On Jun 10, 2008, at 6:50 PM, Jim Jagielski wrote:

+/-1
[  ]  Release httpd-2.2.9 as GA

+1 for release.

Darwin Legadema.local 9.3.0 Darwin Kernel Version 9.3.0: Fri May 23 00:49:16 PDT 2008; root:xnu-1228.5.18~1/RELEASE_I386 i386

2.2.9 Worker:

Failed Test Stat Wstat Total Fail  List of Failed
-------------------------------------------------------------------------------
t/ssl/v2.t                 1    1  1
3 tests and 2 subtests skipped.
Failed 1/80 test scripts. 1/2894 subtests failed.
Files=80, Tests=2894, 197 wallclock secs (39.79 cusr + 6.31 csys = 46.10 CPU)
Failed 1/80 test programs. 1/2894 subtests failed.

I get the same error (bad mac decode) when running the openssl command- line tool. Probably something wrong with my OpenSSL:

[EMAIL PROTECTED] c-examples $ openssl s_client -ssl2 -connect 127.0.0.1:8532
CONNECTED(00000003)
depth=0 /C=US/ST=California/L=San 
Francisco/O=ASF/OU=httpd-test/rsa-test/CN=localhost/[EMAIL PROTECTED]
verify error:num=20:unable to get local issuer certificate
verify return:1
depth=0 /C=US/ST=California/L=San 
Francisco/O=ASF/OU=httpd-test/rsa-test/CN=localhost/[EMAIL PROTECTED]
verify error:num=27:certificate not trusted
verify return:1
depth=0 /C=US/ST=California/L=San 
Francisco/O=ASF/OU=httpd-test/rsa-test/CN=localhost/[EMAIL PROTECTED]
verify error:num=21:unable to verify the first certificate
verify return:1
80250:error:140EC071:SSL routines:SSL2_READ_INTERNAL:bad mac decode:s2_pkt.c:274:
[EMAIL PROTECTED] c-examples $ openssl version
OpenSSL 0.9.7l 28 Sep 2006
[EMAIL PROTECTED] c-examples $ which openssl
/usr/bin/openssl

Apache's log:

[Tue Jun 10 22:12:59 2008] [debug] ssl_engine_kernel.c(1789): OpenSSL: Exit: error in SSLv2 read client finished A [Tue Jun 10 22:12:59 2008] [debug] ssl_engine_kernel.c(1789): OpenSSL: Exit: error in SSLv2 read client finished A [Tue Jun 10 22:12:59 2008] [info] [client 127.0.0.1] SSL library error 1 in handshake (server localhost:8532) [Tue Jun 10 22:12:59 2008] [info] SSL Library Error: 336511089 error: 140EC071:SSL routines:SSL2_READ_INTERNAL:bad mac decode Browser still remembered details of a re-created server certificate? [Tue Jun 10 22:12:59 2008] [info] [client 127.0.0.1] Connection closed to child 1 with abortive shutdown (server localhost:8532)

SSLv3 works.

FreeBSD legadema-bsd 7.0-RELEASE FreeBSD 7.0-RELEASE #0: Sun Feb 24 19:59:52 UTC 2008 [EMAIL PROTECTED]:/usr/obj/usr/src/sys/ GENERIC i386

2.2.9 Prefork:

All tests successful, 3 tests and 2 subtests skipped.

Yay! +1

--
Sander Temme
[EMAIL PROTECTED]
PGP FP: 51B4 8727 466A 0BC3 69F4  B7B8 B2BE BC40 1529 24AF



Attachment: smime.p7s
Description: S/MIME cryptographic signature

Reply via email to