On Thu, Mar 25, 1999 at 11:34:40AM +0100, Ralf S. Engelschall wrote:
> On Thu, Mar 25, 1999, Mark Stosberg wrote:
>
Hello,
my setup contains FreeBSD 3.1-STABLE with Apache 1.3.6, mod_ssl 2.2.6, and
openssl 0.9.1c.
I noticed that my Netscape-4.08 export version got the "bad data" error;
here is the log:
[25/Mar/1999 19:40:28] [info] Connection to child 0 established (server
www.cert.siemens.de:443)
[25/Mar/1999 19:40:28] [trace] Seeding PRNG with 1032 bytes of entropy
[25/Mar/1999 19:40:28] [trace] OpenSSL: Handshake: start
[25/Mar/1999 19:40:28] [trace] OpenSSL: Loop: before SSL initialization
[25/Mar/1999 19:40:28] [trace] OpenSSL: Loop: SSLv3 read client hello A
[25/Mar/1999 19:40:28] [trace] OpenSSL: Loop: SSLv3 write server hello A
[25/Mar/1999 19:40:28] [trace] OpenSSL: Loop: SSLv3 write certificate A
[25/Mar/1999 19:40:28] [trace] OpenSSL: Loop: SSLv3 write key exchange A
[25/Mar/1999 19:40:28] [trace] OpenSSL: Loop: SSLv3 write server done A
[25/Mar/1999 19:40:28] [trace] OpenSSL: Loop: SSLv3 flush data
[25/Mar/1999 19:40:36] [trace] OpenSSL: Read: SSLv3 read client certificate A
[25/Mar/1999 19:40:36] [trace] OpenSSL: Exit: failed in SSLv3 read client certificate A
[25/Mar/1999 19:40:36] [info] SSL handshake stopped: connection was closed
But when i change to a fortified Netscape-4.08 everything works:
[25/Mar/1999 19:44:08] [info] Connection to child 3 established (server
www.cert.siemens.de:443)
[25/Mar/1999 19:44:08] [trace] Seeding PRNG with 1032 bytes of entropy
[25/Mar/1999 19:44:08] [trace] OpenSSL: Handshake: start
[25/Mar/1999 19:44:08] [trace] OpenSSL: Loop: before SSL initialization
[25/Mar/1999 19:44:08] [trace] OpenSSL: Loop: SSLv3 read client hello A
[25/Mar/1999 19:44:08] [trace] OpenSSL: Loop: SSLv3 write server hello A
[25/Mar/1999 19:44:08] [trace] OpenSSL: Loop: SSLv3 write certificate A
[25/Mar/1999 19:44:08] [trace] OpenSSL: Loop: SSLv3 write server done A
[25/Mar/1999 19:44:08] [trace] OpenSSL: Loop: SSLv3 flush data
[25/Mar/1999 19:44:15] [trace] OpenSSL: Loop: SSLv3 read client key exchange A
[25/Mar/1999 19:44:15] [trace] OpenSSL: Loop: SSLv3 read finished A
[25/Mar/1999 19:44:15] [trace] OpenSSL: Loop: SSLv3 write change cipher spec A
[25/Mar/1999 19:44:15] [trace] OpenSSL: Loop: SSLv3 write finished A
[25/Mar/1999 19:44:15] [trace] OpenSSL: Loop: SSLv3 flush data
[25/Mar/1999 19:44:15] [trace] Inter-Process Session Cache: request=SET
id=5E9AA3356DED7E4316B2EFC92BC875EB7C179F9FED3931CC21F7DD069E1704D1 timeout=293s
(session caching)
[25/Mar/1999 19:44:15] [trace] OpenSSL: Handshake: done
[25/Mar/1999 19:44:15] [info] Connection: Client IP: 149.202.223.25, Protocol: SSLv3,
Cipher: RC4-MD5 (128/128 bits)
[25/Mar/1999 19:44:15] [info] Initial (No.1) HTTPS request received for child 3
(server www.cert.siemens.de:443)
[25/Mar/1999 19:44:15] [info] Initial (No.1) HTTPS request received for child 3
(server www.cert.siemens.de:443)
[25/Mar/1999 19:44:15] [info] Initial (No.1) HTTPS request received for child 3
(server www.cert.siemens.de:443)
[25/Mar/1999 19:44:16] [info] Connection to child 6 established (server
www.cert.siemens.de:443)
[25/Mar/1999 19:44:16] [trace] Seeding PRNG with 1032 bytes of entropy
[25/Mar/1999 19:44:16] [trace] OpenSSL: Handshake: start
[25/Mar/1999 19:44:16] [trace] OpenSSL: Loop: before SSL initialization
[25/Mar/1999 19:44:16] [trace] Inter-Process Session Cache: request=GET status=FOUND
id=5E9AA3356DED7E4316B2EFC92BC875EB7C179F9FED3931CC21F7DD069E1704D1 (session reuse)
[25/Mar/1999 19:44:16] [trace] OpenSSL: Loop: SSLv3 read client hello A
