[Help-gnutls] Re: Key usage violation in certificate
Simon Josefsson
simon at josefsson.org
Fri Oct 31 00:01:42 CET 2008
"Kevin P. Fleming" <kpfleming at digium.com> writes:
> I'm fighting the same problem other Subversion users have been the past
> few months, with the switch to Subversion on Ubuntu being built against
> GNUTLS instead of OpenSSL, users cannot connect to our server.
>
> I've rebuilt the server's cert with the X509v3 Key Usage set to 'Digital
> Signature' and 'Key Encipherment', but that has not solved the problem.
>
> Can someone please connect to https://origsvn.digium.com and tell me why
> GNUTLS won't accept the server's cert? Thanks.
I can't seem to connect to that server using GnuTLS or OpenSSL. I don't
think this is a certificate validation error, it seems the handshake
fails. What does the server logs say?
/Simon
jas at mocca:~$ openssl s_client -connect origsvn.digium.com:443
CONNECTED(00000003)
depth=1 /C=US/ST=Alabama/L=Huntsville/O=Digium, Inc./OU=Asterisk Development Team/CN=Digium SVN CA/emailAddress=asteriskteam at digium.com
verify error:num=19:self signed certificate in certificate chain
verify return:0
16123:error:14094410:SSL routines:SSL3_READ_BYTES:sslv3 alert handshake failure:s3_pkt.c:1053:SSL alert number 40
16123:error:140790E5:SSL routines:SSL23_WRITE:ssl handshake failure:s23_lib.c:188:
jas at mocca:~$ gnutls-cli -p 443 origsvn.digium.com -d 4711
Resolving 'origsvn.digium.com'...
Connecting to '216.207.245.42:443'...
|<3>| HSK[8fdc0f8]: Keeping ciphersuite: DHE_RSA_AES_128_CBC_SHA1
|<3>| HSK[8fdc0f8]: Keeping ciphersuite: DHE_RSA_AES_256_CBC_SHA1
|<3>| HSK[8fdc0f8]: Keeping ciphersuite: DHE_RSA_3DES_EDE_CBC_SHA1
|<3>| HSK[8fdc0f8]: Keeping ciphersuite: DHE_DSS_AES_128_CBC_SHA1
|<3>| HSK[8fdc0f8]: Keeping ciphersuite: DHE_DSS_AES_256_CBC_SHA1
|<3>| HSK[8fdc0f8]: Keeping ciphersuite: DHE_DSS_3DES_EDE_CBC_SHA1
|<3>| HSK[8fdc0f8]: Keeping ciphersuite: DHE_DSS_ARCFOUR_SHA1
|<3>| HSK[8fdc0f8]: Keeping ciphersuite: DHE_PSK_SHA_AES_128_CBC_SHA1
|<3>| HSK[8fdc0f8]: Keeping ciphersuite: DHE_PSK_SHA_AES_256_CBC_SHA1
|<3>| HSK[8fdc0f8]: Keeping ciphersuite: DHE_PSK_SHA_3DES_EDE_CBC_SHA1
|<3>| HSK[8fdc0f8]: Keeping ciphersuite: DHE_PSK_SHA_ARCFOUR_SHA1
|<3>| HSK[8fdc0f8]: Removing ciphersuite: SRP_SHA_RSA_AES_128_CBC_SHA1
|<3>| HSK[8fdc0f8]: Removing ciphersuite: SRP_SHA_RSA_AES_256_CBC_SHA1
|<3>| HSK[8fdc0f8]: Removing ciphersuite: SRP_SHA_RSA_3DES_EDE_CBC_SHA1
|<3>| HSK[8fdc0f8]: Removing ciphersuite: SRP_SHA_DSS_AES_128_CBC_SHA1
|<3>| HSK[8fdc0f8]: Removing ciphersuite: SRP_SHA_DSS_AES_256_CBC_SHA1
