Попробовал подключиться с айпада, в качестве клиента, где не установлен сертификат. Логи с клиента:
2015.02.19 19:12:45 LOG5[12691:78299136]: stunnel 4.18 on arm-apple-darwin
2015.02.19 19:12:45 LOG5[12691:78299136]: Threading:PTHREAD Sockets:SELECT,IPv6
2015.02.19 19:12:45 LOG6[12691:78299136]: file ulimit = 2560 (can be changed with 'ulimit -n')
2015.02.19 19:12:45 LOG6[12691:78299136]: FD_SETSIZE = 1024 (some systems allow to increase this value)
2015.02.19 19:12:45 LOG5[12691:78299136]: 0 clients allowed
2015.02.19 19:12:45 LOG7[12691:78299136]: FD 18 in non-blocking mode
2015.02.19 19:12:45 LOG7[12691:78299136]: FD 20 in non-blocking mode
2015.02.19 19:12:45 LOG7[12691:78299136]: FD 21 in non-blocking mode
2015.02.19 19:12:45 LOG7[12691:78299136]: SO_REUSEADDR option set on accept socket
2015.02.19 19:12:45 LOG7[12691:78299136]: test bound to 127.0.0.1:8080
2015.02.19 19:12:45 LOG7[12691:78299136]: Created pid file /var/mobile/Containers/Data/Application/5F400F22-44EB-4C82-AB91-EF55C400C0CB/Documents/stunnel.pid
2015.02.19 19:12:45 LOG7[12691:78299136]: test accepted FD=25 from 127.0.0.1:53241
2015.02.19 19:12:45 LOG7[12691:108371968]: client start
2015.02.19 19:12:45 LOG7[12691:108371968]: test started
2015.02.19 19:12:45 LOG7[12691:108371968]: FD 25 in non-blocking mode
2015.02.19 19:12:45 LOG7[12691:108371968]: TCP_NODELAY option set on local socket
2015.02.19 19:12:45 LOG5[12691:108371968]: test connected from 127.0.0.1:53241
2015.02.19 19:12:45 LOG7[12691:108371968]: FD 33 in non-blocking mode
2015.02.19 19:12:45 LOG7[12691:108371968]: test connecting
2015.02.19 19:12:45 LOG7[12691:108371968]: connect_wait: waiting 10 seconds
2015.02.19 19:12:45 LOG7[12691:108371968]: connect_wait: connected
2015.02.19 19:12:45 LOG7[12691:108371968]: Remote FD=33 initialized
2015.02.19 19:12:45 LOG7[12691:108371968]: TCP_NODELAY option set on remote socket
2015.02.19 19:12:45 LOG7[12691:108371968]: start SSPI connect
2015.02.19 19:12:45 LOG3[12691:108371968]: Credentials complete
2015.02.19 19:12:45 LOG7[12691:108371968]: 90 bytes of handshake data sent
2015.02.19 19:12:45 LOG5[12691:108371968]: 1012 bytes of handshake(in handshake loop) data received.
2015.02.19 19:12:45 LOG5[12691:108371968]: 210 bytes of handshake data sent
2015.02.19 19:12:45 LOG5[12691:108371968]: 31 bytes of handshake(in handshake loop) data received.
2015.02.19 19:12:45 LOG5[12691:108371968]: Handshake was successful
2015.02.19 19:12:45 LOG5[12691:108371968]: PerformClientHandshake finish
2015.02.19 19:12:45 LOG5[12691:108371968]: Server subject: C=WE, S=we, L=we, O=w, OU=we, CN=wf, E=wer
2015.02.19 19:12:45 LOG5[12691:108371968]: Server issuer: E=support@cryptopro.ru, C=RU, L=Moscow, O=CRYPTO-PRO LLC, CN=CRYPTO-PRO Test Center 2
2015.02.19 19:12:47 LOG3[12691:108371968]: Error 0x20 ((unknown)) returned by CertVerifyCertificateChainPolicy!
2015.02.19 19:12:47 LOG3[12691:108371968]: Error 0x20 when validate certificate
2015.02.19 19:12:47 LOG3[12691:108371968]: Error 0x80092004 returned by VeryfySertChain
2015.02.19 19:12:47 LOG3[12691:108371968]: **** Error 0x80092004 authenticating server credentials!
2015.02.19 19:12:47 LOG5[12691:108371968]: Connection reset: 0 bytes sent to SSL, 0 bytes sent to socket
2015.02.19 19:12:47 LOG7[12691:108371968]: free Buffers
2015.02.19 19:12:47 LOG7[12691:108371968]: delete c->hContext
2015.02.19 19:12:47 LOG7[12691:108371968]: delete c->hClientCreds
2015.02.19 19:12:47 LOG5[12691:108371968]: incomp_mess = 0, extra_data = 0
2015.02.19 19:12:47 LOG7[12691:108371968]: test finished (0 left)
Возможно, дело в сертификате на сервере. Но он установлен, как вы и рекомендовали, в хранилище лок. компьютера.
Отредактировано пользователем 19 февраля 2015 г. 19:22:42(UTC)
| Причина: Не указана