irssi on freenode with SSL verification

January 30th, 2010 by

Those of you who frequent openSUSE’s support channels on freenode might be interested to know that with the ircd SSL encryption in now available. However some users had problems verifying the SSL certificate on connection when using irssi. Here is an example working server configuration section for your ~/.irssi/config:

address = "chat.freenode.net";
chatnet = "freenode";
port = "7000";
use_ssl = "yes";
ssl_verify = "yes";
ssl_capath = "/etc/ssl/certs";

3 Responses to “irssi on freenode with SSL verification”

  1. For weechat, assuming your freenode server is called “freenode”:-

    # Enable SSL
    /set irc.server.freenode.ssl on

    # The default of 2048 is too high for freenode
    /set irc.server.freenode.ssl_dhkey_size 1024

    # Enable certificate verification
    /set irc.server.freenode.ssl_verify on

    # Set the server address
    /set irc.server.freenode.addresses chat.freenode.net/7000

    # Specify the certificate store
    /set weechat.network.gnutls_ca_file /etc/ssl/cert

  2. Ludwig Nussel

    I think irssi should be patched to have ssl_verify = “yes” and ssl_capath = “/etc/ssl/certs” by default.

  3. Ludwig Nussel

    upon closer look … http://bugs.irssi.org/index.php?do=details&task_id=670#comment1138