Cause I've not figured out how to reply to openssl-dev ... without subscribe, so, here is how to reproduce the failure:
On one console, execute this command: $ yes "hello client" | openssl s_server -accept 1111 -CAfile ca.crt -cert server.pem -key server.pem -state On another console, execute this command: $ echo R | openssl s_client -connect localhost:1111 -state server's output: Using default temp DH parameters Using default temp ECDH parameters ACCEPT SSL_accept:before/accept initialization SSL_accept:SSLv3 read client hello A SSL_accept:SSLv3 write server hello A SSL_accept:SSLv3 write certificate A SSL_accept:SSLv3 write key exchange A SSL_accept:SSLv3 write server done A SSL_accept:SSLv3 flush data SSL_accept:SSLv3 read client key exchange A SSL_accept:SSLv3 read finished A SSL_accept:SSLv3 write session ticket A SSL_accept:SSLv3 write change cipher spec A SSL_accept:SSLv3 write finished A SSL_accept:SSLv3 flush data SSL_accept:before accept initialization SSL_accept:SSLv3 read client hello A SSL_accept:SSLv3 write server hello A SSL_accept:SSLv3 write certificate A SSL_accept:SSLv3 write key exchange A SSL_accept:SSLv3 write server done A SSL_accept:SSLv3 flush data SSL_accept:error in SSLv3 read client certificate A ERROR shutting down SSL CONNECTION CLOSED ACCEPT client's output: ... hello client ... (A LOT OF hello client here) ... hello client hello clieRENEGOTIATING SSL_connect:SSL renegotiate ciphers SSL_connect:SSLv3 write client hello A SSL3 alert write:fatal:unexpected_message SSL_connect:error in SSLv3 read server hello A 140363909150536:error:140940F5:SSL routines:SSL3_READ_BYTES:unexpected record:s3_pkt.c:1409: That's it. The error will appear constantly, after a few seconds of execution. ______________________________________________________________________ OpenSSL Project http://www.openssl.org Development Mailing List openssl-dev@openssl.org Automated List Manager majord...@openssl.org