin/kamailio[12653]: DEBUG: tls [tls_server.c:432]: tls_accept(): tls_accept: client did not present a certificate
Oct 25 09:40:27 sip1 /usr/sbin/kamailio[12666]: DEBUG: <core> [tcp_main.c:3786]: send2child(): checking per-socket specific workers (12653/118..12660/122) [tls:10.1.23.23:5061]
Oct 25 09:40:27 sip1 /usr/sbin/kamailio[12666]: DEBUG: <core> [tcp_main.c:3821]: send2child(): selected tcp worker 20 118(12653) for activity on [tls:10.1.23.23:5061], 0x7f5cf929cdd0
Oct 25 09:40:27 sip1 /usr/sbin/kamailio[12666]: DEBUG: tls [tls_server.c:663]: tls_h_close(): Closing SSL connection 0x7f5cf92980b0



------  connect to 10.1.23.33:5061

Oct 25 09:40:31 sip1 /usr/sbin/kamailio[12666]: DEBUG: <core> [tcp_main.c:3793]: send2child(): checking per-socket generic workers (12613/98..12651/117) [tls:10.1.23.33:5061]
Oct 25 09:40:31 sip1 /usr/sbin/kamailio[12666]: DEBUG: <core> [tcp_main.c:3821]: send2child(): selected tcp worker 0 98(12613) for activity on [tls:10.1.23.33:5061], 0x7f5cf929cdd0
Oct 25 09:40:31 sip1 /usr/sbin/kamailio[12613]: DEBUG: tls [tls_server.c:197]: tls_complete_init(): completing tls connection initialization
Oct 25 09:40:31 sip1 /usr/sbin/kamailio[12613]: DEBUG: tls [tls_server.c:226]: tls_complete_init(): Using initial TLS domain TLSs<10.1.23.23:5061> (dom 0x7f5cf8964a88 ctx 0x7f5cf8d9e2a0 sn [])
Oct 25 09:40:31 sip1 /usr/sbin/kamailio[12613]: DEBUG: tls [tls_domain.c:703]: sr_ssl_ctx_info_callback(): SSL handshake started
Oct 25 09:40:31 sip1 /usr/sbin/kamailio[12613]: DEBUG: tls [tls_domain.c:715]: sr_ssl_ctx_info_callback(): SSL handshake done
Oct 25 09:40:31 sip1 /usr/sbin/kamailio[12613]: DEBUG: tls [tls_domain.c:718]: sr_ssl_ctx_info_callback(): SSL disable renegotiation
Oct 25 09:40:31 sip1 /usr/sbin/kamailio[12613]: DEBUG: tls [tls_server.c:411]: tls_accept(): TLS accept successful
Oct 25 09:40:31 sip1 /usr/sbin/kamailio[12613]: DEBUG: tls [tls_server.c:418]: tls_accept(): tls_accept: new connection from 192.168.32.136:59596 using TLSv1/SSLv3 AES256-SHA 256
Oct 25 09:40:31 sip1 /usr/sbin/kamailio[12613]: DEBUG: tls [tls_server.c:421]: tls_accept(): tls_accept: local socket: 10.1.23.33:5061
Oct 25 09:40:31 sip1 /usr/sbin/kamailio[12613]: DEBUG: tls [tls_server.c:432]: tls_accept(): tls_accept: client did not present a certificate
Oct 25 09:40:34 sip1 /usr/sbin/kamailio[12666]: DEBUG: tls [tls_server.c:663]: tls_h_close(): Closing SSL connection 0x7f5cf92980b0
-------------- next part --------------
Oct 25 09:36:05 sip1 kamailio: DEBUG: <core> [cfg.y:1595]: yyparse(): loading module tls.so
Oct 25 09:36:05 sip1 kamailio: DEBUG: <core> [sr_module.c:575]: load_module(): trying to load </usr/lib64/kamailio/modules/tls.so>
Oct 25 09:36:05 sip1 kamailio: DEBUG: <core> [modparam.c:83]: set_mod_param_regex(): 'tls' matches module 'tls'
Oct 25 09:36:05 sip1 kamailio: DEBUG: <core> [sr_module.c:790]: find_param_export(): found <config> in module tls [/usr/lib64/kamailio/modules/tls.so]
Oct 25 09:36:05 sip1 kamailio: DEBUG: <core> [modparam.c:99]: set_mod_param_regex(): found <config> in module tls [/usr/lib64/kamailio/modules/tls.so]
Oct 25 09:36:05 sip1 kamailio: DEBUG: <core> [modparam.c:83]: set_mod_param_regex(): 'tls' matches module 'tls'
Oct 25 09:36:05 sip1 kamailio: DEBUG: <core> [sr_module.c:790]: find_param_export(): found <xavp_cfg> in module tls [/usr/lib64/kamailio/modules/tls.so]
Oct 25 09:36:05 sip1 kamailio: DEBUG: <core> [modparam.c:99]: set_mod_param_regex(): found <xavp_cfg> in module tls [/usr/lib64/kamailio/modules/tls.so]
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: DEBUG: tls [tls_init.c:519]: tls_mod_pre_init_h(): preparing tls env for modules initialization
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: DEBUG: <core> [sr_module.c:965]: init_mod(): tls
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: DEBUG: <core> [cfg/cfg.c:176]: cfg_declare(): DEBUG: register_cfg_def(): new config group has been registered: 'tls' (num=29, size=248)
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_mod.c:365]: mod_init(): With ECDH-Support!
