<html>
<head>
<meta http-equiv="content-type" content="text/html; charset=utf-8">
</head>
<body bgcolor="#FFFFFF" text="#000000">
<font face="Helvetica, Arial, sans-serif">Hello<br>
<br>
<br>
I keep getting the following error when trying to connect to the
Asterisk server using AMI :<br>
<br>
$socket = fsockopen("tls://11.22.33.44","5039", $errno, $errstr,
5);<br>
<br>
Erorr on CLI :<br>
<br>
[Oct 26 14:38:19] ERROR[2992]: tcptls.c:609
handle_tcptls_connection: Problem setting up ssl connection:
error:14094418:SSL routines:SSL3_READ_BYTES:tlsv1 alert unknown ca<br>
[Oct 26 14:38:19] WARNING[2992]: tcptls.c:684
handle_tcptls_connection: FILE * open failed!<br>
<br>
I have in sip.conf :<br>
<br>
tlsenable=yes<br>
tlsbindaddr=0.0.0.0<br>
<br>
tlscertfile=/etc/asterisk/keys/asterisk.pem<br>
tlsdontverifyserver=yes<br>
tlscipher=ALL<br>
;tlsclientmethod=tlsv2<br>
<br>
/etc/asterisk/keys :<br>
<br>
-rw------- 1 root root 1,2K okt 26 14:25 asterisk.crt<br>
-rw------- 1 root root 574 okt 26 14:24 asterisk.csr<br>
-rw------- 1 root root 887 okt 26 14:24 asterisk.key<br>
-rw------- 1 root root 2,1K okt 26 14:25 asterisk.pem<br>
-rw------- 1 root root 160 okt 26 14:24 ca.cfg<br>
-rw------- 1 root root 1,8K okt 26 14:24 ca.crt<br>
-rw------- 1 root root 3,3K okt 26 14:24 ca.key<br>
-rw------- 1 root root 123 okt 26 14:24 tmp.cfg<br>
<br>
<br>
The webserver ( A ) from where I open the socket to
tls://11.22.33.44 also has a self-signed certificate.<br>
<br>
This problem started when creating a new self-signed cert on
webserver A.<br>
<br>
<br>
<br>
<br>
Any thoughts ?<br>
<br>
<br>
Thanks !<br>
<br>
<br>
Kind regards.<br>
<br>
<br>
J.<br>
</font>
</body>
</html>