Post A3o7KLI1QoP055lGCW by thumb@fosstodon.org
 (DIR) More posts by thumb@fosstodon.org
 (DIR) Post #A3o0GO4iQyv9slhjBA by kelbot@fosstodon.org
       2021-01-31T18:57:54Z
       
       0 likes, 1 repeats
       
       Do any of my #gemini loving followers have any tips for figuring out why my site is getting a Handshake failure on some clients but working fine on others?
       
 (DIR) Post #A3o1GoxSaGCJDF55nc by FiXato@toot.cat
       2021-01-31T19:09:11Z
       
       0 likes, 0 repeats
       
       @kelbot maybe these results from #GeminiDiagnostics are helpful: https://asciinema.org/a/yInZfWQIRoSVWKwTRp8988J7TYou can find the #Gemini #diagnostics tool at https://github.com/michael-lazar/gemini-diagnostics
       
 (DIR) Post #A3o1m8epOLCDHpIdNI by schwurbel@nerdculture.de
       2021-01-31T19:14:45Z
       
       0 likes, 0 repeats
       
       @kelbot Hey, Spacewalk quits with the following error:"Error updating capsule "kelbots gemlog": TLS Dial Error: tls: server's certificate contains an unsupported type of public key: <nil>"
       
 (DIR) Post #A3o22y57xuxvPQcrfk by tomasino@tilde.zone
       2021-01-31T19:17:45Z
       
       0 likes, 0 repeats
       
       @kelbot TLS versioning?
       
 (DIR) Post #A3o4P8JIoemnPax8t6 by rudolf@fosstodon.org
       2021-01-31T19:36:50Z
       
       0 likes, 0 repeats
       
       @tomasino @kelbot Using Ariane 2.3.4 on Android 10, I get Server Error: Handshake failed.And please add the link to your site if you do a new toot. I had to search for the old toot.
       
 (DIR) Post #A3o4P8ipHlCcgktWfg by kelbot@fosstodon.org
       2021-01-31T19:44:16Z
       
       0 likes, 0 repeats
       
       @rudolf @tomasino Yeah, I'm looking into what the deal is with the errors. I'm using satellite for the server and it handles the certs itself. When I look in the directory it puts them I can see that they are there. Amfora and bollux have no problem loading it without errors. Not sure what else to do other than try using a different server than satellite.
       
 (DIR) Post #A3o584YBds5ImXLMsi by rudolf@fosstodon.org
       2021-01-31T19:47:45Z
       
       0 likes, 0 repeats
       
       @tomasino @kelbot Enter gemini.cyberbot.space here and you get even more bad news :)https://www.immuniweb.com/ssl/
       
 (DIR) Post #A3o5852foWTGJ5biOu by kelbot@fosstodon.org
       2021-01-31T19:52:27Z
       
       0 likes, 0 repeats
       
       @rudolf @tomasino I have other services on a different server using letsencrypt certs. Maybe that's the problem?
       
 (DIR) Post #A3o5W14QETdWwFq49o by rudolf@fosstodon.org
       2021-01-31T19:56:50Z
       
       0 likes, 0 repeats
       
       @kelbot @tomasino Both sites say your certs are wrong. I assume you need correct ones.
       
 (DIR) Post #A3o5vImvUlJt83iEa0 by kelbot@fosstodon.org
       2021-01-31T20:01:22Z
       
       0 likes, 0 repeats
       
       @rudolf @tomasino What do you mean by wrong? I don't think anything is wrong with my certs on my main server. It letsencrypt certs managed by yunohost and everything works fine. It is only gemini that is having an issue and satellite the gemini server is managing that cert.
       
 (DIR) Post #A3o7KLI1QoP055lGCW by thumb@fosstodon.org
       2021-01-31T20:16:53Z
       
       0 likes, 0 repeats
       
       @kelbot Been there. Done that. I also use Satellite. I moved to Stargazer and generated the certificates and most of the clients started responding fine. Switched back to Satellite and generated the certificate again. And voila... everything fell back in place. TL;DR. Delete the certificate and let Satellite create a new one.
       
 (DIR) Post #A3o9odnfNHfG5O8bcO by kelbot@fosstodon.org
       2021-01-31T20:44:54Z
       
       0 likes, 0 repeats
       
       @thumb Interesting. I have already forced satellite to generate a new cert but it doesn't seem to be helping. I'm still confused why Amfora and bollux are perfectly happy to load it as if nothing is wrong while Ariane and deedum give a handshake error.I guess I will try different servers and see if any of them work better. Tried gmnisrv but "make" fails.
       
 (DIR) Post #A3oAc7s0Mc5RXHlOKG by thumb@fosstodon.org
       2021-01-31T20:53:55Z
       
       0 likes, 0 repeats
       
       @kelbot I wrote about this issue in December. Nobody had any clue what’s happening. https://simbly.me/2020/12/27/Gemini-update/. Even I don’t 😅. I just know recreating the certificates worked.