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_mod.c:368]: mod_init(): With Diffie Hellman
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: DEBUG: tls [tls_init.c:548]: init_tls_h(): initializing tls system
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_init.c:600]: init_tls_h(): tls: _init_tls_h:  compiled  with  openssl  version "OpenSSL 1.0.1e-fips 11 Feb 2013" (0x1000105f), kerberos support: on, compression: on
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_init.c:608]: init_tls_h(): tls: init_tls_h: installed openssl library version "OpenSSL 1.0.1e-fips 11 Feb 2013" (0x1000105f), kerberos support: on,  zlib compression: on#012 compiler: gcc -fPIC -DOPENSSL_PIC -DZLIB -DOPENSSL_THREADS -D_REENTRANT -DDSO_DLFCN -DHAVE_DLFCN_H -DKRB5_MIT -m64 -DL_ENDIAN -DTERMIO -Wall -O2 -g -pipe -Wall -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector-strong --param=ssp-buffer-size=4 -grecord-gcc-switches   -m64 -mtune=generic -Wa,--noexecstack -DPURIFY -DOPENSSL_IA32_SSE2 -DOPENSSL_BN_ASM_MONT -DOPENSSL_BN_ASM_MONT5 -DOPENSSL_BN_ASM_GF2m -DSHA1_ASM -DSHA256_ASM -DSHA512_ASM -DMD5_ASM -DAES_ASM -DVPAES_ASM -DBSAES_ASM -DWHIRLPOOL_ASM -DGHASH_ASM
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: WARNING: tls [tls_init.c:662]: init_tls_h(): tls: openssl bug #1491 (crash/mem leaks on low memory) workaround enabled (on low memory tls operations will fail preemptively) with free memory thresholds 66584576 and 33292288 bytes
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: <core> [cfg/cfg_ctx.c:608]: cfg_set_now(): INFO: cfg_set_now(): tls.low_mem_threshold1 has been changed to 66584576
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: <core> [cfg/cfg_ctx.c:608]: cfg_set_now(): INFO: cfg_set_now(): tls.low_mem_threshold2 has been changed to 33292288
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: DEBUG: <core> [rvalue.c:2871]: fix_rval(): RV is str: "tls:"
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: DEBUG: <core> [rvalue.c:2871]: fix_rval(): RV is str: "tls:"
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: DEBUG: <core> [rvalue.c:2871]: fix_rval(): RV is str: "tls:"
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: DEBUG: <core> [rvalue.c:2871]: fix_rval(): RV is str: "tls:"
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: DEBUG: <core> [sr_module.c:920]: init_mod_child(): rank -127: tls
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:278]: fill_missing(): TLSs<default>: tls_method=20
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:290]: fill_missing(): TLSs<default>: certificate='/etc/kamailio/keys/sip1.crt'
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:297]: fill_missing(): TLSs<default>: ca_list='(null)'
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:304]: fill_missing(): TLSs<default>: crl='(null)'
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:308]: fill_missing(): TLSs<default>: require_certificate=0
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:315]: fill_missing(): TLSs<default>: cipher_list='(null)'
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:322]: fill_missing(): TLSs<default>: private_key='/etc/kamailio/keys/sip1.key'
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:326]: fill_missing(): TLSs<default>: verify_certificate=0
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:329]: fill_missing(): TLSs<default>: verify_depth=9
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: DEBUG: tls [tls_domain.c:968]: fix_domain(): using tls methods range: 20
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: DEBUG: tls [tls_domain.c:529]: load_ca_list(): TLSs<default>: No CA list configured
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: DEBUG: tls [tls_domain.c:566]: load_crl(): TLSs<default>: No CRL configured
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:673]: set_verification(): TLSs<default>: No client certificate required and no checks performed
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:278]: fill_missing(): TLSc<default>: tls_method=12
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:290]: fill_missing(): TLSc<default>: certificate='(null)'
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:297]: fill_missing(): TLSc<default>: ca_list='(null)'
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:304]: fill_missing(): TLSc<default>: crl='(null)'
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:308]: fill_missing(): TLSc<default>: require_certificate=0
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:315]: fill_missing(): TLSc<default>: cipher_list='(null)'
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:322]: fill_missing(): TLSc<default>: private_key='(null)'
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:326]: fill_missing(): TLSc<default>: verify_certificate=0
