From: Jerry <je...@se...> - 2019-09-29 13:21:52
|
The old version of Fetchmail would connect and collect mail from my TWC mail account just fine. The new version is failing with this error message: fetchmail: timeout after 30 seconds waiting for server mail.twc.com. fetchmail: socket error while fetching from US...@nc...@mail.twc.com fetchmail: Query status=2 (SOCKET) I tried connecting using 'openssl' successfully. This is the start of the connection: ~ $ openssl s_client -crlf -connect mail.twc.com:993 -tls1_2 CONNECTED(00000003) depth=2 C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Global Root CA verify return:1 depth=1 C = US, O = DigiCert Inc, CN = DigiCert SHA2 Secure Server CA verify return:1 depth=0 C = US, ST = Missouri, L = Saint Louis, O = "Charter Communications Operating, LLC", CN = mail.twc.com verify return:1 --- Certificate chain 0 s:C = US, ST = Missouri, L = Saint Louis, O = "Charter Communications Operating, LLC", CN = mail.twc.com i:C = US, O = DigiCert Inc, CN = DigiCert SHA2 Secure Server CA 1 s:C = US, O = DigiCert Inc, CN = DigiCert SHA2 Secure Server CA i:C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Global Root CA 2 s:C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Global Root CA i:C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Global Root CA --- Server certificate -----BEGIN CERTIFICATE----- MIILrjCCCpagAwIBAgIQBX5GbbeS0b4Jl8aBoPm6nzANBgkqhkiG9w0BAQsFADBN MQswCQYDVQQGEwJVUzEVMBMGA1UEChMMRGlnaUNlcnQgSW5jMScwJQYDVQQDEx5E aWdpQ2VydCBTSEEyIFNlY3VyZSBTZXJ2ZXIgQ0EwHhcNMTgxMDI5MDAwMDAwWhcN MTkxMDMwMTIwMDAwWjB9MQswCQYDVQQGEwJVUzERMA8GA1UECBMITWlzc291cmkx FDASBgNVBAcTC1NhaW50IExvdWlzMS4wLAYDVQQKEyVDaGFydGVyIENvbW11bmlj YXRpb25zIE9wZXJhdGluZywgTExDMRUwEwYDVQQDEwxtYWlsLnR3Yy5jb20wggEi MA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDRwExBKr1OgSZm6fK8X1SUuVv4 oNWv1/87WJnVJ53buSM9Lf//SzY5AdozEweIw30lFJwppta6NiAWBeqejtfIyBbY bJObVVqqNQqb/XvnMZQBzmTaHsHQX+yQRoDuqEHc0SGef9YjL+hpPJtO1O6cCFv8 cHr/aK2ilek1coK7Xm7y9gc5yuulZvVeJssS9cFtlu6L+E+IqmG6MO+5b4pZAMjb 9sS0iIeL70iq7VdF87ac7kJ7rdX8eXdJeSRMgrZON9PKb80A8hGZO6fXLxnLYE++ a4hawgAINHCMDHNHC4cEz1sto2ufcJ5hjrXfl+rQ63PLVZ0o0Cx9nFgqYI+3AgMB AAGjgghYMIIIVDAfBgNVHSMEGDAWgBQPgGEcgjFh1S8o541GOLQs4cbZ4jAdBgNV HQ4EFgQU6ZyH6xz4IMfjZfODJfA0NKbFtv8wggWTBgNVHREEggWKMIIFhoIRaW1h cC5tYWlsLnR3Yy5jb22CF3BvcC1zZXJ2ZXIubWFpbC50d2MuY29tghV3ZWJtYWls LmF1c3Rpbi5yci5jb22CEndlYm1haWwuYmFrLnJyLmNvbYIYd2VibWFpbC5iZXJr c2hpcmUucnIuY29tghN3ZWJtYWlsLmJoYW0ucnIuY29tghF3ZWJtYWlsLmNhLnJy