From owner-freebsd-bugs@FreeBSD.ORG Sun Apr 6 12:20:02 2008 Return-Path: Delivered-To: freebsd-bugs@hub.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 7056D1065674 for ; Sun, 6 Apr 2008 12:20:02 +0000 (UTC) (envelope-from gnats@FreeBSD.org) Received: from freefall.freebsd.org (freefall.freebsd.org [IPv6:2001:4f8:fff6::28]) by mx1.freebsd.org (Postfix) with ESMTP id 54BBB8FC21 for ; Sun, 6 Apr 2008 12:20:02 +0000 (UTC) (envelope-from gnats@FreeBSD.org) Received: from freefall.freebsd.org (gnats@localhost [127.0.0.1]) by freefall.freebsd.org (8.14.2/8.14.2) with ESMTP id m36CK2Sx017889 for ; Sun, 6 Apr 2008 12:20:02 GMT (envelope-from gnats@freefall.freebsd.org) Received: (from gnats@localhost) by freefall.freebsd.org (8.14.2/8.14.1/Submit) id m36CK2xq017887; Sun, 6 Apr 2008 12:20:02 GMT (envelope-from gnats) Date: Sun, 6 Apr 2008 12:20:02 GMT Message-Id: <200804061220.m36CK2xq017887@freefall.freebsd.org> To: freebsd-bugs@FreeBSD.org From: "M. Kozuka" Cc: Subject: Re: misc/122479: In the systems subsequent to FreeBSD7, openssl is older than 0.9.8g. X-BeenThere: freebsd-bugs@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list Reply-To: "M. Kozuka" List-Id: Bug reports List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sun, 06 Apr 2008 12:20:02 -0000 The following reply was made to PR misc/122479; it has been noted by GNATS. From: "M. Kozuka" To: bug-followup@FreeBSD.org, ma-kun@kozuka.jp Cc: Subject: Re: misc/122479: In the systems subsequent to FreeBSD7, openssl is older than 0.9.8g. Date: Sun, 06 Apr 2008 20:44:19 +0900 I overlooked this fix. However, there are still some problems in FreeBSD 7.0-RELEASE's openssl around DTLS. The below commands (openssl s_server) will cause a SEGV on my machine. == % /usr/bin/openssl s_server -debug -dtls1 -accept 8443 -cert \ /usr/src/crypto/openssl/demos/sign/cert.pem -key \ /usr/src/crypto/openssl/demos/sign/key.pem % /usr/local/bin/openssl s_client -dtls1 -debug -connect \ 127.0.0.1:8443 == If you omit "-debug", you will not meet a SEGV. But you cannot communicate each other yet. If you use /usr/local/bin/openssl on both side, you will communicate each other correctly. /usr/local/bin/openssl is installed through the ports (security/openssl). == % /usr/bin/openssl version OpenSSL 0.9.8e 23 Feb 2007 % /usr/local/bin/openssl version OpenSSL 0.9.8g 19 Oct 2007 ==