Full_Name: Marc A. Mnich
Version: 2.2.8
OS: Linux 2.0.36
Submission from: a05-22.inetnow.net (209.94.2.150)
Apache 1.3.6, mod_ssl-2.2.8, OpenSSl-0.9.2b, RSAref-2.0
I/O errors whenever attempting to hit the refresh on both EI and Netscape.
Also, some graphics images seem to get corrupted and show up as broken links --
no pattern found. Simple changes on some html pages cause them to fail with the
I/O error.
I was able to capture the error using s_client. Error:(see full debug listing
below)
error:1408F107:SSL routines:SSL3_GET_RECORD:wrong version number:s3_pkt.c:
----------------------------------
[root@einstein bin]# ./s_client -connect localhost:443 -state -debug
CONNECTED(00000003)
SSL_connect:before SSL initalisation
write to 080DE188 [080DEC58] (109 bytes => 109 (0x6D))
0000 - 80 6b 01 03 01 00 42 00-00 00 20 00 00 16 00 00 .k....B... .....
0010 - 13 00 00 0a 00 00 07 00-00 05 00 00 04 00 00 15 ................
0020 - 00 00 12 00 00 09 07 00-c0 05 00 80 03 00 80 01 ................
0030 - 00 80 08 00 80 06 00 40-00 00 14 00 00 11 00 00 .......@........
0040 - 08 00 00 06 00 00 03 04-00 80 02 00 80 7e cb 11 .............~..
0050 - a4 8b 7a 38 21 7c 5a 75-22 ef 5f f6 ec 35 79 64 ..z8!|Zu"._..5yd
0060 - f9 12 e8 57 68 e0 a9 92-30 dc 67 6e d8 ...Wh...0.gn.
SSL_connect:SSLv2/v3 write client hello A
read from 080DE188 [080E41B8] (7 bytes => 7 (0x7))
0000 - 16 03 01 00 4a 02 ....J.
0007 - <SPACES/NULS>
read from 080DE188 [080E41BF] (72 bytes => 72 (0x48))
0000 - 00 46 03 01 37 1a 63 f5-8d e5 e8 4a 82 e4 c9 32 .F..7.c....J...2
0010 - 05 c1 43 67 5e 2c f4 07-06 e2 a1 6c 35 0d 57 0f ..Cg^,.....l5.W.
0020 - 4f 44 aa 6c 20 9d a9 fe-53 91 a2 e8 c8 c9 90 a8 OD.l ...S.......
0030 - 4b 9b be f1 00 ee 66 b6-b4 e0 80 d4 c6 4b 0d be K.....f......K..
0040 - a9 fd 70 a6 53 00 0a ..p.S..
0048 - <SPACES/NULS>
SSL_connect:SSLv3 read server hello A
read from 080DE188 [080E41B8] (5 bytes => 5 (0x5))
0000 - 16 03 01 02 5f ...._
read from 080DE188 [080E41BD] (607 bytes => 607 (0x25F))
0000 - 0b 00 02 5b 00 02 58 00-02 55 30 82 02 51 30 82 ...[..X..U0..Q0.
0010 - 01 fb 02 10 73 ee 04 47-14 7c f4 2f a6 b0 f7 b2 ....s..G.|./....
0020 - c5 28 b1 52 30 0d 06 09-2a 86 48 86 f7 0d 01 01 .(.R0...*.H.....
0030 - 04 05 00 30 81 a9 31 16-30 14 06 03 55 04 0a 13 ...0..1.0...U...
0040 - 0d 56 65 72 69 53 69 67-6e 2c 20 49 6e 63 31 47 .VeriSign, Inc1G
0050 - 30 45 06 03 55 04 0b 13-3e 77 77 77 2e 76 65 72 0E..U...>www.ver
0060 - 69 73 69 67 6e 2e 63 6f-6d 2f 72 65 70 6f 73 69 isign.com/reposi
0070 - 74 6f 72 79 2f 54 65 73-74 43 50 53 20 49 6e 63 tory/TestCPS Inc
0080 - 6f 72 70 2e 20 42 79 20-52 65 66 2e 20 4c 69 61 orp. By Ref. Lia
0090 - 62 2e 20 4c 54 44 2e 31-46 30 44 06 03 55 04 0b b. LTD.1F0D..U..
00a0 - 13 3d 46 6f 72 20 56 65-72 69 53 69 67 6e 20 61 .=For VeriSign a
00b0 - 75 74 68 6f 72 69 7a 65-64 20 74 65 73 74 69 6e uthorized testin
00c0 - 67 20 6f 6e 6c 79 2e 20-4e 6f 20 61 73 73 75 72 g only. No assur
00d0 - 61 6e 63 65 73 20 28 43-29 56 53 31 39 39 37 30 ances (C)VS19970
00e0 - 1e 17 0d 39 39 30 34 31-37 30 30 30 30 30 30 5a ...990417000000Z
00f0 - 17 0d 39 39 30 35 30 31-32 33 35 39 35 39 5a 30 ..990501235959Z0
0100 - 6a 31 0b 30 09 06 03 55-04 06 13 02 55 53 31 10 j1.0...U....US1.