LmNvbYIXd2VibWFpbC5jYXJvbGluYS5yci5jb22CEndlYm1haWwuY2ZsLnJyLmNv bYIUd2VibWFpbC5jaW5jaS5yci5jb22CF3dlYm1haWwuY29sdW1idXMucnIuY29t ghF3ZWJtYWlsLmRjLnJyLmNvbYIRd2VibWFpbC5lYy5yci5jb22CFXdlYm1haWwu ZWxtb3JlLnJyLmNvbYISd2VibWFpbC5lbHAucnIuY29tghZ3ZWJtYWlsLmV1ZmF1 bGEucnIuY29tghF3ZWJtYWlsLmd0LnJyLmNvbYIVd2VibWFpbC5oYXdhaWkucnIu Y29tghJ3ZWJtYWlsLmhvdC5yci5jb22CEndlYm1haWwuaHZjLnJyLmNvbYITd2Vi bWFpbC5pbmR5LnJyLmNvbYIWd2VibWFpbC5pbnNpZ2h0LnJyLmNvbYIRd2VibWFp bC5rYy5yci5jb22CEXdlYm1haWwubWEucnIuY29tghN3ZWJtYWlsLm1haWwucnIu Y29tghR3ZWJtYWlsLm1haW5lLnJyLmNvbYITd2VibWFpbC5tYXNzLnJyLmNvbYIY d2VibWFpbC5tZXNzYWdpbmcucnIuY29tghF3ZWJtYWlsLm1pLnJyLmNvbYIRd2Vi bWFpbC5uYy5yci5jb22CEXdlYm1haWwubmUucnIuY29tghJ3ZWJtYWlsLm5lYi5y ci5jb22CEndlYm1haWwubmVvLnJyLmNvbYISd2VibWFpbC5uZXcucnIuY29tghF3 ZWJtYWlsLm5qLnJyLmNvbYISd2VibWFpbC5ueWMucnIuY29tghR3ZWJtYWlsLm55 Y2FwLnJyLmNvbYIRd2VibWFpbC5vaC5yci5jb22CEXdlYm1haWwucGEucnIuY29t ghh3ZWJtYWlsLnBhbmhhbmRsZS5yci5jb22CEndlYm1haWwucmd2LnJyLmNvbYIW d2VibWFpbC5yb2FkcnVubmVyLmNvbYIYd2VibWFpbC5yb2NoZXN0ZXIucnIuY29t ghJ3ZWJtYWlsLnNhbi5yci5jb22CE3dlYm1haWwuc2F0eC5yci5jb22CEXdlYm1h aWwuc2MucnIuY29tghV3ZWJtYWlsLnNoYWRvdy5yci5jb22CEXdlYm1haWwuc2ku cnIuY29tghR3ZWJtYWlsLnNvY2FsLnJyLmNvbYITd2VibWFpbC5zdG55LnJyLmNv bYISd2VibWFpbC5zdHgucnIuY29tghF3ZWJtYWlsLnN3LnJyLmNvbYIXd2VibWFp bC50YW1wYWJheS5yci5jb22CFHdlYm1haWwudHJpYWQucnIuY29tgg93ZWJtYWls LnR3Yy5jb22CF3dlYm1haWwuYnJpZ2h0aG91c2UuY29tghR3ZWJtYWlsLnR3Y255 LnJyLmNvbYITd2VibWFpbC50d21pLnJyLmNvbYIRd2VibWFpbC50eC5yci5jb22C EXdlYm1haWwud2UucnIuY29tghF3ZWJtYWlsLndpLnJyLmNvbYISd2VibWFpbC53 b2gucnIuY29tggh0d2NjLmNvbYIMd3d3LnR3Y2MuY29tggpiaG4ucnIuY29tgg9z ZWFyY2gudHdjYy5jb22CDXNlYXJjaC5yci5jb22CFG1haWwuYnJpZ2h0aG91c2Uu Y29tggxtYWlsLnR3Yy5jb20wDgYDVR0PAQH/BAQDAgWgMB0GA1UdJQQWMBQGCCsG AQUFBwMBBggrBgEFBQcDAjBrBgNVHR8EZDBiMC+gLaArhilodHRwOi8vY3JsMy5k aWdpY2VydC5jb20vc3NjYS1zaGEyLWc2LmNybDAvoC2gK4YpaHR0cDovL2NybDQu ZGlnaWNlcnQuY29tL3NzY2Etc2hhMi1nNi5jcmwwTAYDVR0gBEUwQzA3BglghkgB hv1sAQEwKjAoBggrBgEFBQcCARYcaHR0cHM6Ly93d3cuZGlnaWNlcnQuY29tL0NQ UzAIBgZngQwBAgIwfAYIKwYBBQUHAQEEcDBuMCQGCCsGAQUFBzABhhhodHRwOi8v b2NzcC5kaWdpY2VydC5jb20wRgYIKwYBBQUHMAKGOmh0dHA6Ly9jYWNlcnRzLmRp Z2ljZXJ0LmNvbS9EaWdpQ2VydFNIQTJTZWN1cmVTZXJ2ZXJDQS5jcnQwCQYDVR0T BAIwADCCAQYGCisGAQQB1nkCBAIEgfcEgfQA8gB3AKS5CZC0GFgUh7sTosxncAo8 NZgE+RvfuON3zQ7IDdwQAAABZr+xp/0AAAQDAEgwRgIhAMh91U6tmk+jJ/nq3p/6 p8855p2UpjMqPySXK8BxWwfqAiEAsTlfZiB4OPrK+6Unul0T2I3dr1UfFHjuNa0j 4TggA/sAdwCHdb/nWXz4jEOZX73zbv9WjUdWNv9KtWDBtOr/XqCDDwAAAWa/sai9 AAAEAwBIMEYCIQCr4S0AIma5CsgDvIn5yqkKjRGu3OSJdo4f0KL3sCe1kAIhALGN 