|<3>| HSK[8fdc0f8]: Removing ciphersuite: SRP_SHA_DSS_3DES_EDE_CBC_SHA1
|<3>| HSK[8fdc0f8]: Keeping ciphersuite: RSA_AES_128_CBC_SHA1
|<3>| HSK[8fdc0f8]: Keeping ciphersuite: RSA_AES_256_CBC_SHA1
|<3>| HSK[8fdc0f8]: Keeping ciphersuite: RSA_3DES_EDE_CBC_SHA1
|<3>| HSK[8fdc0f8]: Keeping ciphersuite: RSA_ARCFOUR_SHA1
|<3>| HSK[8fdc0f8]: Keeping ciphersuite: RSA_ARCFOUR_MD5
|<3>| HSK[8fdc0f8]: Keeping ciphersuite: PSK_SHA_AES_128_CBC_SHA1
|<3>| HSK[8fdc0f8]: Keeping ciphersuite: PSK_SHA_AES_256_CBC_SHA1
|<3>| HSK[8fdc0f8]: Keeping ciphersuite: PSK_SHA_3DES_EDE_CBC_SHA1
|<3>| HSK[8fdc0f8]: Keeping ciphersuite: PSK_SHA_ARCFOUR_SHA1
|<3>| HSK[8fdc0f8]: Removing ciphersuite: SRP_SHA_AES_128_CBC_SHA1
|<3>| HSK[8fdc0f8]: Removing ciphersuite: SRP_SHA_AES_256_CBC_SHA1
|<3>| HSK[8fdc0f8]: Removing ciphersuite: SRP_SHA_3DES_EDE_CBC_SHA1
|<2>| EXT[8fdc0f8]: Sending extension CERT_TYPE
|<2>| EXT[8fdc0f8]: Sending extension SERVER_NAME
|<3>| HSK[8fdc0f8]: CLIENT HELLO was send [119 bytes]
|<6>| BUF[HSK]: Peeked 0 bytes of Data
|<6>| BUF[HSK]: Emptied buffer
|<4>| REC[8fdc0f8]: Sending Packet[0] Handshake(22) with length: 119
|<2>| ASSERT: gnutls_cipher.c:204
|<7>| WRITE: Will write 124 bytes to 4.
|<7>| WRITE: wrote 124 bytes to 4. Left 0 bytes. Total 124 bytes.
|<7>| 0000 - 16 03 02 00 77 01 00 00 73 03 02 49 0a 3c 73 b5
|<7>| 0001 - 22 6a 86 33 0c 1f 5a 38 90 c1 9c 32 07 a2 a4 86
|<7>| 0002 - 70 c8 fa dd 4b a0 98 5a 59 85 25 00 00 28 00 33
|<7>| 0003 - 00 39 00 16 00 32 00 38 00 13 00 66 00 90 00 91
|<7>| 0004 - 00 8f 00 8e 00 2f 00 35 00 0a 00 05 00 04 00 8c
|<7>| 0005 - 00 8d 00 8b 00 8a 01 00 00 22 00 09 00 03 02 00
|<7>| 0006 - 01 00 00 00 17 00 15 00 00 12 6f 72 69 67 73 76
|<7>| 0007 - 6e 2e 64 69 67 69 75 6d 2e 63 6f 6d
|<4>| REC[8fdc0f8]: Sent Packet[1] Handshake(22) with length: 124
|<7>| READ: Got 5 bytes from 4
|<7>| READ: read 5 bytes from 4
|<7>| 0000 - 16 03 01 00 4a
|<7>| RB: Have 0 bytes into buffer. Adding 5 bytes.
|<7>| RB: Requested 5 bytes
|<4>| REC[8fdc0f8]: Expected Packet[0] Handshake(22) with length: 1
|<4>| REC[8fdc0f8]: Received Packet[0] Handshake(22) with length: 74
|<7>| READ: Got 74 bytes from 4
|<7>| READ: read 74 bytes from 4
|<7>| 0000 - 02 00 00 46 03 01 49 0a 3c 78 74 52 4b 24 0c 7d
|<7>| 0001 - 04 cd 14 5f e5 e0 83 be 7a d4 ae 55 01 ef aa e1
|<7>| 0002 - 2f 0c 35 20 91 7e 20 60 00 29 9d ff 2a bf 7d 21
|<7>| 0003 - fe 2d f9 c2 c6 06 3f 04 80 47 43 8c a0 77 f7 e9
|<7>| 0004 - e4 61 94 f2 67 a1 3e 00 33 00
|<7>| RB: Have 5 bytes into buffer. Adding 74 bytes.
