-
Mod-ssl and Apache
This is a multi-part message in MIME format.
------_=_NextPart_001_01C7F47F.4E3D277A
Content-Type: text/plain;
charset="US-ASCII"
Content-Transfer-Encoding: quoted-printable
Not sure if these messages are getting through or not. I'm
having trouble with mod_ssl 2.0.55 and apache 2.0.55. The compile and
make goes fine, but when the server is running, and connections are made
via SSL, the child processes segfault. If mod_ssl is compiled into the
apache binary statically, the processes simple hang and build up until
the server can no longer handle the load. When compiled as a shared
module, the segfaults occur. Setting the loglevel to Debug results in
these errors:
=20
[Tue Sep 11 10:10:43 2007] [info] Connection to child 2 established
(server ourserver.name.scrubbed:8040, client <client IP scrubbed>)
[Tue Sep 11 10:10:43 2007] [info] Seeding PRNG with 136 bytes of entropy
[Tue Sep 11 10:10:43 2007] [debug] ssl_engine_io.c(1512): OpenSSL: read
11/11 bytes from BIO#401a3500 [mem: 401aabb0] (BIO dump fo
llows)
[Tue Sep 11 10:10:43 2007] [debug] ssl_engine_io.c(1459):
+-----------------------------------------------------------------------
--+
[Tue Sep 11 10:10:43 2007] [debug] ssl_engine_io.c(1484): | 0000: 80 67
01 03 01 00 4e 00-00 00 10 .g....N.... =20
|
[Tue Sep 11 10:10:43 2007] [debug] ssl_engine_io.c(1490):
+-----------------------------------------------------------------------
--+
[Tue Sep 11 10:10:43 2007] [info] SSL library error 1 in handshake
(server ourserver.name.scrubbed:8040, client <client IP scrubbed>)
[Tue Sep 11 10:10:43 2007] [info] SSL Library Error: 336027900
error:140760FC:SSL routines:SSL23_GET_CLIENT_HELLO:unknown protocol
speaking not SSL to HTTPS port!?
[Tue Sep 11 10:10:43 2007] [info] Connection to child 2 closed with
abortive shutdown(server ourserver.name.scrubbed:8040, <client IP
scrubbed>)
=20
Thoughts anyone?
=20
-Aaron=20
=20
------_=_NextPart_001_01C7F47F.4E3D277A
Content-Type: text/html;
charset="US-ASCII"
Content-Transfer-Encoding: quoted-printable
<html xmlns:o=3D"urn:schemas-microsoft-com:office:office" =
xmlns:w=3D"urn:schemas-microsoft-com:office:word" =
xmlns=3D"http://www.w3.org/TR/REC-html40">
<head>
<meta http-equiv=3DContent-Type content=3D"text/html; =
charset=3Dus-ascii">
<meta name=3DGenerator content=3D"Microsoft Word 11 (filtered medium)">
<style>
<!--
/* Font Definitions */
@font-face
{font-family:"MS Mincho";
panose-1:2 2 6 9 4 2 5 8 3 4;}
@font-face
{font-family:"\@MS Mincho";
panose-1:2 2 6 9 4 2 5 8 3 4;}
/* Style Definitions */
p.MsoNormal, li.MsoNormal, div.MsoNormal
{margin:0in;
margin-bottom:.0001pt;
font-size:12.0pt;
font-family:"Times New Roman";}
a:link, span.MsoHyperlink
{color:blue;
text-decoration:underline;}
a:visited, span.MsoHyperlinkFollowed
{color:purple;
text-decoration:underline;}
span.EmailStyle17
{mso-style-type:personal-compose;
font-family:Arial;
color:windowtext;}
@page Section1
{size:8.5in 11.0in;
margin:1.0in 1.25in 1.0in 1.25in;}
div.Section1
{page:Section1;}
-->
</style>
</head>
<body lang=3DEN-US link=3Dblue vlink=3Dpurple>
<div class=3DSection1>
<p class=3DMsoNormal><font size=3D2 face=3DArial><span =
style=3D'font-size:10.0pt;
font-family:Arial'> =
Not
sure if these messages are getting through or not. I’m =
having
trouble with mod_ssl 2.0.55 and apache 2.0.55. The compile and =
make goes
fine, but when the server is running, and connections are made via SSL, =
the
child processes segfault. If mod_ssl is compiled into the apache =
binary
statically, the processes simple hang and build up until the server can =
no
longer handle the load. When compiled as a shared module, the =
segfaults
occur. Setting the loglevel to Debug results in these =
errors:<o:p></o:p></span></font></p>
<p class=3DMsoNormal><font size=3D2 face=3DArial><span =
style=3D'font-size:10.0pt;
font-family:Arial'><o:p> </o:p></span></font></p>
<p class=3DMsoNormal><font size=3D2 face=3DArial><span =
style=3D'font-size:10.0pt;
