Platform and configuration command: $ uname -a Linux run 5.4.0-52-generic #57-Ubuntu SMP Thu Oct 15 10:57:00 UTC 2020 x86_64 x86_64 x86_64 GNU/Linux $ CC=clang ../openssl/config -d --strict-warnings no-dtls1_2
Commit log since last time: ac093b3fe6 openssl.pod: Carve out Trusted Certificate, Pass Phrase, Name Format, and Format Options b6f18ed2ef openssl.pod: Move verification doc to new doc/man1/openssl-verification-options.pod 6b480ee369 find-doc-nits: fix regexp and point out that CA.pl and tsget.pod are special 9256e8a248 PEM: Add a more generic way to implement PEM _ex functions for libctx 030da84412 EVP: Adjust EVP_PKEY_size(), EVP_PKEY_bits() and EVP_PKEY_security_bits() ecfbe2f046 DSA: Make DSA_bits() and DSA_size() check that there are key parameters 76191c7999 Switch deprecation method for X.509 3c667d9888 Switch deprecation method for Whirlpool f2e9454364 Switch deprecation method for OSSL_STORE 3be1dc50aa Switch deprecation method for SSL 2b3f59fd49 Switch deprecation method for SRP 033b8d5ee0 Switch deprecation method for SHA 0038fff07d Switch deprecation method for SEED 632fb5259f Switch deprecation method for RIPEMD 17fbbe7727 Switch deprecation method for RC5 53a14afee9 Switch deprecation method for RC4 1b6d1f51b4 Switch deprecation method for RC2 00639486b0 Switch deprecation method for RAND be8e9b39a3 Switch deprecation method for PKCS#12 be5b2b64a5 Switch deprecation method for MDC2 5fb0f3178f Switch deprecation method for MD5 4ea7e4e013 Switch deprecation method for MD4 0c5f728456 Switch deprecation method for MD2 4b361f87a9 Switch deprecation method for IDEA ba21405888 Switch deprecation method for HMAC 306265819b Switch deprecation method for EVP f6be9ae210 Switch deprecation method for ERR d43788bd20 Switch deprecation method for ENGINE 27147678ca Switch deprecation method for DES 05cb22388f Switch deprecation method for CRYPTO 7f7c856c66 Switch deprecation method for CONF db617a4a6b Switch deprecation method for CMAC ebafdfac73 Switch deprecation method for CAST 0294097253 Switch deprecation method for Camellia 4b66e5256f Switch deprecation method for BIGNUM 6638749f0f Switch deprecation method for Blowfish 894fe6e1d6 Switch deprecation method for BIO d1b99dd905 Switch deprecation method for ASN.1 0016a034a7 Switch deprecation method for AES d7cdb8b606 test/certs/setup.sh: Fix two glitches e99505b4d0 x509_vfy.c: Improve comments (correcting typos etc.) f974b61077 apps/verify:c: Enable output of multiple verification errors due to -x509_strict 06f81af8fc {.travis,ci,appveyor}.yml: Make minimal config consistent, add no-deprecated no-ec no-ktls no-siv 9d0854f4a9 apps/speed.c: Rename misleading 'rsa_count' variable to 'op_count' 0191854154 evp_pkey_dparams_test.c: Fix build error on OPENSSL_NO_{DH,DSA,EC} 821d6f8c67 endecode_test.c: Fix build errors on OPENSSL_NO_{DH,DSA,EC,EC2M} 8c88514561 apps/speed.c: Fix build errors on OPENSSL_NO_{RSA,DSA,EC,DEPECATED_3_0} e3a4d3bb61 fuzz/server.c: Fix build error on OPENSSL_NO_{DSA,EC,DEPECATED_3_0} 8ce3244c57 encode_key2text.c: Fix build error on OPENSSL_NO_{DH,DSA,EC} 01b7708138 encode_key2any.c: Fix build error on OPENSSL_NO_DH and OPENSSL_NO_EC 824cf2c38a appveyor.yml: Move printing of env variables such that locally defined ones are shown as well. 300e8c4bf1 Fix no-dsa c2386b81fe Fix dsa & rsa signature dupctx() so that ctx->propq is strduped 283320281b Fix ecdsa digest setting code to match dsa. ddfd7182cf Fix EVP_PKEY_CTX propq so that it uses a copy 637dce3c3a fix x509_PUBKEY propq so that it uses a copy c22139a786 Fix x509_crl propq so that it uses a copy 22b9230f39 Fix X509 propq so it does not use references ae290d8f0c ci.yml: Let 'make' run silently (-s) with build (gcc) runs in parallel (-j4) 6a7848bc9e ci.yml: Add 'perl configdata.pm --dump' to each config 2cda79fb82 .travis.yml: Do some build (gcc) runs in parallel (-j4) 68b9c2cbf7 appveyor.yml: Let 'nmake' do builds in parallel on all CPU cores 0386bf8208 appveyor.yml: Let 'nmake' run by defaut silently (/S), using MAKEVERBOSE like .travis.yml 3bed88a397 x509_vfy.c: Restore rejection of expired trusted (root) certificate 902161e8ec apps/pkcs12.c: Improve user guidance, re-ordering no-export vs. export options a7e6a3d8ef tag unused function arguments as ossl_unused e442cdaea2 remove unused initialisations 7b42408756 remove unused assignments 30742e8e7f remove unused return value assignments 70cae332a2 Fix comment in do_dtls1_write() Build log ended with (last 100 lines): # INFO: @ ../openssl/test/helpers/ssltestlib.c:960 # SSL_accept() failed -1, 1 # 8031335C7F7F0000:error:0A000076:SSL routines:tls_choose_sigalg:no suitable signature algorithm:../openssl/ssl/t1_lib.c:3319: # INFO: @ ../openssl/test/helpers/ssltestlib.c:942 # SSL_connect() failed -1, 1 # 8031335C7F7F0000:error:0A000438:SSL routines:dtls1_read_bytes:tlsv1 alert internal error:../openssl/ssl/record/rec_layer_d1.c:610:SSL alert number 80 # ERROR: (bool) 'create_ssl_connection(serverssl, clientssl, SSL_ERROR_NONE) == true' failed @ ../openssl/test/sslapitest.c:6463 # false not ok 2 - iteration 2 # ------------------------------------------------------------------------------ not ok 53 - test_ssl_pending # ------------------------------------------------------------------------------ ../../util/wrap.pl ../../test/sslapitest ../../../openssl/test/certs ../../../openssl/test/recipes/90-test_sslapi_data/passwd.txt /tmp/PaH2B6W4z4 default ../../../openssl/test/default.cnf => 1 not ok 1 - running sslapitest # ------------------------------------------------------------------------------ # INFO: @ ../openssl/test/helpers/ssltestlib.c:942 # SSL_connect() failed -1, 1 # 80410F03247F0000:error:0A000129:SSL routines:tls_setup_handshake:no suitable digest algorithm:../openssl/ssl/statem/statem_lib.c:122:The max supported SSL/TLS version needs the MD5-SHA1 digest but it is not available in the loaded providers. Use (D)TLSv1.2 or above, or load different providers # INFO: @ ../openssl/test/helpers/ssltestlib.c:960 # SSL_accept() failed -1, 1 # 80410F03247F0000:error:0A000129:SSL routines:tls_setup_handshake:no suitable digest algorithm:../openssl/ssl/statem/statem_lib.c:122:The max supported SSL/TLS version needs the MD5-SHA1 digest but it is not available in the loaded providers. Use (D)TLSv1.2 or above, or load different providers # ERROR: (bool) 'create_ssl_connection(serverssl, clientssl, SSL_ERROR_NONE) == true' failed @ ../openssl/test/sslapitest.c:852 # false not ok 3 - test_large_message_dtls # ------------------------------------------------------------------------------ # INFO: @ ../openssl/test/helpers/ssltestlib.c:942 # SSL_connect() failed -1, 1 # 80410F03247F0000:error:0A000129:SSL routines:tls_setup_handshake:no suitable digest algorithm:../openssl/ssl/statem/statem_lib.c:122:The max supported SSL/TLS version needs the MD5-SHA1 digest but it is not available in the loaded providers. Use (D)TLSv1.2 or above, or load different providers # INFO: @ ../openssl/test/helpers/ssltestlib.c:960 # SSL_accept() failed -1, 1 # 80410F03247F0000:error:0A000129:SSL routines:tls_setup_handshake:no suitable digest algorithm:../openssl/ssl/statem/statem_lib.c:122:The max supported SSL/TLS version needs the MD5-SHA1 digest but it is not available in the loaded providers. Use (D)TLSv1.2 or above, or load different providers # ERROR: (bool) 'create_ssl_connection(serverssl, clientssl, SSL_ERROR_NONE) == true' failed @ ../openssl/test/sslapitest.c:1333 # false # ERROR: (bool) 'execute_cleanse_plaintext(DTLS_server_method(), DTLS_client_method(), DTLS1_VERSION, 0) == true' failed @ ../openssl/test/sslapitest.c:1411 # false not ok 4 - test_cleanse_plaintext # ------------------------------------------------------------------------------ # INFO: @ ../openssl/test/helpers/ssltestlib.c:942 # SSL_connect() failed -1, 1 # 80410F03247F0000:error:0A000129:SSL routines:tls_setup_handshake:no suitable digest algorithm:../openssl/ssl/statem/statem_lib.c:122:The max supported SSL/TLS version needs the MD5-SHA1 digest but it is not available in the loaded providers. Use (D)TLSv1.2 or above, or load different providers # INFO: @ ../openssl/test/helpers/ssltestlib.c:960 # SSL_accept() failed -1, 1 # 80410F03247F0000:error:0A000129:SSL routines:tls_setup_handshake:no suitable digest algorithm:../openssl/ssl/statem/statem_lib.c:122:The max supported SSL/TLS version needs the MD5-SHA1 digest but it is not available in the loaded providers. Use (D)TLSv1.2 or above, or load different providers # ERROR: (bool) 'create_ssl_connection(serverssl, clientssl, SSL_ERROR_NONE) == true' failed @ ../openssl/test/sslapitest.c:6463 # false not ok 2 - iteration 2 # ------------------------------------------------------------------------------ not ok 53 - test_ssl_pending # ------------------------------------------------------------------------------ ../../util/wrap.pl ../../test/sslapitest ../../../openssl/test/certs ../../../openssl/test/recipes/90-test_sslapi_data/passwd.txt /tmp/PaH2B6W4z4 fips ../../../openssl/test/fips-and-base.cnf => 1 not ok 3 - running sslapitest # ------------------------------------------------------------------------------ # Failed test 'running sslapitest' # at ../openssl/test/recipes/90-test_sslapi.t line 45. # Looks like you failed 2 tests of 3.90-test_sslapi.t ................... Dubious, test returned 2 (wstat 512, 0x200) Failed 2/3 subtests 90-test_sslbuffers.t ............... ok 90-test_store.t .................... ok 90-test_sysdefault.t ............... ok 90-test_threads.t .................. ok 90-test_time_offset.t .............. ok 90-test_tls13ccs.t ................. ok 90-test_tls13encryption.t .......... ok 90-test_tls13secrets.t ............. ok 90-test_v3name.t ................... ok 95-test_external_boringssl.t ....... skipped: No external tests in this configuration 95-test_external_gost_engine.t ..... skipped: No external tests in this configuration 95-test_external_krb5.t ............ skipped: No external tests in this configuration 95-test_external_pyca.t ............ skipped: No external tests in this configuration 99-test_ecstress.t ................. ok 99-test_fuzz_asn1.t ................ ok 99-test_fuzz_asn1parse.t ........... ok 99-test_fuzz_bignum.t .............. ok 99-test_fuzz_bndiv.t ............... ok 99-test_fuzz_client.t .............. ok 99-test_fuzz_cmp.t ................. ok 99-test_fuzz_cms.t ................. ok 99-test_fuzz_conf.t ................ ok 99-test_fuzz_crl.t ................. ok 99-test_fuzz_ct.t .................. ok 99-test_fuzz_server.t .............. ok 99-test_fuzz_x509.t ................ ok Test Summary Report ------------------- 80-test_dtls.t (Wstat: 256 Tests: 1 Failed: 1) Failed test: 1 Non-zero exit status: 1 80-test_ssl_new.t (Wstat: 768 Tests: 31 Failed: 3) Failed tests: 8, 17, 19 Non-zero exit status: 3 90-test_sslapi.t (Wstat: 512 Tests: 3 Failed: 2) Failed tests: 1, 3 Non-zero exit status: 2 Files=227, Tests=3634, 881 wallclock secs (14.36 usr 1.43 sys + 786.84 cusr 90.25 csys = 892.88 CPU) Result: FAIL make[1]: *** [Makefile:3246: _tests] Error 1 make[1]: Leaving directory '/home/openssl/run-checker/no-dtls1_2' make: *** [Makefile:3243: tests] Error 2