|<7>| RB: Requested 79 bytes
|<2>| ASSERT: gnutls_cipher.c:204
|<4>| REC[8fdc0f8]: Decrypted Packet[0] Handshake(22) with length: 74
|<6>| BUF[HSK]: Inserted 74 bytes of Data(22)
|<6>| BUF[REC][HD]: Read 1 bytes of Data(22)
|<6>| BUF[REC][HD]: Read 3 bytes of Data(22)
|<3>| HSK[8fdc0f8]: SERVER HELLO was received [74 bytes]
|<6>| BUF[REC][HD]: Read 70 bytes of Data(22)
|<6>| BUF[HSK]: Peeked 0 bytes of Data
|<6>| BUF[HSK]: Emptied buffer
|<6>| BUF[HSK]: Inserted 4 bytes of Data
|<6>| BUF[HSK]: Inserted 70 bytes of Data
|<3>| HSK[8fdc0f8]: Server's version: 3.1
|<3>| HSK[8fdc0f8]: SessionID length: 32
|<3>| HSK[8fdc0f8]: SessionID: 6000299dff2abf7d21fe2df9c2c6063f048047438ca077f7e9e46194f267a13e
|<3>| HSK[8fdc0f8]: Selected cipher suite: DHE_RSA_AES_128_CBC_SHA1
|<2>| ASSERT: gnutls_extensions.c:124
|<7>| READ: Got 5 bytes from 4
|<7>| READ: read 5 bytes from 4
|<7>| 0000 - 16 03 01 0b 1e
|<7>| RB: Have 0 bytes into buffer. Adding 5 bytes.
|<7>| RB: Requested 5 bytes
|<4>| REC[8fdc0f8]: Expected Packet[1] Handshake(22) with length: 1
|<4>| REC[8fdc0f8]: Received Packet[1] Handshake(22) with length: 2846
|<7>| READ: Got 1364 bytes from 4
|<7>| READ: Got 1448 bytes from 4
|<7>| READ: Got 34 bytes from 4
|<7>| READ: read 2846 bytes from 4
|<7>| 0000 - 0b 00 0b 1a 00 0b 17 00 05 8e 30 82 05 8a 30 82
|<7>| 0001 - 04 72 a0 03 02 01 02 02 02 00 fd 30 0d 06 09 2a
|<7>| 0002 - 86 48 86 f7 0d 01 01 04 05 00 30 81 af 31 0b 30
|<7>| 0003 - 09 06 03 55 04 06 13 02 55 53 31 10 30 0e 06 03
|<7>| 0004 - 55 04 08 13 07 41 6c 61 62 61 6d 61 31 13 30 11
|<7>| 0005 - 06 03 55 04 07 13 0a 48 75 6e 74 73 76 69 6c 6c
|<7>| 0006 - 65 31 15 30 13 06 03 55 04 0a 13 0c 44 69 67 69
|<7>| 0007 - 75 6d 2c 20 49 6e 63 2e 31 22 30 20 06 03 55 04
|<7>| 0008 - 0b 13 19 41 73 74 65 72 69 73 6b 20 44 65 76 65
|<7>| 0009 - 6c 6f 70 6d 65 6e 74 20 54 65 61 6d 31 16 30 14
|<7>| 000a - 06 03 55 04 03 13 0d 44 69 67 69 75 6d 20 53 56
|<7>| 000b - 4e 20 43 41 31 26 30 24 06 09 2a 86 48 86 f7 0d
|<7>| 000c - 01 09 01 16 17 61 73 74 65 72 69 73 6b 74 65 61
|<7>| 000d - 6d 40 64 69 67 69 75 6d 2e 63 6f 6d 30 1e 17 0d
|<7>| 000e - 30 38 31 30 33 30 32 32 31 35 33 32 5a 17 0d 31
|<7>| 000f - 38 31 30 32 38 32 32 31 35 33 32 5a 30 81 ae 31
|<7>| 0010 - 0b 30 09 06 03 55 04 06 13 02 55 53 31 10 30 0e
|<7>| 0011 - 06 03 55 04 08 13 07 41 6c 61 62 61 6d 61 31 13
