Hi All,

I am testing an application and it uses SSL for communication.
Each time i connect to it using an open_ssl client using the commands below

# openssl s_client -state -CAfile ca.pem -cert node1.pem -key node1.pem -verify 10 -msg -state -showcerts -connect 192.168.1.83:6664 -debug -tls1

SSL_get_error(ssl, r) returns 2.

Is any list where i can match error 2 with? If no can you please tell me what return value 2 means here.

And if i make the application connect to a openssl_server  by issuing

# openssl s_server -CAfile ca.pem -cert node2.pem -key node2.pem -Verify 10 -state -msg -accept 6664 -tls1 -debug


and then start the application to connect to the openssl_server i get the following on the openssl_server

ACCEPT
SSL_accept:before/accept initialization
read from 080B2110 [080B76B8] (5 bytes => 5 (0x5))
0000 - 16 03 01 00 2d                                    ....-
read from 080B2110 [080B76BD] (45 bytes => 45 (0x2D))
0000 - 01 00 00 29 03 01 46 49-cd d1 2b 16 88 b2 30 8e   ...)..FI..+...0.
0010 - 74 86 18 50 e7 27 70 1a-c9 4b a3 26 96 30 10 f1   t..P.'p..K.&.0..
0020 - d6 08 45 49 5f 23 00 00-02 00 2f 01               ..EI_#..../.
002d - <SPACES/NULS>
<<< TLS 1.0 Handshake [length 002d], ClientHello
   01 00 00 29 03 01 46 49 cd d1 2b 16 88 b2 30 8e
   74 86 18 50 e7 27 70 1a c9 4b a3 26 96 30 10 f1
   d6 08 45 49 5f 23 00 00 02 00 2f 01 00
SSL_accept:SSLv3 read client hello A
>>> TLS 1.0 Handshake [length 004a], ServerHello
   02 00 00 46 03 01 46 49 cd ca fb 6b d3 81 6d 08
   0f c1 d9 67 45 d2 20 d5 6a dd ea cb 92 5b b1 76
   aa db ea 86 4a 44 20 0e 1b da 9b 52 19 c4 ac 19
   93 fd f1 15 26 2d 64 03 e0 68 26 79 70 53 86 34
   e5 a0 00 da 28 f7 83 00 2f 00
write to 080B2110 [080C1808] (79 bytes => 79 (0x4F))
0000 - 16 03 01 00 4a 02 00 00-46 03 01 46 49 cd ca fb   ....J...F..FI...
0010 - 6b d3 81 6d 08 0f c1 d9-67 45 d2 20 d5 6a dd ea   k..m....gE. .j..
0020 - cb 92 5b b1 76 aa db ea-86 4a 44 20 0e 1b da 9b   ..[.v....JD ....
0030 - 52 19 c4 ac 19 93 fd f1-15 26 2d 64 03 e0 68 26   R........&-d..h&
0040 - 79 70 53 86 34 e5 a0 00-da 28 f7 83 00 2f         ypS.4....(.../
004f - <SPACES/NULS>
SSL_accept:SSLv3 write server hello A
>>> TLS 1.0 Handshake [length 0372], Certificate
   0b 00 03 6e 00 03 6b 00 01 82 30 82 01 7e 30 81
   e8 02 01 00 30 0d 06 09 2a 86 48 86 f7 0d 01 01
   04 05 00 30 00 30 1e 17 0d 30 37 30 35 31 34 31
   33 35 30 32 30 5a 17 0d 31 30 30 35 31 33 31 33
   35 30 32 30 5a 30 10 31 0e 30 0c 06 03 55 04 03
   13 05 6e 6f 64 65 32 30 81 9f 30 0d 06 09 2a 86
   48 86 f7 0d 01 01 01 05 00 03 81 8d 00 30 81 89
   02 81 81 00 bf 38 67 e8 31 36 f8 9f 90 48 27 4f
   2c c3 01 7e 97 f2 99 9a 36 c2 28 0c 82 06 58 a6
   bb a0 eb 77 7d 8c 58 e9 b0 cc 85 52 10 7f 17 32
