Reply
Thread Tools
Posts: 225 | Thanked: 64 times | Joined on Feb 2010
#1
A mail server I have to interact with can be found at https://mail.g-t-p.com
If I go there in any browser (like IE) i get a warning. I exported the certificate from IE to all supported formats and copied them to my N900 and opened them in file manager
I also opened the site in MicroB, got Details on it, clicked certificate

In all cases the result was the same. A popover window giving me certificate details but NO option to install it

As such, I'm really struggling getting MfE to work


What to do? Can the N900 be made to install that cert, or must I insist that a proper one is provided, signed by a root auth?
 
Posts: 642 | Thanked: 486 times | Joined on Aug 2008
#2
click on 'Or you can add an exception'
 
Posts: 3,617 | Thanked: 2,412 times | Joined on Nov 2009 @ Cambridge, UK
#3
Originally Posted by cjard View Post
What to do? Can the N900 be made to install that cert, or must I insist that a proper one is provided, signed by a root auth?
The N900 certificate store used by MfE will only import CA certificates (these can be self-signed but require the CA flag set), so that one won't work.
 
Posts: 3 | Thanked: 0 times | Joined on Apr 2010
#4
Hi all,

I have some question which might go into same direction.

My configuration: Nokia N900 with Maemo 5 Version 3.2010.02-08.

My company has an exchange server which is available via

https://217.140.83.118/exchange (this is some link to physical server I guess).

Certificate there (you aswell should be able to download & install on PC & browser) cannot be stored in certificate manager as of N900.

For installing it, I tried several things (saving as *der, *cer, crt, *pem,...) nothing worked... I already checked with xterm in /etc/certs.... but not 100% familiar and left my hands off there ;-)

I also uploaded certificate to N900, opened with file manager but no "INSTALL" option there.

With N900 I always tried to set up mail functionality via settings ==> Mail for exchange.

I gave my correct email-adress, username, password & domain..
on next setup screen I gave 217.140.83.118/exchange in field server and checked secure connection which automatically sets port 443.

When I then click on next I get error message "Exchange server requires secure connection or account is disabled".

Now my questions:
Could certificate of server be wrong (self signed, not valid for URL mentioned above) ? What should I tell administrators of my company to do in detail with certificate if it is wrong. ?

If I need to do some symlinking with xterm (in case certificate is fine), how should that look like ? Please if possible give some detailed advice with proper example like:

ln .-s <source> <target>...


Thanks in advance for help & kind regards,
Oliver Meinecke
 
Venemo's Avatar
Posts: 1,296 | Thanked: 1,773 times | Joined on Aug 2009 @ Budapest, Hungary
#5
There is a package in the app manager called microb-engine-common-ext which provides a certificate manager for MicroB. When importing a certificate, there are options for using it for email and other software.
 
Posts: 3 | Thanked: 0 times | Joined on Apr 2010
#6
Originally Posted by Venemo View Post
There is a package in the app manager called microb-engine-common-ext which provides a certificate manager for MicroB. When importing a certificate, there are options for using it for email and other software.

I guess you mean microsoft app manager on exchange server ? on app manager N900 I cannot find that program
 
Posts: 3,617 | Thanked: 2,412 times | Joined on Nov 2009 @ Cambridge, UK
#7
Originally Posted by tc_sap View Post
Could certificate of server be wrong (self signed, not valid for URL mentioned above) ? What should I tell administrators of my company to do in detail with certificate if it is wrong. ?
It's not a CA certificate, so the N900 cannot import it. They'll either need to create a new self-signed certificate with the CA flag set, or use a certificate signed by another CA.
 
Posts: 3 | Thanked: 0 times | Joined on Apr 2010
#8
Originally Posted by Rob1n View Post
It's not a CA certificate, so the N900 cannot import it. They'll either need to create a new self-signed certificate with the CA flag set, or use a certificate signed by another CA.
Ok, I will tell them and come back with feedback if it has worked.
 
Reply


 
Forum Jump


All times are GMT. The time now is 07:11.