Thank you Michael, Patrick, Eckard!

Problem solved, case closed. ;-)

Apparently, the problem lies in the (and script that ships
default with open-ssl, at least on Slackware, and which generated the
faulty certificates.

Yeak Nai Siew's scripts worked like charm!

Thanks again!

> Patrick Patterson schrieb:
>> If you re-gen your CA Certificate with those usages, and then re-sign
>> your
>> Server certificate (which itself, should have the Key Usage extension
>> set to
>> digital Signature and key Encipherment), your issue should go away

> There is also nice bundle of scripts from Yeak Nai Siew which
> simplifies these steps a lot; especially for quick setups a nice
> speedup: see

