We have really nasty problems using Apache & modssl

I use
OpenSSL 0.9.5a
Apache/1.3.12
mod_ssl/2.6.6

Many SSL-Clients (mainly IE 5.x) have Problems connecting to our SSL secured
Pages. I read the FAQs which said to disable EXP56, ....

I also tried to downgrade which ended in a desaster

[Mon Dec 18 08:41:51 2000] [error] OpenSSL: error:140760FC:SSL
routines:SSL23_GET_CLIENT_HELLO:unknown protocol [Hint: speaking not
SSL to HTTPS port!?]
[Mon Dec 18 08:41:51 2000] [error] mod_ssl: SSL handshake failed (server
www2.screensavergold.com:443, client 62.153.29.57) (OpenSSL
 library error follows)


In many cases it helps that the clients disable SSLv3, sometimes not. I
enabled the trace to see what's the output of OpenSSL:


[18/Dec/2000 08:32:20 25088] [trace] OpenSSL: Exit: error in SSLv3 read
client certificate A
[18/Dec/2000 08:32:20 25088] [trace] OpenSSL: Exit: error in SSLv3 read
client certificate A
[18/Dec/2000 08:32:20 25088] [error] SSL handshake interrupted by system
[Hint: Stop button pressed in browser?!] (System error foll
ows)
[18/Dec/2000 08:32:20 25088] [error] System: Connection reset by peer
(errno: 104)


In newsgroup postings this error message was often seen the last days where
many answers where "The client stopped the STOP-Button" but forget that,
this is a real connection problem!

______________________________________________________________________
Apache Interface to OpenSSL (mod_ssl)                   www.modssl.org
User Support Mailing List                      [EMAIL PROTECTED]
Automated List Manager                            [EMAIL PROTECTED]

Reply via email to