|<7>| 0012 - 30 11 06 03 55 04 07 13 0a 48 75 6e 74 73 76 69
|<7>| 0013 - 6c 6c 65 31 0f 30 0d 06 03 55 04 0a 13 06 44 69
|<7>| 0014 - 67 69 75 6d 31 22 30 20 06 03 55 04 0b 13 19 41
|<7>| 0015 - 73 74 65 72 69 73 6b 20 44 65 76 65 6c 6f 70 6d
|<7>| 0016 - 65 6e 74 20 54 65 61 6d 31 1b 30 19 06 03 55 04
|<7>| 0017 - 03 13 12 6f 72 69 67 73 76 6e 2e 64 69 67 69 75
|<7>| 0018 - 6d 2e 63 6f 6d 31 26 30 24 06 09 2a 86 48 86 f7
|<7>| 0019 - 0d 01 09 01 16 17 61 73 74 65 72 69 73 6b 74 65
|<7>| 001a - 61 6d 40 64 69 67 69 75 6d 2e 63 6f 6d 30 82 01
|<7>| 001b - 22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05 00
|<7>| 001c - 03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 c4 2a
|<7>| 001d - 9a 2d a4 3e 36 91 ba 99 b8 22 6a 7d 0a 10 fd 6b
|<7>| 001e - dd 7c 86 00 53 56 b0 e0 de 5d 14 68 b5 b6 ee 09
|<7>| 001f - 13 e6 14 b0 12 b4 f8 5f b5 6d 70 1d 55 82 bd 0e
|<7>| 0020 - 46 01 d2 03 2c 94 67 a8 a1 4a d2 3a 5d 5c d2 8a
|<7>| 0021 - 1f f6 f9 bd 9a ec 50 cd f8 13 e1 4e b3 87 91 bc
|<7>| 0022 - 6c 47 6d 59 0e b0 7d 89 5c 12 ac 3a fb cb 4f c1
|<7>| 0023 - 43 9e a3 b7 4c e4 60 88 f7 4f 7d c7 6a 01 36 03
|<7>| 0024 - 50 e9 ad 6e b7 1a 32 dc 70 54 d0 65 8d 0b d9 77
|<7>| 0025 - c4 5a 5b 2d 85 b9 9b 21 17 e4 13 d8 a3 ea 58 ce
|<7>| 0026 - 78 27 ff 78 22 07 5f a5 96 79 fb 3e 7d ed c0 b7
|<7>| 0027 - 2d c8 85 28 c7 03 b6 85 59 f2 4e 24 0d 69 d0 60
|<7>| 0028 - ea 77 68 73 de 69 91 c8 f0 9a eb 21 d2 5f 29 a6
|<7>| 0029 - 40 73 ef 8b 09 5f 5e 32 dd bd 9f ba 98 4c 11 72
|<7>| 002a - 5d 20 1b 37 dc cd 3c d2 63 11 bb bd ce 4a d2 ab
|<7>| 002b - b9 1f 41 c2 eb 0e 1a 2e a1 0f 3e 4a ad 1d 68 8f
|<7>| 002c - 94 1b 18 8c 49 66 31 65 0c 63 8d 40 7f 83 02 03
|<7>| 002d - 01 00 01 a3 82 01 ad 30 82 01 a9 30 09 06 03 55
|<7>| 002e - 1d 13 04 02 30 00 30 11 06 09 60 86 48 01 86 f8
|<7>| 002f - 42 01 01 04 04 03 02 06 40 30 2b 06 09 60 86 48
|<7>| 0030 - 01 86 f8 42 01 0d 04 1e 16 1c 54 69 6e 79 43 41
|<7>| 0031 - 20 47 65 6e 65 72 61 74 65 64 20 43 65 72 74 69
|<7>| 0032 - 66 69 63 61 74 65 30 1d 06 03 55 1d 0e 04 16 04
|<7>| 0033 - 14 cb 95 0f de 61 ca a3 08 95 bc 6c 6a 9e d7 bf
|<7>| 0034 - ae 64 bd c8 cd 30 81 e4 06 03 55 1d 23 04 81 dc
|<7>| 0035 - 30 81 d9 80 14 50 d3 ee fd 08 95 06 26 16 49 04
|<7>| 0036 - 90 bf 35 02 11 30 92 bd 27 a1 81 b5 a4 81 b2 30
|<7>| 0037 - 81 af 31 0b 30 09 06 03 55 04 06 13 02 55 53 31
