Bug#694696: [Pkg-openssl-devel] Bug#694696: OpenSSL: TLS 1.1 and 1.2 client - invalid Client Hello during renegotiation

2012-11-30 Thread Kurt Roeckx
Anyway, as far as I know this bug is fixed, so you'll need to
convince me that there still is a bug somewhere.  It would help
if you showed examples of what you do, like starting 1 s_server
and 1 s_client ...


Kurt

On Fri, Nov 30, 2012 at 06:51:22AM +, von Wittich, Christoph wrote:
 Because I used  openssl s_client -tls1_1 -connect HOST for testing
 
 Kind regards,
 Christoph von Wittich
 
 -Ursprüngliche Nachricht-
 Von: Kurt Roeckx [mailto:k...@roeckx.be] 
 Gesendet: Donnerstag, 29. November 2012 19:06
 An: von Wittich, Christoph; 694...@bugs.debian.org
 Betreff: Re: [Pkg-openssl-devel] Bug#694696: OpenSSL: TLS 1.1 and 1.2 client 
 - invalid Client Hello during renegotiation
 
 On Thu, Nov 29, 2012 at 09:50:27AM +, von Wittich, Christoph wrote:
  Package: openssl
  Version: 1.0.1c-4
  
  http://rt.openssl.org/Ticket/Display.html?id=2828
 
 That's #675990, so that fixed in the version you're reporting against.
 
  TLSv1.2 with OpenSSL:
  
  Client:
  
  Content Type: Handshake (22)
  Version: TLS 1.0 (0x0301)
  Handshake Protocol: Client Hello
  Handshake Type: Client Hello (1)
  Version: TLS 1.1 (0x0302)
 
 Why is it only announcing 1.1 while it supports 1.2?
 
 
 
 Kurt
 


-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#694696: OpenSSL: TLS 1.1 and 1.2 client - invalid Client Hello during renegotiation

2012-11-29 Thread von Wittich, Christoph
Package: openssl
Version: 1.0.1c-4

http://rt.openssl.org/Ticket/Display.html?id=2828

TLSv1.2 with OpenSSL:

Client:

Content Type: Handshake (22)
Version: TLS 1.0 (0x0301)
Handshake Protocol: Client Hello
Handshake Type: Client Hello (1)
Version: TLS 1.1 (0x0302)

Server responds with:

Content Type: Handshake (22)
Version: TLS 1.0 (0x0301)
Handshake Protocol: Server Hello
Handshake Type: Server Hello (2)
Version: TLS 1.0 (0x0301)


è 3073415368:error:1408F10B:SSL routines:SSL3_GET_RECORD:wrong version 
number:s3_pkt.c:340:


TLS 1.2 with Internet Explorer 9 on Windows 7 behaves different:

Client:

Content Type: Handshake (22)
Version: TLS 1.1 (0x0302)
Handshake Protocol: Client Hello
Handshake Type: Client Hello (1)
Version: TLS 1.1 (0x0302)

Server responds with:

Content Type: Handshake (22)
Version: TLS 1.1 (0x0302)
Handshake Protocol: Server Hello
Handshake Type: Server Hello (2)
Version: TLS 1.1 (0x0302)


è No Error

Mit freundlichen Grüßen
i.A. Christoph von Wittich

--
Christoph von Wittich   Büro Bautzen
EDV-Verantwortlicher  Zeppelinstraße 15
Tel. +49 3591 67 03-56   02625 Bautzen
   Fax +49 3591 
6703 918

Hentschke Bau GmbH  Geschäftsführer
Zeppelinstraße 15  Jörg Drews
02625 Bautzen Thomas Alscher
www.hentschke-bau.dehttp://www.hentschke-bau.de HRB 6535 Dresden



Bug#694696: [Pkg-openssl-devel] Bug#694696: OpenSSL: TLS 1.1 and 1.2 client - invalid Client Hello during renegotiation

2012-11-29 Thread Kurt Roeckx
On Thu, Nov 29, 2012 at 09:50:27AM +, von Wittich, Christoph wrote:
 Package: openssl
 Version: 1.0.1c-4
 
 http://rt.openssl.org/Ticket/Display.html?id=2828

That's #675990, so that fixed in the version you're reporting
against.

 TLSv1.2 with OpenSSL:
 
 Client:
 
 Content Type: Handshake (22)
 Version: TLS 1.0 (0x0301)
 Handshake Protocol: Client Hello
 Handshake Type: Client Hello (1)
 Version: TLS 1.1 (0x0302)

Why is it only announcing 1.1 while it supports 1.2?



Kurt


-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org