>If you run 's_client' with the '-debug' option, you will see that
>this server (ebmx.extra.daimlerchrysler.com:443) sends a cleartext
>string starting with 'HTTP/' when it is supposed to send SSL 3.0
>encrypted data.  This is where the 'wrong version number' error
>message comes from -- 0x54 0x54 (ASCII 'TT') is interpreted as
>a version number by OpenSSL as required by the protocol.
>
>So the server is obviously very broken, OpenSSL is not to blame.

Thanks for the feedback.  I should have performed a -debug before creating a 
bug-fix ticket.

Any idea why web browsers such as MSIE and Opera work okay with the server? 
I'm guessing that these browsers ignore invalid records. Would there be any 
way of doing this in OpenSSL? i.e. a flag that would cause invalid records 
to be ignored?

_________________________________________________________
[EMAIL PROTECTED]


_________________________________________________________________
MSN Photos is the easiest way to share and print your photos: 
http://photos.msn.com/support/worldwide.aspx

______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
Development Mailing List                       [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to