|<7>| 0038 - 10 30 0e 06 03 55 04 08 13 07 41 6c 61 62 61 6d
|<7>| 0039 - 61 31 13 30 11 06 03 55 04 07 13 0a 48 75 6e 74
|<7>| 003a - 73 76 69 6c 6c 65 31 15 30 13 06 03 55 04 0a 13
|<7>| 003b - 0c 44 69 67 69 75 6d 2c 20 49 6e 63 2e 31 22 30
|<7>| 003c - 20 06 03 55 04 0b 13 19 41 73 74 65 72 69 73 6b
|<7>| 003d - 20 44 65 76 65 6c 6f 70 6d 65 6e 74 20 54 65 61
|<7>| 003e - 6d 31 16 30 14 06 03 55 04 03 13 0d 44 69 67 69
|<7>| 003f - 75 6d 20 53 56 4e 20 43 41 31 26 30 24 06 09 2a
|<7>| 0040 - 86 48 86 f7 0d 01 09 01 16 17 61 73 74 65 72 69
|<7>| 0041 - 73 6b 74 65 61 6d 40 64 69 67 69 75 6d 2e 63 6f
|<7>| 0042 - 6d 82 09 00 c5 45 59 56 d9 a7 ac 12 30 22 06 03
|<7>| 0043 - 55 1d 12 04 1b 30 19 81 17 61 73 74 65 72 69 73
|<7>| 0044 - 6b 74 65 61 6d 40 64 69 67 69 75 6d 2e 63 6f 6d
|<7>| 0045 - 30 22 06 03 55 1d 11 04 1b 30 19 81 17 61 73 74
|<7>| 0046 - 65 72 69 73 6b 74 65 61 6d 40 64 69 67 69 75 6d
|<7>| 0047 - 2e 63 6f 6d 30 0e 06 03 55 1d 0f 01 01 ff 04 04
|<7>| 0048 - 03 02 05 a0 30 0d 06 09 2a 86 48 86 f7 0d 01 01
|<7>| 0049 - 04 05 00 03 82 01 01 00 25 64 44 58 cd 9e 01 42
|<7>| 004a - 91 76 f4 90 7d 09 4f 59 b7 3d bf 4f cb c1 d1 22
|<7>| 004b - c5 ad 2c b1 67 f7 71 f5 b0 46 70 bd 92 1c e3 5b
|<7>| 004c - 75 91 c0 50 b5 c4 b6 0c df 7a a7 1f 8c 0e 20 9b
|<7>| 004d - 73 b3 cc bf 07 24 92 fd 29 b4 bc 55 38 05 2f 5b
|<7>| 004e - 90 76 12 53 97 c0 7a 7e d3 01 75 73 ea 74 4f ce
|<7>| 004f - 43 ab c3 00 47 33 a8 34 39 49 cd 33 93 9e 85 e7
|<7>| 0050 - 25 2a cd cf aa 59 60 71 52 81 68 71 47 50 2d 78
|<7>| 0051 - b2 14 59 19 8e 15 98 31 33 11 ff dd 52 c9 4a 1a
|<7>| 0052 - 20 8d 8d a5 a5 00 2b a2 a3 f2 8c 68 14 7d b3 9d
|<7>| 0053 - ba 26 82 54 07 ce 24 de 92 ae 71 e9 92 60 15 bc
|<7>| 0054 - 88 55 28 4f f9 6c 3b 32 f2 3f ed 29 56 03 f2 66
|<7>| 0055 - fe 40 8f fa 7d 14 bf 26 5a 12 cc 65 a6 d9 0c 93
|<7>| 0056 - a0 72 64 29 ef 66 91 df dd 70 2e c4 f9 a3 16 81
|<7>| 0057 - 7b 8e 00 1e bb 89 24 6e e3 99 00 a4 d9 c5 6b ac
|<7>| 0058 - 71 0d a4 2e b5 14 fc 0c a8 07 59 40 e1 7f c9 8c
|<7>| 0059 - 74 00 08 eb b7 97 28 fe 00 05 83 30 82 05 7f 30
|<7>| 005a - 82 04 67 a0 03 02 01 02 02 09 00 c5 45 59 56 d9
|<7>| 005b - a7 ac 12 30 0d 06 09 2a 86 48 86 f7 0d 01 01 04
|<7>| 005c - 05 00 30 81 af 31 0b 30 09 06 03 55 04 06 13 02
|<7>| 005d - 55 53 31 10 30 0e 06 03 55 04 08 13 07 41 6c 61
|<7>| 005e - 62 61 6d 61 31 13 30 11 06 03 55 04 07 13 0a 48
