[MDEV-17488]  ftps://ftp.mariadb.com server certificate expired Created: 2018-10-18  Updated: 2020-06-23  Resolved: 2020-06-23

Status: Closed
Project: MariaDB Server
Component/s: OTHER
Fix Version/s: N/A

Type: Task Priority: Trivial
Reporter: Daniel Black Assignee: Bryan Alsdorf
Resolution: Fixed Votes: 0
Labels: None

Issue Links:
Relates
relates to MDEV-17495 mariadb.org wildcard certificate expired Closed

 Description   

* * Server certificate:
*  subject: OU=GT22528566; OU=See www.rapidssl.com/resources/cps (c)15; OU=Domain Control Validated - RapidSSL(R); CN=*.mariadb.com
*  start date: Oct 18 14:19:34 2015 GMT
*  expire date: Dec 18 17:32:49 2017 GMT
*  issuer: C=US; O=GeoTrust Inc.; CN=RapidSSL SHA256 CA - G3
*  SSL certificate verify result: certificate has expired (10), continuing anyway.



 Comments   
Comment by Daniel Black [ 2018-11-28 ]

Copying the TLS certificate from jira.mariadb.org would be sufficient until 19 October 2019

Comment by Bryan Alsdorf [ 2019-01-03 ]

Updated. Thanks

Comment by Daniel Black [ 2019-01-06 ]

Didn't seem to have an effect:

$ openssl s_client -connect ftp.mariadb.com:990 -showcerts
CONNECTED(00000004)
depth=2 C = US, O = GeoTrust Inc., CN = GeoTrust Global CA
verify return:1
depth=1 C = US, O = GeoTrust Inc., CN = RapidSSL SHA256 CA - G3
verify return:1
depth=0 OU = GT22528566, OU = See www.rapidssl.com/resources/cps (c)15, OU = Domain Control Validated - RapidSSL(R), CN = *.mariadb.com
verify error:num=10:certificate has expired
notAfter=Dec 18 17:32:49 2017 GMT
verify return:1
depth=0 OU = GT22528566, OU = See www.rapidssl.com/resources/cps (c)15, OU = Domain Control Validated - RapidSSL(R), CN = *.mariadb.com
notAfter=Dec 18 17:32:49 2017 GMT
verify return:1
---

Comment by Daniel Black [ 2020-05-08 ]

forgive the lazy reopen but saves me copying a bug:

  • TLSv1.3 (OUT), TLS handshake, Client hello (1):
    } [512 bytes data]
  • TLSv1.3 (IN), TLS handshake, Server hello (2):
    { [81 bytes data]
  • TLSv1.0 (IN), TLS handshake, Finished (20): { [16 bytes data] * TLSv1.0 (OUT), TLS change cipher, Change cipher spec (1): }

    [1 bytes data]

  • TLSv1.0 (OUT), TLS handshake, Finished (20):
    } [16 bytes data]
  • SSL connection using TLSv1.0 / AES256-SHA
  • Server certificate:
  • subject: OU=Domain Control Validated; CN=*.mariadb.com
  • start date: Aug 20 18:47:09 2018 GMT
  • expire date: Dec 12 17:27:03 2019 GMT

Expired again.

Generated at Thu Feb 08 08:36:50 UTC 2024 using Jira 8.20.16#820016-sha1:9d11dbea5f4be3d4cc21f03a88dd11d8c8687422.