mod_ssl-2.8.10, apache-1.3.26 a self-signed certifikat

Fox!MURDER fox na murder.cz
Sobota Srpen 31 22:40:08 CEST 2002


Zdravim,
mam takovejhle krasnej problem. Pouzivam mod_ssl-2.8.10 na apachi-1.3.26,
OpenSSL 0.9.6e a funguje mi jen a pouze TLSv1 a SSLv2. Ale nejsem schopny
rozbehnout SSLv3.
V logu mam tohle:
[31/Aug/2002 20:51:52 39953] [info]  Seeding PRNG with 1160 bytes of entropy
[31/Aug/2002 20:51:52 39953] [trace] OpenSSL: Handshake: start
[31/Aug/2002 20:51:52 39953] [trace] OpenSSL: Loop: before/accept
initialization
[31/Aug/2002 20:51:52 39953] [trace] OpenSSL: Loop: SSLv3 read client hello
A
[31/Aug/2002 20:51:52 39953] [trace] OpenSSL: Loop: SSLv3 write server hello
A
[31/Aug/2002 20:51:52 39953] [trace] OpenSSL: Loop: SSLv3 write certificate
A
[31/Aug/2002 20:51:52 39953] [trace] OpenSSL: Loop: SSLv3 write server done
A
[31/Aug/2002 20:51:52 39953] [trace] OpenSSL: Loop: SSLv3 flush data
[31/Aug/2002 20:52:00 39953] [trace] OpenSSL: Loop: SSLv3 read client key
exchange A
[31/Aug/2002 20:52:00 39953] [trace] OpenSSL: Write: SSLv3 read certificate
verify A
[31/Aug/2002 20:52:00 39953] [trace] OpenSSL: Exit: error in SSLv3 read
certificate verify A
[31/Aug/2002 20:52:00 39953] [trace] OpenSSL: Exit: error in SSLv3 read
certificate verify A
[31/Aug/2002 20:52:00 39953] [error] SSL handshake failed (server
secure.spaceweb.cz:443, client 62.24.70.125) (OpenSSL library error follows)
[31/Aug/2002 20:52:00 39953] [error] OpenSSL: error:1408F455:SSL
routines:SSL3_GET_RECORD:decryption failed or bad record mac
a browser hodi transmission error.
Ve chvili kdyz zapnu v browseru TLSv1 nebo SSLv2 tak vse funguje ok.
Napada nekoho kde by mohl byti povestny zakopany pes?
Pokud by to nekdo chtel zkouset tak https://secure.spaceweb.cz/.

Predem diky.


Fox!MURDER





Další informace o konferenci Linux