From owner-freebsd-questions@FreeBSD.ORG Tue Jul 5 23:00:19 2005 Return-Path: X-Original-To: freebsd-questions@freebsd.org Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 1A1C416A41C for ; Tue, 5 Jul 2005 23:00:19 +0000 (GMT) (envelope-from do.you.got.root@gmail.com) Received: from wproxy.gmail.com (wproxy.gmail.com [64.233.184.204]) by mx1.FreeBSD.org (Postfix) with ESMTP id C01F943D45 for ; Tue, 5 Jul 2005 23:00:18 +0000 (GMT) (envelope-from do.you.got.root@gmail.com) Received: by wproxy.gmail.com with SMTP id 36so1011396wra for ; Tue, 05 Jul 2005 16:00:18 -0700 (PDT) DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=beta; d=gmail.com; h=received:message-id:date:from:reply-to:to:subject:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=oymLK6BTFqtnbfIOQ0PXGL69EW4TJiItkAC/kUCMZO2NnHHg2bqkZ1vIHR6iSrjnGqQ79HMks+vz0hXMU82K30pi3zUwbZGK2sfW4iPxb7XIsN4YvDWGKX5V9JkearJWcy2WYoTpCwc7qsWyavLf+s/xz/BzCqKx2twBce7tfcM= Received: by 10.54.8.51 with SMTP id 51mr2887256wrh; Tue, 05 Jul 2005 16:00:17 -0700 (PDT) Received: by 10.54.78.3 with HTTP; Tue, 5 Jul 2005 16:00:17 -0700 (PDT) Message-ID: Date: Tue, 5 Jul 2005 19:00:17 -0400 From: Todd Suits To: freebsd-questions@freebsd.org In-Reply-To: Mime-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable Content-Disposition: inline References: <200507051119.12128.algould@datawok.com> <20050705202435.628d4783.albi@scii.nl> Subject: Re: Apache 2 SSL Error X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list Reply-To: Todd Suits List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 05 Jul 2005 23:00:19 -0000 Sorry for all the responses but Googling has brought up possible problems or questions. I am starting Apache with /usr/local/sbin/apachectl startssl is this correct for the FreeBSD compiled version? On 7/5/05, Todd Suits wrote: > As an update the command: $ openssl s_client -connect localhost:443 > -state -debug from the Apache documents, produces the following > output: >=20 > killians# openssl s_client -connect localhost:443 -state -debug > CONNECTED(00000003) > SSL_connect:before/connect initialization > write to 0809A500 [080B1000] (142 bytes =3D> 142 (0x8E)) > 0000 - 80 8c 01 03 01 00 63 00-00 00 20 00 00 39 00 00 ......c... ..9.. > 0010 - 38 00 00 35 00 00 16 00-00 13 00 00 0a 07 00 c0 8..5............ > 0020 - 00 00 33 00 00 32 00 00-2f 03 00 80 00 00 66 00 ..3..2../.....f. > 0030 - 00 05 00 00 04 01 00 80-08 00 80 00 00 63 00 00 .............c.. > 0040 - 62 00 00 61 00 00 15 00-00 12 00 00 09 06 00 40 b..a...........@ > 0050 - 00 00 65 00 00 64 00 00-60 00 00 14 00 00 11 00 ..e..d..`....... > 0060 - 00 08 00 00 06 04 00 80-00 00 03 02 00 80 b3 46 ...............F > 0070 - 18 14 e5 bd de 65 4e 39-1c 60 c4 c2 81 f5 bb 8a .....eN9.`...... > 0080 - 68 00 e0 db 23 c8 ad c2-44 23 81 83 51 93 h...#...D#..Q. > SSL_connect:SSLv2/v3 write client hello A > read from 0809A500 [080B7000] (7 bytes =3D> 7 (0x7)) > 0000 - 3c 21 44 4f 43 54 59 SSL_connect:error in SSLv2/v3 read server hello A > 50689:error:140770FC:SSL routines:SSL23_GET_SERVER_HELLO:unknown > protocol:/usr/s > rc/secure/lib/libssl/../../../crypto/openssl/ssl/s23_clnt.c:475: >=20 > I'm just not sure how to deal with it. >=20 >=20 > On 7/5/05, Todd Suits wrote: > > I have no problem accessing other https sites and there is not a > > router, the jail is set up on a dedicated server in a data center > > where serives like this are provided. > > > > On 7/5/05, albi@scii.nl wrote: > > > On Tue, 5 Jul 2005 14:21:03 -0400 > > > Todd Suits wrote: > > > > > > > https:// is what im trying to use. http:// just brings my normal > > > > index.html page. > > > ---cut--- > > > > > > I get the following error in httpd-error.log: > > > > > > > > > > > > [Tue Jul 05 10:15:28 2005] [error] [client 24.123.123.123] Inva= lid > > > > > > method in request \x80g\x01\x03 > > > > > > are you using a hardware-router or something ? > > > if so, did you open the 443 port on that router and set up > > > portforwarding to port 443 ? > > > > > > > > >