   5b 09 7b 51 45 57 0e 58 82 3e 94 2f 97 b8 69 4b
   f1 e3 f2 0b e2 4f 43 e2 fe 57 11 a8 50 11 69 df
   c2 36 11 4a 2a bf 38 41 dd a3 15 5e b3 0c 27 83
   19 aa 64 48 f0 67 94 b6 d3 79 c2 22 f8 42 ff b1
   96 08 c8 30 dc cf d9 03 42 b5 69 a8 d6 c1 68 1e
   0a da c8 89 02 03 01 00 01 30 0d 06 09 2a 86 48
   86 f7 0d 01 01 04 05 00 03 81 81 00 a2 ff bd ed
   64 90 d3 65 32 c4 8a 41 a2 b9 82 29 19 e5 37 22
   8f 70 97 98 e9 28 04 93 3e 72 85 67 ce 04 43 d0
   9a ea d9 34 c1 e5 a4 1d 6b a5 42 62 19 a2 84 7e
   43 b3 18 0c 84 4f 6d 7c ac ca b1 cd b3 1a f4 ed
   e1 81 68 a2 ab b9 88 ea b3 80 bd 81 8b b2 9c 3a
   27 43 c1 37 b8 50 41 98 f4 c7 c4 15 b7 74 04 cf
   5d b1 c6 6d f7 a5 2c 3c d9 95 f1 b8 0a e0 d8 bc
   fa 62 5b ce 2b cb 2b d6 ea 5d c4 b2 00 01 e3 30
   82 01 df 30 82 01 48 a0 03 02 01 02 02 09 00 d3
   3e cf 1d ff 36 c2 c1 30 0d 06 09 2a 86 48 86 f7
   0d 01 01 04 05 00 30 00 30 1e 17 0d 30 37 30 35
   31 34 31 33 34 39 33 30 5a 17 0d 31 30 30 35 31
   33 31 33 34 39 33 30 5a 30 00 30 81 9f 30 0d 06
   09 2a 86 48 86 f7 0d 01 01 01 05 00 03 81 8d 00
   30 81 89 02 81 81 00 b5 76 97 21 4f 9e 9a 5c ed
   02 44 4d dd 82 b0 81 a6 3d af 38 6f b7 36 5b 3d
   95 46 3e 55 20 50 df b6 5f 6e 20 86 02 46 10 cf
   99 1a 03 49 70 ae 2c cb 6a dc 8b f0 98 83 1e 79
   87 95 3b 4e 30 3d be 75 94 df a4 16 d4 4a 45 e2
   f2 6a 2b c7 83 a0 51 8c 25 4e 71 a9 db 02 57 79
   b4 11 5c 2a 86 ed 97 e9 ab d0 b1 3e 7f 34 e7 d8
   70 ad b3 d6 d3 d8 1b 86 42 a6 d0 ad 40 01 8a 80
   8d f0 b2 22 87 be af 02 03 01 00 01 a3 61 30 5f
   30 1d 06 03 55 1d 0e 04 16 04 14 3f ca b5 45 6a
   7f d8 69 e0 5d 14 1f da 20 7e 82 69 6e 1f 14 30
   30 06 03 55 1d 23 04 29 30 27 80 14 3f ca b5 45
   6a 7f d8 69 e0 5d 14 1f da 20 7e 82 69 6e 1f 14
   a1 04 a4 02 30 00 82 09 00 d3 3e cf 1d ff 36 c2
   c1 30 0c 06 03 55 1d 13 04 05 30 03 01 01 ff 30
   0d 06 09 2a 86 48 86 f7 0d 01 01 04 05 00 03 81
   81 00 6a f4 8e 8d b0 3d 4d cd e9 a1 a2 aa e1 e8
   a8 8d 88 41 51 a5 f0 23 d5 b3 35 89 99 57 3c 35
   86 5a fc 8e bd e0 4c 6b 0b d2 42 cb 5f 64 a7 17
   d4 8d e2 fb ff d9 d2 e4 3c 4e 24 bb b3 16 30 16
   d9 81 0c 99 28 ae 4b 05 27 f5 39 d5 54 a9 f0 2d
   60 85 b6 3d b0 54 cd f5 27 2e 03 d9 5e 67 46 38
   36 05 83 b8 09 9c f0 44 63 47 72 c8 bf 7b a2 62
   be d3 a1 7a 80 76 da dd 5c c1 bb 21 13 ce ef 77
   13 50
write to 080B2110 [080C1808] (887 bytes => -1 (0xFFFFFFFF))
SSL_accept:error in SSLv3 write key exchange A
ERROR
shutting down SSL
CONNECTION CLOSED
ACCEPT


Can someone please tell me what is "SSL_accept:error in SSLv3 write key exchange A" is.


Many Thanks

Prashant



______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    openssl-users@openssl.org
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to