<div dir="ltr"><div class="gmail_default"><div class="gmail_default"><font face="tahoma, sans-serif">I’ve been trying to setup WSS using 2.2 latest branch. </font></div><div class="gmail_default"><br></div><div class="gmail_default"><font face="tahoma, sans-serif">When trying to open the web socket i get “ Client did not present a TLS certificate†. Im using the included default ssl certs for the server to avoid mistakes . What certificate is the user supposed to present? </font></div><div class="gmail_default"><font face="tahoma, sans-serif"><br></font></div><div class="gmail_default"><font face="tahoma, sans-serif">I tried using sip.js and jssip to connect without any luck. i also tried disabling cert requirement but didn’t work. </font></div><div style="font-family:tahoma,sans-serif"><br></div><div style="font-family:tahoma,sans-serif">—— Config ——-</div><div style="font-family:tahoma,sans-serif"><br></div><div style="font-family:tahoma,sans-serif"><span style="font-family:arial,sans-serif;font-size:13px">listen=</span><a style="color:rgb(34,34,34);font-family:arial,sans-serif;font-size:13px">wss:123.456.789.987:5060</a><br style="font-family:arial,sans-serif;font-size:13px"><span style="font-family:arial,sans-serif;font-size:13px">listen=tls:123.456.789.987:</span><span style="font-family:arial,sans-serif;font-size:13px">5061</span><br></div><div style="font-family:tahoma,sans-serif"><span style="font-family:arial,sans-serif;font-size:13px">listen=</span><a style="color:rgb(34,34,34);font-family:arial,sans-serif;font-size:13px">wss:123.456.789.987:443</a><br></div><div style="font-family:tahoma,sans-serif"><span style="font-family:arial,sans-serif;font-size:13px"><br></span></div><div><div><font face="tahoma, sans-serif">load module "proto_udp.so"</font></div><div><font face="tahoma, sans-serif">load module “proto_tls.soâ€</font></div><div><font face="tahoma, sans-serif">loadmodule "proto_wss.so"</font></div></div><div style="font-family:tahoma,sans-serif"><br></div><div><div><font face="tahoma, sans-serif">loadmodule "tls_mgm.so"</font></div><div><font face="tahoma, sans-serif">modparam("tls_mgm", "certificate", "/etc/opensips/tls/rootCA/cacert.pem")       </font></div><div><font face="tahoma, sans-serif">modparam("tls_mgm", "private_key", "/etc/opensips/tls/rootCA/private/cakey.pem")   </font></div><div><font face="tahoma, sans-serif">modparam("tls_mgm", "ca_list", "/etc/opensips/tls/rootCA/cacert.pem")         </font></div><div><font face="tahoma, sans-serif">modparam("tls_mgm", "ca_dir", "/etc/opensips/tls/rootCA/")  </font></div><div><font face="tahoma, sans-serif">modparam("tls_mgm", "require_cert", "0") </font></div><div><font face="tahoma, sans-serif">modparam(“tls_mgm", "verify_cert", "0")</font></div></div><div><font face="tahoma, sans-serif"><br></font></div><div><font face="tahoma, sans-serif"><br></font></div><div><font face="tahoma, sans-serif">——- Logs ——-</font><br></div><div><div class="gmail_default"><span style="font-family:tahoma,sans-serif">/sbin/opensips[12468]: INFO:core:probe_max_sock_buff: using snd buffer of 416 kb</span><br></div><div class="gmail_default"><font face="tahoma, sans-serif">/sbin/opensips[12468]: INFO:core:init_sock_keepalive: TCP keepalive enabled on socket 37</font></div><div class="gmail_default"><font face="tahoma, sans-serif">/sbin/opensips[12460]: INFO:proto_wss:ls_accept: New TLS connection from xx.xx.xx.xx:50815 accepted</font></div><div class="gmail_default"><font face="tahoma, sans-serif">/sbin/opensips[12460]: INFO:proto_wss:tls_accept: Client did not present a TLS certificate</font></div><div class="gmail_default"><font face="tahoma, sans-serif">/sbin/opensips[12460]: INFO:proto_wss:ls_dump_cert_info: tls_accept: local TLS server certificate subject: /CN=OpenSIPS/ST=<a href="http://opensips.org/C=IP/emailAddress=team@opensips.org/O=opensips.org" target="_blank">opensips.org/C=IP/emailAddress=team@opensips.org/O=opensips.org</a>, issuer: /CN=OpenSIPS/ST=<a href="http://opensips.org/C=IP/emailAddress=team@opensips.org/O=opensips.org" target="_blank">opensips.org/C=IP/emailAddress=team@opensips.org/O=opensips.org</a></font></div></div><div class="gmail_default"><font face="tahoma, sans-serif"><br></font></div><div class="gmail_default"><font face="tahoma, sans-serif"><br></font></div><div style="font-family:tahoma,sans-serif">Thanks ! </div><div style="font-family:tahoma,sans-serif"><br></div></div></div>