[Bug 1410989] Re: SSL_connect:unknown state

2015-01-21 Thread Circa Lucid
Is there a way to get openssl to negotiate the correct cipher suite? Maybe a retry option? I have squid3 inspecting ssl traffic and it's hanging on these sites. Or would retrying be something that should be implemented in squid3? -- You received this bug notification because you are a member of U

[Bug 1410989] Re: SSL_connect:unknown state

2015-01-14 Thread Seth Arnold
There are significant problems with the configurations of both sites: https://www.ssllabs.com/ssltest/analyze.html?d=tm3.com https://www.ssllabs.com/ssltest/analyze.html?d=ws.myfax.com That said, I was able to establish a connection to both sites by manually requesting SSL3 on the command line:

[Bug 1410989] Re: SSL_connect:unknown state

2015-01-14 Thread Circa Lucid
These are my test cases and the final solution user@test0:~$ uname -a Linux test0 3.11.0-26-generic #45-Ubuntu SMP Tue Jul 15 04:02:06 UTC 2014 x86_64 x86_64 x86_64 GNU/Linux user@test0:~$ openssl version -a OpenSSL 1.0.1e 11 Feb 2013 built on: Fri Jun 20 18:52:46 UTC 2014 platform: debian-amd64