[25/Mar/1999 19:44:16] [trace] OpenSSL: Loop: SSLv3 write server hello A
[25/Mar/1999 19:44:16] [trace] OpenSSL: Loop: SSLv3 write change cipher spec A
[25/Mar/1999 19:44:16] [trace] OpenSSL: Loop: SSLv3 write finished A
[25/Mar/1999 19:44:16] [trace] OpenSSL: Loop: SSLv3 flush data
[25/Mar/1999 19:44:16] [info] Connection to child 7 established (server
www.cert.siemens.de:443)
[25/Mar/1999 19:44:16] [trace] Seeding PRNG with 1032 bytes of entropy
[25/Mar/1999 19:44:16] [trace] OpenSSL: Handshake: start
[25/Mar/1999 19:44:16] [trace] OpenSSL: Loop: before SSL initialization
[25/Mar/1999 19:44:16] [trace] Inter-Process Session Cache: request=GET status=FOUND
id=5E9AA3356DED7E4316B2EFC92BC875EB7C179F9FED3931CC21F7DD069E1704D1 (session reuse)
[25/Mar/1999 19:44:16] [trace] OpenSSL: Loop: SSLv3 read client hello A
[25/Mar/1999 19:44:16] [trace] OpenSSL: Loop: SSLv3 write server hello A
[25/Mar/1999 19:44:16] [trace] OpenSSL: Loop: SSLv3 write change cipher spec A
[25/Mar/1999 19:44:16] [trace] OpenSSL: Loop: SSLv3 write finished A
[25/Mar/1999 19:44:16] [trace] OpenSSL: Loop: SSLv3 flush data
[25/Mar/1999 19:44:16] [trace] OpenSSL: Loop: SSLv3 read finished A
[25/Mar/1999 19:44:16] [trace] OpenSSL: Handshake: done
[25/Mar/1999 19:44:16] [info] Connection: Client IP: 149.202.223.25, Protocol: SSLv3,
Cipher: RC4-MD5 (128/128 bits)
[25/Mar/1999 19:44:16] [info] Initial (No.1) HTTPS request received for child 7
(server www.cert.siemens.de:443)
[25/Mar/1999 19:44:16] [trace] OpenSSL: Loop: SSLv3 read finished A
[25/Mar/1999 19:44:16] [trace] OpenSSL: Handshake: done
[25/Mar/1999 19:44:16] [info] Connection: Client IP: 149.202.223.25, Protocol: SSLv3,
Cipher: RC4-MD5 (128/128 bits)
[25/Mar/1999 19:44:16] [info] Initial (No.1) HTTPS request received for child 6
(server www.cert.siemens.de:443)
[25/Mar/1999 19:44:17] [info] Subsequent (No.2) HTTPS request received for child 3
(server www.cert.siemens.de:443)
[25/Mar/1999 19:44:17] [info] Subsequent (No.2) HTTPS request received for child 6
(server www.cert.siemens.de:443)
[25/Mar/1999 19:44:18] [info] Subsequent (No.2) HTTPS request received for child 7
(server www.cert.siemens.de:443)
[25/Mar/1999 19:44:19] [info] Connection to child 1 established (server
www.cert.siemens.de:443)
[25/Mar/1999 19:44:19] [trace] Seeding PRNG with 1032 bytes of entropy
[25/Mar/1999 19:44:19] [trace] OpenSSL: Handshake: start
[25/Mar/1999 19:44:19] [trace] OpenSSL: Loop: before SSL initialization
[25/Mar/1999 19:44:19] [trace] Inter-Process Session Cache: request=GET status=FOUND
id=5E9AA3356DED7E4316B2EFC92BC875EB7C179F9FED3931CC21F7DD069E1704D1 (session reuse)
[25/Mar/1999 19:44:19] [trace] OpenSSL: Loop: SSLv3 read client hello A
[25/Mar/1999 19:44:19] [trace] OpenSSL: Loop: SSLv3 write server hello A
[25/Mar/1999 19:44:19] [trace] OpenSSL: Loop: SSLv3 write change cipher spec A
[25/Mar/1999 19:44:19] [trace] OpenSSL: Loop: SSLv3 write finished A
[25/Mar/1999 19:44:19] [trace] OpenSSL: Loop: SSLv3 flush data
[25/Mar/1999 19:44:19] [info] Connection to child 8 established (server
www.cert.siemens.de:443)
[25/Mar/1999 19:44:19] [trace] Seeding PRNG with 1032 bytes of entropy
[25/Mar/1999 19:44:19] [trace] OpenSSL: Handshake: start
[25/Mar/1999 19:44:19] [trace] OpenSSL: Loop: before SSL initialization
[25/Mar/1999 19:44:20] [trace] Inter-Process Session Cache: request=GET status=FOUND
id=5E9AA3356DED7E4316B2EFC92BC875EB7C179F9FED3931CC21F7DD069E1704D1 (session reuse)
[25/Mar/1999 19:44:20] [trace] OpenSSL: Loop: SSLv3 read client hello A
[25/Mar/1999 19:44:20] [trace] OpenSSL: Loop: SSLv3 write server hello A