0110 - 30 0e 06 03 55 04 08 13-07 47 65 6f 72 67 69 61 0...U....Georgia
0120 - 31 11 30 0f 06 03 55 04-07 14 08 4d 61 72 69 65 1.0...U....Marie
0130 - 74 74 61 31 12 30 10 06-03 55 04 0a 14 09 55 43 tta1.0...U....UC
0140 - 45 2c 20 49 6e 63 2e 31-0c 30 0a 06 03 55 04 0b E, Inc.1.0...U..
0150 - 14 03 57 65 62 31 14 30-12 06 03 55 04 03 14 0b ..Web1.0...U....
0160 - 77 77 77 2e 75 63 65 2e-63 6f 6d 30 81 9f 30 0d www.uce.com0..0.
0170 - 06 09 2a 86 48 86 f7 0d-01 01 01 05 00 03 81 8d ..*.H...........
0180 - 00 30 81 89 02 81 81 00-a0 fe d4 91 fd 6b a8 e6 .0...........k..
0190 - ff 4d 90 54 2b 6e e2 21-eb 33 41 5e 1c 10 dd dc .M.T+n.!.3A^....
01a0 - c2 6a 63 0e cd 7d 8a 9f-75 5d 5a 1f 71 dd 15 ae .jc..}..u]Z.q...
01b0 - 50 9a 08 cb d8 20 bf 52-23 9c d4 b8 a4 bc 1a e5 P.... .R#.......
01c0 - 5b 05 05 63 b5 1c 76 e7-92 01 72 f2 5b 63 c1 c5 [..c..v...r.[c..
01d0 - 5d b7 c9 77 8e 88 06 22-08 0f 6f 89 b5 05 27 4e ]..w..."..o...'N
01e0 - 1a 6a 9a eb e6 ff 8e f7-62 26 8a 67 18 a6 22 86 .j......b&.g..".
01f0 - 9c bd 46 60 7f 44 7c ae-4f f6 bc b6 6f 44 f1 16 ..F`.D|.O...oD..
0200 - 48 20 86 eb 49 f8 86 9b-02 03 01 00 01 30 0d 06 H ..I........0..
0210 - 09 2a 86 48 86 f7 0d 01-01 04 05 00 03 41 00 99 .*.H.........A..
0220 - 97 c9 1b fc f8 68 9e 6c-f2 8b d1 fe bd 4e 62 f0 .....h.l.....Nb.
0230 - aa 6f 38 38 8a b7 6b 53-cc 53 e6 1f 1f 31 ac a6 .o88..kS.S...1..
0240 - 89 65 23 10 59 90 c2 5f-e0 af 3f ec 35 12 c7 64 .e#.Y.._..?.5..d
0250 - eb fb 55 66 c4 52 82 d9-0c 3c fe 4a 23 88 30 ..Uf.R...<.J#.0
depth=0 /C=US/ST=Georgia/L=Marietta/O=UCE, Inc./OU=Web/CN=www.uce.com
verify error:num=20:unable to get local issuer certificate
verify return:1
depth=0 /C=US/ST=Georgia/L=Marietta/O=UCE, Inc./OU=Web/CN=www.uce.com
verify error:num=21:unable to verify the first certificate
verify return:1
SSL_connect:SSLv3 read server certificate A
read from 080DE188 [080E41B8] (5 bytes => 5 (0x5))
0000 - 16 03 01 00 04 .....
read from 080DE188 [080E41BD] (4 bytes => 4 (0x4))
0000 - 0e .
0004 - <SPACES/NULS>
SSL_connect:SSLv3 read server done A
write to 080DE188 [080ED650] (139 bytes => 139 (0x8B))
0000 - 16 03 01 00 86 10 00 00-82 00 80 13 b8 8d 8e fc ................
0010 - e5 49 54 4f 6a af e1 0e-36 b8 2b 07 7d 36 8c 2f .ITOj...6.+.}6./
0020 - db c5 b1 6d 39 3c f1 b1-9e c1 c5 db 53 f5 eb 80 ...m9<......S...
0030 - ca 58 c2 8a dd 51 ae d1-49 5b ac dd 94 70 3b 14 .X...Q..I[...p;.
0040 - e8 e1 b0 e3 6b 19 fc e4-15 47 4e 9f 30 85 8f ca ....k....GN.0...
0050 - c4 87 f1 b2 d2 c8 e9 2c-10 1b 83 82 c4 2b fe f8 .......,.....+..
0060 - a0 8c 24 df 09 f5 d7 a1-dd f9 d0 9d 54 f7 c1 9f ..$.........T...
0070 - b3 4a 81 52 f6 96 16 98-65 ba a9 6d c4 a6 37 08 .J.R....e..m..7.
0080 - bf 6e 15 2c 3b 08 f8 54-90 bb 82 .n.,;..T...
