From owner-freebsd-stable@freebsd.org Wed Aug 26 05:42:45 2015 Return-Path: Delivered-To: freebsd-stable@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id 2A78F9C03A3 for ; Wed, 26 Aug 2015 05:42:45 +0000 (UTC) (envelope-from delphij@delphij.net) Received: from anubis.delphij.net (anubis.delphij.net [64.62.153.212]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client CN "anubis.delphij.net", Issuer "StartCom Class 1 Primary Intermediate Server CA" (not verified)) by mx1.freebsd.org (Postfix) with ESMTPS id 0C74C8AC for ; Wed, 26 Aug 2015 05:42:44 +0000 (UTC) (envelope-from delphij@delphij.net) Received: from Xins-MBP.home.us.delphij.net (c-71-202-112-39.hsd1.ca.comcast.net [71.202.112.39]) (using TLSv1 with cipher ECDHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by anubis.delphij.net (Postfix) with ESMTPSA id AFC281D9EF; Tue, 25 Aug 2015 22:42:41 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=delphij.net; s=anubis; t=1440567763; x=1440582163; bh=esD3e/FFlmgUG28lRa+tJdq+NjrpIPq4hgVMMBFoM4Y=; h=Subject:To:References:Cc:From:Date:In-Reply-To; b=tvPqbW3E27TladljVYpVyTsBLa3iFObhZ0vAIo6fu/EBSHu9NEYlJx8gLXBFLEyCG V4j/SMJgzglgXofi1+6YEg4yg15wByN7YQgfdh/mXFvgPBdbAIiYSPFKMuw+dM5U9M TEbnJuAfKdOgRWOq9jumEr5MIzX9FdtEhZjkkjGM= Subject: Re: Error upgrading from 10.1-RELEASE to 10.2-RELEASE To: Andreas Ott , Christian Kratzer References: <55DAEA43.7020804@cloverinformatica.it> <7A2955B8-82A4-4F9E-A9C2-BEDFDACEA121@lists.zabbadoz.net> <20150825220341.A31324@naund.org> Cc: Maurizio Vairani , "Bjoern A. Zeeb" , FreeBSD stable , jungle Boogie , pkubaj@riseup.net From: Xin Li X-Enigmail-Draft-Status: N1110 Message-ID: <55DD51CC.6000906@delphij.net> Date: Tue, 25 Aug 2015 22:42:36 -0700 User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.10; rv:38.0) Gecko/20100101 Thunderbird/38.2.0 MIME-Version: 1.0 In-Reply-To: <20150825220341.A31324@naund.org> Content-Type: multipart/signed; micalg=pgp-sha512; protocol="application/pgp-signature"; boundary="RRIM56d6LNGpscUaJHxfCWpvkFVXpbxGp" X-BeenThere: freebsd-stable@freebsd.org X-Mailman-Version: 2.1.20 Precedence: list List-Id: Production branch of FreeBSD source code List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 26 Aug 2015 05:42:45 -0000 This is an OpenPGP/MIME signed message (RFC 4880 and 3156) --RRIM56d6LNGpscUaJHxfCWpvkFVXpbxGp Content-Type: text/plain; charset=windows-1252 Content-Transfer-Encoding: quoted-printable Hi, We believe this is because phttpget (the pipelined HTTP client that freebsd-update and portsnap uses) was unable to get the right file(s) from the server, that sometimes the client would get wrong file from the server, and it's not reproducable when requesting again. We have then able to develop a test case to reliably provoke this on update2.FreeBSD.o= rg. Thanks for Peter's help, we have narrowed down the problem to a specific version (1.4.36) of lighttpd (*), which update2.FreeBSD.org is using, and the problem should have been resolved at this time after the web server is replaced with nginx. Please let us (security-officer@, clusteradm@) know if the problem still persists. Cheers, (*) We are not yet certain if it was a bug with lighttpd itself, or a bug with phttpget that made newer versions of lighttpd unhappy. It's worthy to find it out and maintainer is cc'ed. --RRIM56d6LNGpscUaJHxfCWpvkFVXpbxGp Content-Type: application/pgp-signature; name="signature.asc" Content-Description: OpenPGP digital signature Content-Disposition: attachment; filename="signature.asc" -----BEGIN PGP SIGNATURE----- iQIcBAEBCgAGBQJV3VHQAAoJEJW2GBstM+nsO30P/i/FQ2v0ifI67OVw6dIbi4XV QaQrVuNkXBUW2StSPicyJvhiR7313cyg7OzxRekEG1w0zws/NrLUCYmwCFom4HRh A6kZ3RTR3I/SC3J3VYIlVUCsIxuOkpsbZ0Kew0WUjiEAHUdmUYkqhePstDBfLSP7 4pfALg1SLHNHjaVvIqyqu+3q+WzoR+nWs5biJ5vzOURUZwpW/5KdiNWCtyXQs6rm PqTn9RhpaeP/ffy4tuMEkzXP7EAB20lRlRnbYVFEDuD8mvNuPzT0BBu3TpUaHg5g PSeu8mVKJdx7hpIRm8BlokwGThF6qhcDvJkHi3hMjz+JY3CeTDTmOSSoY9Wv+Iy1 ubdr4A8HP38ctqMoMyEA327WDZrCqXJh1NvTwzRc0wAGbvcce8kji5OBA5D32n7v zs5uaYXIbiK39NM+UauDZwFZnBB2yfUqCQNvh85MDjLlyI9+q+At3Xrtl6GNize1 CkTEyWyHooUQkD2ydw6KxSUSqm7Ua3yUXKmsrxfUpCEvhiwOBh0WSv/te4YxDD+G RQQA+dtG+7taKXuXslwzPTyQFVjeSlSRX83TSIwZvXp1/S4go4N/qqIuxjlLrFtQ tcKGHU6D0cTk2t+CeIJBrbSsB8kv0U7rd7EceSTEvar3xLDHVDPvksQZ0d91/Q6J sgtf2lFcIq8OY59gw/V8 =PSTc -----END PGP SIGNATURE----- --RRIM56d6LNGpscUaJHxfCWpvkFVXpbxGp--