As reported by José Valentín Gutiérrez Boquete in
Secure: https://bugs.gentoo.org/show_bug.cgi?id=142405

$ lftp -d -u daniel,black -p 1337 nicoHQ.org.
lftp [EMAIL PROTECTED]:~> ls
---- Connecting to nicoHQ.org. (83.165.121.9) port 1337
<--- 220 MY SITE NAME (glFTPd 2.01 Linux+TLS) ready.
---> FEAT
<--- 211- Extensions supported:
<---  AUTH TLS
<---  AUTH SSL
<---  PBSZ
<---  PROT
<---  CPSV
<---  SSCN
<---  MDTM
<---  SIZE
<---  REST STREAM
<---  SYST
<--- 211 END
---> AUTH TLS
<--- 234 AUTH TLS successful
---> USER daniel
Certificate: ST=. ,CN=glftpd
 Issued by: ST=. ,CN=glftpd
WARNING: Certificate verification: Not trusted
WARNING: Certificate verification: The certificate's owner does not match 
hostname 'nicoHQ.org.'

<--- 331 Password required for daniel.
---> PASS black
<--- 230-                                _____
<--- 230- ______________________________|__   |____ 
________________________________
<--- 230- \     _      /   _     /  _     /   |    |    _     /  _     /    
_      /
<--- 230-  \    
\     /    /    /   /____/.   |    |    /    /   /____/.    /_____/
<--- 230-   \________/____/    /______    |___|____|___/    /______    |____|
<--- 230- .-=----------- /____/ ---- |____| --------- /____/ ---- |
____| -------=-.
<--- 230- 
`-=-------------------------------------------------------------------=-'
<--- 230-       `-----( Type 'site onel MESSAGE' to enter your message )-----'
<--- 230 User daniel logged in.
---> PWD
<--- 257 "/" is current directory.
---> PBSZ 0
<--- 200 PBSZ 0 successful
---> PROT P
<--- 200 Protection set to Private
---> PASV
<--- 227 Entering Passive Mode (83,165,121,9,179,140)
---- Connecting data socket to (83.165.121.9) port 45964
---- Data connection established
---> LIST
**** gnutls_handshake: Insufficient credentials for that request.
---- Closing data socket
<--- 150 Opening BINARY mode data connection for directory listing using 
SSL/TLS.
<--- 435 Failed TLS negotiation on data channel (using SSL_accept()), 
disconnected: Success.
---> PASV
<--- 227 Entering Passive Mode (83,165,121,9,136,185)
---- Connecting data socket to (83.165.121.9) port 35001
---- Data connection established
---> LIST
**** gnutls_handshake: Insufficient credentials for that request.
---- Closing data socket
<--- 150 Opening BINARY mode data connection for directory listing using 
SSL/TLS.
<--- 435 Failed TLS negotiation on data channel (using SSL_accept()), 
disconnected: Success.
---> PASV
<--- 227 Entering Passive Mode (83,165,121,9,199,200)
---- Connecting data socket to (83.165.121.9) port 51144
---- Data connection established
---> LIST
**** gnutls_handshake: Insufficient credentials for that request.
---- Closing data socket
<--- 150 Opening BINARY mode data connection for directory listing using 
SSL/TLS.
<--- 435 Failed TLS negotiation on data channel (using SSL_accept()), 
disconnected: Success.
---> PASV
<--- 227 Entering Passive Mode (83,165,121,9,229,77)
---- Connecting data socket to (83.165.121.9) port 58701
---- Data connection established
---> LIST
**** gnutls_handshake: Insufficient credentials for that request.
---- Closing data socket
.....
lftp --version
LFTP | Version 3.5.2 | Copyright (c) 1996-2006 Alexander V. Lukyanov

Included the follow patches accepted on this list
http://sources.gentoo.org/viewcvs.py/gentoo-x86/net-ftp/lftp/files/?hideattic=1
lftp-3.5.2-gnutls-segv.patch
lftp-3.5.2-install_data_hook.patch
lftp-3.5.2-noautoflags.patch
lftp-3.5.2-socklib.patch

(note the other compile fault in the bug report was un-reproducible on another 
machine. I'll notify you if I can reproduce/confirm it)

-- 
Daniel Black <[EMAIL PROTECTED]>
Gentoo Crypto/Forensics/NetMon

Attachment: pgpWvzEKChpQK.pgp
Description: PGP signature

Reply via email to