iCal server using SSL on Port 8443

Hi,

Just installed Leopard iCal server, which is not working properly when SSL is enabled. It gives error "Unexpected secure name resolution error -9844. The server name abc.com may be incorrect'' .

SSL is enabled on default port 8443. Without SSL it works fine, users can subscribe, add, update and delete events. Am I the only one facing this?

Thanks,

mazhar

Mac OS X (10.5)

Posted on Nov 12, 2007 11:53 AM

Reply
23 replies

Nov 23, 2007 11:46 AM in response to Mike Nowak

I can report the same issues:
- same error code "Unexpected secure name resolution error (code -9844). The server name xx.xxx.xxx may be incorrect."

I am using a real GoDaddy.com SSL certificate that works fine with web, wiki and iChat. It does not seem to work with iCal, when I select my good SSL certificate from the drop down list the GUI reverts instantly to "custom configuration". Even going into the custom configuration and manually configuring the fields does not result in a working secured-via-SSL server.

There are errors in the caldv server log like:
"2007-11-23 14:42:42-0500 [-] [pydir] 23/11/2007 14:42:42 marking host ('127.0.0.1', 8445) down ([Failure instance: Traceback (failure with no frames): <class 'twisted.internet.error.ConnectionRefusedError'>: Connection was refused by other side: 61: Connection refused.
2007-11-23 14:42:42-0500 [-] [pydir] ])
2007-11-23 14:42:42-0500 [-] [pydir] 23/11/2007 14:42:42 no working servers, manager -> aggressive
2007-11-23 14:42:51-0500 [-] [pydir] 23/11/2007 14:42:51 re-adding ('127.0.0.1', 8444) automatically
2007-11-23 14:42:51-0500 [-] [pydir] 23/11/2007 14:42:51 re-adding ('127.0.0.1', 8445) automatically"

I've seen some indications on other boards that this may be a problem with using Fully qualified domain names. Some workarounds seem to consist of using the iCal server with short or bonjour names. This can't work for me as I want to run this system as a small, secured internet-connected workgroup server.

Nov 23, 2007 11:54 AM in response to chrisdag

Following up on my own post ...

A google search on the error message led me to this page:
http://www.macosxhints.com/article.php?story=20050816004257876

The article suggest pointing Safari at the calDV SSL URL and verifying that it is actually a SSL cert issue. Using Safari you can add the trusted cert to your personal keychain and it should work.

This seems to work if I switch iCal server to using a default self-signed certificate but I still can't successfully switch the server over to using the 'blessed' Godaddy.com SSL certificate. I still have the problem with iCal ServerADmin switching instantly to "custom configuration" rather than letting me select the Godaddy signed SSL certificate from the pulldown menu.

Anyway, those using self-signed certs may have success with that URL listed above.

Dec 6, 2007 12:51 PM in response to Maximilian Reiss

I really appreciate your help! The file came through our University but they got it from Comodo. They sent me a .cert file in response to a csr file that I generated with Server Admin and I just imported that back in using Server Admin.

In /etc/certificates I now have files with the DQN for my server with the following extensions: .chcrt, .crt, .crtkey, .csr and .key.

I did not receive a .pfx file.

This thread has been closed by the system or the community team. You may vote for any posts you find helpful, or search the Community for additional answers.

iCal server using SSL on Port 8443

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.