Perhaps someone can help me now. I tried a couple of things last week to
solve my problem, but none of them worked. Now I am running SSL in
debug-mode, so here is a little bit more of the error (this is just a small
extract out of the log-file, the logging goes further, but i think here is
the main fault):



Mon May 09 18:24:10 2005] [info] Initial (No.1) HTTPS request received for
child 0 (server test.net:443)
[Mon May 09 18:24:10 2005] [debug] ssl_engine_kernel.c(456): Changed client
verification type will force renegotiation
[Mon May 09 18:24:10 2005] [info] Requesting connection re-negotiation
[Mon May 09 18:24:10 2005] [debug] ssl_engine_kernel.c(684): Performing full
renegotiation: complete handshake protocol
[Mon May 09 18:24:10 2005] [debug] ssl_engine_kernel.c(1793): OpenSSL:
Handshake: start
[Mon May 09 18:24:10 2005] [debug] ssl_engine_kernel.c(1801): OpenSSL: Loop:
SSL renegotiate ciphers
[Mon May 09 18:24:10 2005] [debug] ssl_engine_kernel.c(1801): OpenSSL: Loop:
SSLv3 write hello request A
[Mon May 09 18:24:10 2005] [debug] ssl_engine_kernel.c(1801): OpenSSL: Loop:
SSLv3 flush data
[Mon May 09 18:24:10 2005] [debug] ssl_engine_kernel.c(1801): OpenSSL: Loop:
SSLv3 write hello request C
[Mon May 09 18:24:10 2005] [info] Awaiting re-negotiation handshake
[Mon May 09 18:24:10 2005] [debug] ssl_engine_kernel.c(1793): OpenSSL:
Handshake: start
[Mon May 09 18:24:10 2005] [debug] ssl_engine_kernel.c(1801): OpenSSL: Loop:
before accept initialization
[Mon May 09 18:24:10 2005] [debug] ssl_engine_io.c(1507): OpenSSL: read 5/5
bytes from BIO#8240630 [mem: 8247cb0] (BIO dump follows)
[Mon May 09 18:24:10 2005] [debug] ssl_engine_io.c(1454):
+-------------------------------------------------------------------------+
[Mon May 09 18:24:10 2005] [debug] ssl_engine_io.c(1479): | 0000: 16 03 01
00 51                                   ....Q            |
[Mon May 09 18:24:10 2005] [debug] ssl_engine_io.c(1485):
+-------------------------------------------------------------------------+
[Mon May 09 18:24:10 2005] [debug] ssl_engine_io.c(1507): OpenSSL: read
81/81 bytes from BIO#8240630 [mem: 8247cb5] (BIO dump follows)
[Mon May 09 18:24:10 2005] [debug] ssl_engine_io.c(1454):
+-------------------------------------------------------------------------+
[Mon May 09 18:24:10 2005] [debug] ssl_engine_io.c(1479): | 0000: f2 08 cf
e6 bb dd 4e 63-06 01 42 56 80 a8 4d 74  ......Nc..BV..Mt |
[Mon May 09 18:24:10 2005] [debug] ssl_engine_io.c(1479): | 0010: 7c 8f b0
d8 22 d1 0d 66-74 1b 08 f9 72 c3 7a 25  |..."..ft...r.z% |
[Mon May 09 18:24:10 2005] [debug] ssl_engine_io.c(1479): | 0020: fb 85 86
85 af 34 73 26-3f ca 5e 11 3f a7 d4 19  .....4s&?.^.?... |
[Mon May 09 18:24:10 2005] [debug] ssl_engine_io.c(1479): | 0030: 14 72 43
4a b3 e3 ab e6-2f 22 4f c0 ed c1 6e c0  .rCJ..../"O...n. |
[Mon May 09 18:24:10 2005] [debug] ssl_engine_io.c(1479): | 0040: 4a 6d 10
67 29 88 56 08-cf 06 13 b7 38 3f cf 51  Jm.g).V.....8?.Q |
[Mon May 09 18:24:10 2005] [debug] ssl_engine_io.c(1479): | 0050: 06
.                |
[Mon May 09 18:24:10 2005] [debug] ssl_engine_io.c(1485):
+-------------------------------------------------------------------------+
[Mon May 09 18:24:10 2005] [debug] ssl_engine_kernel.c(1801): OpenSSL: Loop:
SSLv3 read client hello A
[Mon May 09 18:24:10 2005] [debug] ssl_engine_kernel.c(1801): OpenSSL: Loop:
SSLv3 write server hello A
[Mon May 09 18:24:10 2005] [debug] ssl_engine_kernel.c(1801): OpenSSL: Loop:
SSLv3 write certificate A
[Mon May 09 18:24:10 2005] [debug] ssl_engine_kernel.c(1801): OpenSSL: Loop:
SSLv3 write certificate request A
[Mon May 09 18:24:10 2005] [debug] ssl_engine_kernel.c(1801): OpenSSL: Loop:
SSLv3 flush data
[Mon May 09 18:24:10 2005] [debug] ssl_engine_io.c(1518): OpenSSL: I/O
error, 5 bytes expected to read on BIO#8240630 [mem: 8247cb0]
[Mon May 09 18:24:10 2005] [debug] ssl_engine_kernel.c(1830): OpenSSL: Exit:
error in SSLv3 read client certificate A
[Mon May 09 18:24:10 2005] [error] Re-negotiation handshake failed: Not
accepted by client!?



Sven

______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    openssl-users@openssl.org
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to