font-family:Arial'>[Tue Sep 11 10:10:43 2007] [info] Connection to child =
2
established (server ourserver.name.scrubbed:8040, client <client IP
scrubbed>)<o:p></o:p></span></font></p>
<p class=3DMsoNormal><font size=3D2 face=3DArial><span =
style=3D'font-size:10.0pt;
font-family:Arial'>[Tue Sep 11 10:10:43 2007] [info] Seeding PRNG with =
136
bytes of entropy<o:p></o:p></span></font></p>
<p class=3DMsoNormal><font size=3D2 face=3DArial><span =
style=3D'font-size:10.0pt;
font-family:Arial'>[Tue Sep 11 10:10:43 2007] [debug] =
ssl_engine_io.c(1512):
OpenSSL: read 11/11 bytes from BIO#401a3500 [mem: 401aabb0] (BIO dump =
fo<o:p></o:p></span></font></p>
<p class=3DMsoNormal><font size=3D2 face=3DArial><span =
style=3D'font-size:10.0pt;
font-family:Arial'>llows)<o:p></o:p></span></font></p>
<p class=3DMsoNormal><font size=3D2 face=3DArial><span =
style=3D'font-size:10.0pt;
font-family:Arial'>[Tue Sep 11 10:10:43 2007] [debug] =
ssl_engine_io.c(1459):
+-----------------------------------------------------------------------<=
o:p></o:p></span></font></p>
<p class=3DMsoNormal><font size=3D2 face=3DArial><span =
style=3D'font-size:10.0pt;
font-family:Arial'>--+<o:p></o:p></span></font></p>
<p class=3DMsoNormal><font size=3D2 face=3DArial><span =
style=3D'font-size:10.0pt;
font-family:Arial'>[Tue Sep 11 10:10:43 2007] [debug] =
ssl_engine_io.c(1484): |
0000: 80 67 01 03 01 00 4e 00-00 00
10  =
;
..g....N.... <o:p></o:p></span></font></p>
<p class=3DMsoNormal><font size=3D2 face=3DArial><span =
style=3D'font-size:10.0pt;
font-family:Arial'> |<o:p></o:p></span></font></p>
<p class=3DMsoNormal><font size=3D2 face=3DArial><span =
style=3D'font-size:10.0pt;
font-family:Arial'>[Tue Sep 11 10:10:43 2007] [debug] =
ssl_engine_io.c(1490):
+-----------------------------------------------------------------------<=
o:p></o:p></span></font></p>
<p class=3DMsoNormal><font size=3D2 face=3DArial><span =
style=3D'font-size:10.0pt;
font-family:Arial'>--+<o:p></o:p></span></font></p>
<p class=3DMsoNormal><font size=3D2 face=3DArial><span =
style=3D'font-size:10.0pt;
font-family:Arial'>[Tue Sep 11 10:10:43 2007] [info] SSL library error 1 =
in
handshake (server ourserver.name.scrubbed:8040, client <client IP
scrubbed>)<o:p></o:p></span></font></p>
<p class=3DMsoNormal><font size=3D2 face=3DArial><span =
style=3D'font-size:10.0pt;
font-family:Arial'>[Tue Sep 11 10:10:43 2007] [info] SSL Library Error:
336027900 error:140760FC:SSL routines:SSL23_GET_CLIENT_HELLO:unknown =
protocol<o:p></o:p></span></font></p>
<p class=3DMsoNormal><font size=3D2 face=3DArial><span =
style=3D'font-size:10.0pt;
font-family:Arial'> speaking not SSL to HTTPS =
port!?<o:p></o:p></span></font></p>
<p class=3DMsoNormal><font size=3D2 face=3DArial><span =
style=3D'font-size:10.0pt;
font-family:Arial'>[Tue Sep 11 10:10:43 2007] [info] Connection to child =
2
closed with abortive shutdown(server ourserver.name.scrubbed:8040, =
<client IP
scrubbed>)<o:p></o:p></span></font></p>
<p class=3DMsoNormal><font size=3D2 face=3DArial><span =
style=3D'font-size:10.0pt;
font-family:Arial'><o:p> </o:p></span></font></p>
<p class=3DMsoNormal><font size=3D2 face=3DArial><span =
style=3D'font-size:10.0pt;
font-family:Arial'>Thoughts anyone?<o:p></o:p></span></font></p>
<p class=3DMsoNormal><font size=3D2 face=3DArial><span =
style=3D'font-size:10.0pt;
font-family:Arial'><o:p> </o:p></span></font></p>
<p class=3DMsoNormal><font size=3D2 face=3DArial><span =
style=3D'font-size:10.0pt;
font-family:Arial'>-Aaron</span></font> <o:p></o:p></p>
<p class=3DMsoNormal><font size=3D3 face=3D"Times New Roman"><span =
style=3D'font-size:
12.0pt'><o:p> </o:p></span></font></p>
</div>
</body>
</html>
------_=_NextPart_001_01C7F47F.4E3D277A--
______________________________________________________________________
Apache Interface to OpenSSL (mod_ssl) [url]www.modssl.org[/url]
User Support Mailing List [email]modssl-users@modssl.org[/email]
Automated List Manager [email]majordomo@modssl.org[/email]