[25/Mar/1999 19:44:20] [trace] OpenSSL: Loop: SSLv3 write change cipher spec A
[25/Mar/1999 19:44:20] [trace] OpenSSL: Loop: SSLv3 write finished A
[25/Mar/1999 19:44:20] [trace] OpenSSL: Loop: SSLv3 flush data
[25/Mar/1999 19:44:20] [info] Connection to child 9 established (server
www.cert.siemens.de:443)
[25/Mar/1999 19:44:20] [trace] Seeding PRNG with 1032 bytes of entropy
[25/Mar/1999 19:44:20] [trace] OpenSSL: Handshake: start
[25/Mar/1999 19:44:20] [trace] OpenSSL: Loop: before SSL initialization
[25/Mar/1999 19:44:20] [trace] Inter-Process Session Cache: request=GET status=FOUND
id=5E9AA3356DED7E4316B2EFC92BC875EB7C179F9FED3931CC21F7DD069E1704D1 (session reuse)
[25/Mar/1999 19:44:20] [trace] OpenSSL: Loop: SSLv3 read client hello A
[25/Mar/1999 19:44:20] [trace] OpenSSL: Loop: SSLv3 write server hello A
[25/Mar/1999 19:44:20] [trace] OpenSSL: Loop: SSLv3 write change cipher spec A
[25/Mar/1999 19:44:20] [trace] OpenSSL: Loop: SSLv3 write finished A
[25/Mar/1999 19:44:20] [trace] OpenSSL: Loop: SSLv3 flush data
[25/Mar/1999 19:44:20] [info] Subsequent (No.3) HTTPS request received for child 7
(server www.cert.siemens.de:443)
[25/Mar/1999 19:44:22] [trace] OpenSSL: Loop: SSLv3 read finished A
[25/Mar/1999 19:44:22] [trace] OpenSSL: Handshake: done
[25/Mar/1999 19:44:22] [info] Connection: Client IP: 149.202.223.25, Protocol: SSLv3,
Cipher: RC4-MD5 (128/128 bits)
[25/Mar/1999 19:44:22] [info] Initial (No.1) HTTPS request received for child 9
(server www.cert.siemens.de:443)
[25/Mar/1999 19:44:22] [info] Subsequent (No.3) HTTPS request received for child 3
(server www.cert.siemens.de:443)
[25/Mar/1999 19:44:22] [info] Subsequent (No.3) HTTPS request received for child 3
(server www.cert.siemens.de:443)
[25/Mar/1999 19:44:22] [trace] OpenSSL: Write: SSL negotiation finished successfully
[25/Mar/1999 19:44:22] [info] Connection to child 3 closed (server
www.cert.siemens.de:443)
[25/Mar/1999 19:44:22] [trace] OpenSSL: Loop: SSLv3 read finished A
[25/Mar/1999 19:44:22] [trace] OpenSSL: Handshake: done
[25/Mar/1999 19:44:22] [info] Connection: Client IP: 149.202.223.25, Protocol: SSLv3,
Cipher: RC4-MD5 (128/128 bits)
[25/Mar/1999 19:44:22] [info] Initial (No.1) HTTPS request received for child 8
(server www.cert.siemens.de:443)
[25/Mar/1999 19:44:22] [trace] OpenSSL: Loop: SSLv3 read finished A
[25/Mar/1999 19:44:22] [trace] OpenSSL: Handshake: done
[25/Mar/1999 19:44:22] [info] Connection: Client IP: 149.202.223.25, Protocol: SSLv3,
Cipher: RC4-MD5 (128/128 bits)
[25/Mar/1999 19:44:22] [info] Initial (No.1) HTTPS request received for child 1
(server www.cert.siemens.de:443)
[25/Mar/1999 19:44:22] [info] Subsequent (No.3) HTTPS request received for child 6
(server www.cert.siemens.de:443)
[25/Mar/1999 19:44:22] [info] Subsequent (No.2) HTTPS request received for child 9
(server www.cert.siemens.de:443)
Maybe this is a possibilty for Ralf to reproduce the error.
Best regards
-------------------------------------------------------------------------------
Udo Schweigert || Voice : +49 89 636 42170
Siemens AG, Siemens CERT || Fax : +49 89 636 48000
ZT IK 3 || email : [EMAIL PROTECTED]
D-81730 Muenchen / Germany || : [EMAIL PROTECTED]
PGP fingerprint || 2A 53 F6 A6 30 59 64 02 6B C4 E0 73 B2 C9 6C E7
-------------------------------------------------------------------------------
______________________________________________________________________
Apache Interface to OpenSSL (mod_ssl) www.engelschall.com/sw/mod_ssl/
Official Support Mailing List [EMAIL PROTECTED]
Automated List Manager [EMAIL PROTECTED]