85NOr5y8vwir42dzEIQglVkS3T+MPVj//CNcLVH+MA0GCSqGSIb3DQEBCwUAA4IB AQBwW8iznCxFKOMx+cdH93F2U9k4YYhqbeBoXzu53VXSKrSdHh4ZSpWAHx/WIRR+ VcLb8U9H/rAuCHopbV90Ok0Ir/9itbU6uwsfFSfYN9Xmb7uEcjPUQ8clks9lfrk7 k6gx28Yv+l/QjCVaY/eYXKpGy41DMGPNnIrIPSSzJ7n5JxSbm3PZ22K9njsGCTsH 2M9TSSDNZXVcjIGEFrJY14mddNOBAxI+yhNKPJ8miZBe52TFbZcy5CULr2B7hkNe qNoVDn9dVtLx5/B0XZ48j2wucGVbxn1Cw3sE7HPB4wh2Dou0UL44/tA14xEd76QY oyKNkf7NqgEOKyC66VTxUFMX -----END CERTIFICATE----- subject=C = US, ST = Missouri, L = Saint Louis, O = "Charter Communications Operating, LLC", CN = mail.twc.com issuer=C = US, O = DigiCert Inc, CN = DigiCert SHA2 Secure Server CA --- No client certificate CA names sent --- SSL handshake has read 5447 bytes and written 533 bytes Verification: OK --- New, TLSv1.2, Cipher is AES256-GCM-SHA384 Server public key is 2048 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : AES256-GCM-SHA384 Session-ID: 49970E5A87E7B161EFDC9723E2FCB7ACB1FA12D10C7C460BAA09E7FDCDB33A86 Session-ID-ctx: Master-Key: 2E67C0F1B6DD033D09DAE9C6E36C360C49CF7C42A62E52C762526ED7DD1A78DE88851795DA82A744496E18E70A5B6625 PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 300 (seconds) TLS session ticket: 0000 - 87 4e 5a e4 98 60 4f 78-38 38 75 08 3a ea 0e 70 .NZ..`Ox88u.:..p 0010 - 1d 04 69 98 08 65 33 9e-10 74 58 3a 42 74 e8 16 ..i..e3..tX:Bt.. 0020 - 18 e6 9c 88 2b 00 7e a2-e0 93 9d bf 82 a6 54 a6 ....+.~.......T. 0030 - 8a 6f 3e a7 19 68 bd 93-aa e7 0d 2a 61 6c 05 cb .o>..h.....*al.. 0040 - b6 65 0a e4 03 78 95 17-11 db dd 9a d6 b8 ea 73 .e...x.........s 0050 - 31 a5 63 14 d4 d4 0a 4f-28 4f 7c 76 35 e7 17 a9 1.c....O(O|v5... 0060 - 84 a8 2e 43 c2 bf f0 ff-85 79 a3 76 f8 5e c8 f3 ...C.....y.v.^.. 0070 - af e7 04 f5 b7 d4 1f b3-e4 46 4a 30 8d 72 6a 16 .........FJ0.rj. 0080 - db 7d 9b 45 87 db e3 8a-17 55 6d c1 35 70 b7 74 .}.E.....Um.5p.t 0090 - f7 35 a0 dc 9a 4d 90 77-50 e2 98 c5 61 75 bc 7a .5...M.wP...au.z 00a0 - d9 e8 89 c9 ad 42 f9 97-48 80 ff 28 c1 a1 15 44 .....B..H..(...D Start Time: 1569760454 Timeout : 7200 (sec) Verify return code: 0 (ok) Extended master secret: no --- * OK IMAP4 server (InterMail vM.8.04.03.24.04 201-2389-100-175-1-20180501) ready Sun, 29 Sep 2019 12:34:14 +0000 (UTC) I had no settings for SSL or sslproto in the older fetchmail config file. I added this: ssl sslproto auto I still cannot make a connection. I then changed it to this: ssl sslproto tlsv1.2 Apparently, the sslproto 'auto' setting is not working. Perhaps it is a bug or else I am doing something wrong. -- Jerry |