SSL_connect:SSLv3 write client key exchange A
write to 080DE188 [080ED650] (6 bytes => 6 (0x6))
0000 - 14 03 01 00 01 01 ......
SSL_connect:SSLv3 write change cipher spec A
write to 080DE188 [080ED650] (45 bytes => 45 (0x2D))
0000 - 16 03 01 00 28 d1 e9 1c-64 35 8e 67 2b cc 98 fc ....(...d5.g+...
0010 - 78 f3 a3 37 26 bc 0c 10-00 88 5c 67 ef c4 cf 69 x..7&.....\g...i
0020 - 3d 9d 23 a9 b8 22 11 d0-87 d4 d8 fe e7 =.#..".......
SSL_connect:SSLv3 write finished A
SSL_connect:SSLv3 flush data
read from 080DE188 [080E41B8] (5 bytes => 5 (0x5))
0000 - 14 03 01 00 01 .....
read from 080DE188 [080E41BD] (1 bytes => 1 (0x1))
0000 - 01 .
read from 080DE188 [080E41B8] (5 bytes => 5 (0x5))
0000 - 16 03 01 00 28 ....(
read from 080DE188 [080E41BD] (40 bytes => 40 (0x28))
0000 - 4d b4 d4 f8 45 6d 7b 28-c1 e0 65 58 81 0e 1f 57 M...Em{(..eX...W
0010 - be 0d 22 48 c1 83 29 37-bc ee ec 71 34 f6 da 96 .."H..)7...q4...
0020 - 67 36 e9 e4 5f d7 0e 3a- g6.._..:
SSL_connect:SSLv3 read finished A
---
Certficate chain
0 s:/C=US/ST=Georgia/L=Marietta/O=UCE, Inc./OU=Web/CN=www.uce.com
i:/O=VeriSign, Inc/OU=www.verisign.com/repository/TestCPS Incorp. By Ref.
Lia
b. LTD./OU=For VeriSign authorized testing only. No assurances (C)VS1997
---
Server certificate
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
subject=/C=US/ST=Georgia/L=Marietta/O=UCE, Inc./OU=Web/CN=www.uce.com
issuer=/O=VeriSign, Inc/OU=www.verisign.com/repository/TestCPS Incorp. By Ref.
L
iab. LTD./OU=For VeriSign authorized testing only. No assurances (C)VS1997
---
No client certificate CA names sent
---
SSL handshake has read 751 bytes and written 299 bytes
---
New, TLSv1/SSLv3, Cipher is DES-CBC3-SHA
Server public key is 1024 bit
SSL-Session:
Protocol : TLSv1
Cipher : DES-CBC3-SHA
Session-ID: 9DA9FE5391A2E8C8C990A84B9BBEF100EE66B6B4E080D4C64B0DBEA9FD70A653
Master-Key: 7996D8A57095F6424868834AD954EAB31BD240C1E24E1364323A369D97B31388
B193C0CAC6277B11E12C7BD68B031178
Key-Arg : None
Start Time: 924476405
Timeout : 7200 (sec)
---
GET / HTTP/1.0
write to 080DE188 [080E89C8] (45 bytes => 45 (0x2D))
0000 - 17 03 01 00 28 68 8c 8e-43 ec af 0e f2 27 ca 7b ....(h..C....'.{
0010 - d0 ea 2a 29 6d 32 fa c9-fd fc 4e d4 07 9c 69 d1 ..*)m2....N...i.
0020 - 5b 7d 22 23 95 ee fb c4-98 0d 01 1b 60 [}"#........`
write to 080DE188 [080E89C8] (29 bytes => 29 (0x1D))
0000 - 17 03 01 00 18 b9 7e 9c-64 d5 b5 25 58 f9 5b ad ......~.d..%X.[.
0010 - f3 ec 6a cc da 2b 4f b3-9d 8e 46 5d db ..j..+O...F].
read from 080DE188 [080E41B8] (5 bytes => 5 (0x5))
0000 - 48 54 54 50 2f HTTP/
write to 080DE188 [080E89C8] (29 bytes => 29 (0x1D))
0000 - 15 54 54 00 18 a8 6c cd-7f b1 3e 45 af b0 30 71 .TT...l...>E..0q
0010 - 67 46 f8 c0 91 fd ee be-e1 8a 8e a2 7c gF..........|
SSL3 alert write:fatal:unknown
31994:error:1408F107:SSL routines:SSL3_GET_RECORD:wrong version
number:s3_pkt.c:
265:
write to 080DE188 [080E89C8] (29 bytes => 29 (0x1D))
0000 - 15 54 54 00 18 08 49 e0-1b 93 6d 10 1b 32 79 a8 .TT...I...m..2y.
0010 - 41 67 54 e4 21 40 a6 a1-b5 e2 08 87 9d AgT.!@.......
SSL3 alert write:warning:close notify
[root@einstein bin]#
______________________________________________________________________
Apache Interface to OpenSSL (mod_ssl) www.engelschall.com/sw/mod_ssl/
Official Support Mailing List [EMAIL PROTECTED]
Automated List Manager [EMAIL PROTECTED]