|<7>| 005f - 75 6e 74 73 76 69 6c 6c 65 31 15 30 13 06 03 55
|<7>| 0060 - 04 0a 13 0c 44 69 67 69 75 6d 2c 20 49 6e 63 2e
|<7>| 0061 - 31 22 30 20 06 03 55 04 0b 13 19 41 73 74 65 72
|<7>| 0062 - 69 73 6b 20 44 65 76 65 6c 6f 70 6d 65 6e 74 20
|<7>| 0063 - 54 65 61 6d 31 16 30 14 06 03 55 04 03 13 0d 44
|<7>| 0064 - 69 67 69 75 6d 20 53 56 4e 20 43 41 31 26 30 24
|<7>| 0065 - 06 09 2a 86 48 86 f7 0d 01 09 01 16 17 61 73 74
|<7>| 0066 - 65 72 69 73 6b 74 65 61 6d 40 64 69 67 69 75 6d
|<7>| 0067 - 2e 63 6f 6d 30 1e 17 0d 30 35 31 31 32 35 32 33
|<7>| 0068 - 33 31 34 37 5a 17 0d 31 35 31 31 32 33 32 33 33
|<7>| 0069 - 31 34 37 5a 30 81 af 31 0b 30 09 06 03 55 04 06
|<7>| 006a - 13 02 55 53 31 10 30 0e 06 03 55 04 08 13 07 41
|<7>| 006b - 6c 61 62 61 6d 61 31 13 30 11 06 03 55 04 07 13
|<7>| 006c - 0a 48 75 6e 74 73 76 69 6c 6c 65 31 15 30 13 06
|<7>| 006d - 03 55 04 0a 13 0c 44 69 67 69 75 6d 2c 20 49 6e
|<7>| 006e - 63 2e 31 22 30 20 06 03 55 04 0b 13 19 41 73 74
|<7>| 006f - 65 72 69 73 6b 20 44 65 76 65 6c 6f 70 6d 65 6e
|<7>| 0070 - 74 20 54 65 61 6d 31 16 30 14 06 03 55 04 03 13
|<7>| 0071 - 0d 44 69 67 69 75 6d 20 53 56 4e 20 43 41 31 26
|<7>| 0072 - 30 24 06 09 2a 86 48 86 f7 0d 01 09 01 16 17 61
|<7>| 0073 - 73 74 65 72 69 73 6b 74 65 61 6d 40 64 69 67 69
|<7>| 0074 - 75 6d 2e 63 6f 6d 30 82 01 22 30 0d 06 09 2a 86
|<7>| 0075 - 48 86 f7 0d 01 01 01 05 00 03 82 01 0f 00 30 82
|<7>| 0076 - 01 0a 02 82 01 01 00 e1 98 dd 86 39 24 bf 1a f6
|<7>| 0077 - 2b d4 c3 e4 c4 26 69 e8 2c da bc 11 38 03 66 8a
|<7>| 0078 - e6 3c 37 2d 1c 4a a7 4b 4f 4a 72 3e e0 80 08 f1
|<7>| 0079 - c2 17 9a b5 d5 f1 a6 d8 64 f3 cc d1 1b 04 cb b0
|<7>| 007a - 7d 75 87 52 9a 7a ea ab f2 64 f1 0e d4 95 fa 60
|<7>| 007b - a5 1e fa d6 5d 8a 55 a8 38 98 4d a7 04 29 4c ad
|<7>| 007c - 2d 21 27 d5 87 b6 88 93 e2 fc 15 82 6e b5 cc 7c
|<7>| 007d - 45 a5 88 0c 5d 71 29 f2 9d 95 ea 9c ff 01 55 7b
|<7>| 007e - c7 de 8d 79 24 49 00 02 69 a9 ac fa 39 e5 37 5d
|<7>| 007f - 49 f1 40 a7 62 c0 9e a2 21 d9 c5 21 a2 a9 83 99
|<7>| 0080 - 65 82 8e 73 61 89 8c 1d 18 2f 38 29 63 19 20 6a
|<7>| 0081 - 42 a3 22 4c 08 73 8a 56 fd 0d a8 a7 10 e8 ba e9
|<7>| 0082 - eb 90 ae 48 10 63 5a 33 13 bd 22 b8 50 a6 0d 18
|<7>| 0083 - 4b d1 81 d2 60 27 7d 38 c6 f2 b5 2e ce ef 5a e1
|<7>| 0084 - 86 33 ce 0d df 80 e9 b7 84 f3 f6 d1 cf e1 b8 aa
|<7>| 0085 - ad 9f 23 eb 04 58 0f c6 68 5f 3b e5 f1 7c 9b 2c