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:329]: fill_missing(): TLSc<default>: verify_depth=9
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: DEBUG: tls [tls_domain.c:970]: fix_domain(): using one tls method version: 12
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: DEBUG: tls [tls_domain.c:499]: load_cert(): TLSc<default>: No certificate configured
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: DEBUG: tls [tls_domain.c:529]: load_ca_list(): TLSc<default>: No CA list configured
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: DEBUG: tls [tls_domain.c:566]: load_crl(): TLSc<default>: No CRL configured
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:676]: set_verification(): TLSc<default>: Server MAY present invalid certificate
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:278]: fill_missing(): TLSs<10.1.23.23:5061>: tls_method=20
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:290]: fill_missing(): TLSs<10.1.23.23:5061>: certificate='/etc/kamailio/keys/sip2.crt'
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:297]: fill_missing(): TLSs<10.1.23.23:5061>: ca_list='(null)'
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:304]: fill_missing(): TLSs<10.1.23.23:5061>: crl='(null)'
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:308]: fill_missing(): TLSs<10.1.23.23:5061>: require_certificate=0
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:315]: fill_missing(): TLSs<10.1.23.23:5061>: cipher_list='(null)'
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:322]: fill_missing(): TLSs<10.1.23.23:5061>: private_key='/etc/kamailio/keys/sip2.key'
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:326]: fill_missing(): TLSs<10.1.23.23:5061>: verify_certificate=0
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:329]: fill_missing(): TLSs<10.1.23.23:5061>: verify_depth=9
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: DEBUG: tls [tls_domain.c:968]: fix_domain(): using tls methods range: 20
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: DEBUG: tls [tls_domain.c:529]: load_ca_list(): TLSs<10.1.23.23:5061>: No CA list configured
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: DEBUG: tls [tls_domain.c:566]: load_crl(): TLSs<10.1.23.23:5061>: No CRL configured
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:673]: set_verification(): TLSs<10.1.23.23:5061>: No client certificate required and no checks performed
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:278]: fill_missing(): TLSs<10.1.23.33:5061>: tls_method=20
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:290]: fill_missing(): TLSs<10.1.23.33:5061>: certificate='/etc/kamailio/keys/sip1.crt'
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:297]: fill_missing(): TLSs<10.1.23.33:5061>: ca_list='(null)'
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:304]: fill_missing(): TLSs<10.1.23.33:5061>: crl='(null)'
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:308]: fill_missing(): TLSs<10.1.23.33:5061>: require_certificate=0
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:315]: fill_missing(): TLSs<10.1.23.33:5061>: cipher_list='(null)'
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:322]: fill_missing(): TLSs<10.1.23.33:5061>: private_key='/etc/kamailio/keys/sip1.key'
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:326]: fill_missing(): TLSs<10.1.23.33:5061>: verify_certificate=0
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:329]: fill_missing(): TLSs<10.1.23.33:5061>: verify_depth=9
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: DEBUG: tls [tls_domain.c:968]: fix_domain(): using tls methods range: 20
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: DEBUG: tls [tls_domain.c:529]: load_ca_list(): TLSs<10.1.23.33:5061>: No CA list configured
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: DEBUG: tls [tls_domain.c:566]: load_crl(): TLSs<10.1.23.33:5061>: No CRL configured
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: INFO: tls [tls_domain.c:673]: set_verification(): TLSs<10.1.23.33:5061>: No client certificate required and no checks performed
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: DEBUG: tls [tls_domain.c:1119]: load_private_key(): TLSs<10.1.23.23:5061>: Key '/etc/kamailio/keys/sip2.key' successfuly loaded
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: DEBUG: tls [tls_domain.c:1119]: load_private_key(): TLSs<10.1.23.33:5061>: Key '/etc/kamailio/keys/sip1.key' successfuly loaded
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: DEBUG: tls [tls_domain.c:1119]: load_private_key(): TLSs<default>: Key '/etc/kamailio/keys/sip1.key' successfuly loaded
Oct 25 09:36:06 sip1 /usr/sbin/kamailio[12426]: DEBUG: tls [tls_domain.c:1079]: load_private_key(): TLSc<default>: No private key specified


More information about the sr-users mailing list