|<7>| 0086 - 63 bb 8b fa fd d5 25 02 03 01 00 01 a3 82 01 9a
|<7>| 0087 - 30 82 01 96 30 1d 06 03 55 1d 0e 04 16 04 14 50
|<7>| 0088 - d3 ee fd 08 95 06 26 16 49 04 90 bf 35 02 11 30
|<7>| 0089 - 92 bd 27 30 81 e4 06 03 55 1d 23 04 81 dc 30 81
|<7>| 008a - d9 80 14 50 d3 ee fd 08 95 06 26 16 49 04 90 bf
|<7>| 008b - 35 02 11 30 92 bd 27 a1 81 b5 a4 81 b2 30 81 af
|<7>| 008c - 31 0b 30 09 06 03 55 04 06 13 02 55 53 31 10 30
|<7>| 008d - 0e 06 03 55 04 08 13 07 41 6c 61 62 61 6d 61 31
|<7>| 008e - 13 30 11 06 03 55 04 07 13 0a 48 75 6e 74 73 76
|<7>| 008f - 69 6c 6c 65 31 15 30 13 06 03 55 04 0a 13 0c 44
|<7>| 0090 - 69 67 69 75 6d 2c 20 49 6e 63 2e 31 22 30 20 06
|<7>| 0091 - 03 55 04 0b 13 19 41 73 74 65 72 69 73 6b 20 44
|<7>| 0092 - 65 76 65 6c 6f 70 6d 65 6e 74 20 54 65 61 6d 31
|<7>| 0093 - 16 30 14 06 03 55 04 03 13 0d 44 69 67 69 75 6d
|<7>| 0094 - 20 53 56 4e 20 43 41 31 26 30 24 06 09 2a 86 48
|<7>| 0095 - 86 f7 0d 01 09 01 16 17 61 73 74 65 72 69 73 6b
|<7>| 0096 - 74 65 61 6d 40 64 69 67 69 75 6d 2e 63 6f 6d 82
|<7>| 0097 - 09 00 c5 45 59 56 d9 a7 ac 12 30 0f 06 03 55 1d
|<7>| 0098 - 13 01 01 ff 04 05 30 03 01 01 ff 30 11 06 09 60
|<7>| 0099 - 86 48 01 86 f8 42 01 01 04 04 03 02 01 06 30 09
|<7>| 009a - 06 03 55 1d 12 04 02 30 00 30 2b 06 09 60 86 48
|<7>| 009b - 01 86 f8 42 01 0d 04 1e 16 1c 54 69 6e 79 43 41
|<7>| 009c - 20 47 65 6e 65 72 61 74 65 64 20 43 65 72 74 69
|<7>| 009d - 66 69 63 61 74 65 30 22 06 03 55 1d 11 04 1b 30
|<7>| 009e - 19 81 17 61 73 74 65 72 69 73 6b 74 65 61 6d 40
|<7>| 009f - 64 69 67 69 75 6d 2e 63 6f 6d 30 0e 06 03 55 1d
|<7>| 00a0 - 0f 01 01 ff 04 04 03 02 01 06 30 0d 06 09 2a 86
|<7>| 00a1 - 48 86 f7 0d 01 01 04 05 00 03 82 01 01 00 59 1f
|<7>| 00a2 - 70 32 9d c6 b4 2d 27 02 66 38 d8 66 c3 e6 5e be
|<7>| 00a3 - ef bd 24 3c c3 b9 05 76 ed f6 3c 0b 64 da 6b cd
|<7>| 00a4 - ff 0e 8a be 26 68 4d 89 ff 33 ce 08 e9 1f 42 80
|<7>| 00a5 - 05 cf d0 f6 33 a4 82 99 c0 f0 45 7f ba 96 e6 f5
|<7>| 00a6 - ae f3 d1 e9 bb 75 8b 69 2a 32 b2 44 0f f5 0d fb
|<7>| 00a7 - b3 f7 5f e8 50 1e 1f db dd f4 06 43 71 cc 1f 57
|<7>| 00a8 - dd 5a e3 4c 0e a0 76 79 0a 93 bc 42 aa f5 b0 bc
|<7>| 00a9 - 59 e2 f0 63 8f 03 9e 51 97 d6 21 90 14 e4 96 c1
|<7>| 00aa - d6 d7 9a 61 76 f3 7c 48 ee 3b 57 23 cb cd 76 fb
|<7>| 00ab - dc 84 11 99 c7 fe 4c 36 6e 10 27 3c 38 39 b9 32
|<7>| 00ac - fc f3 75 b8 d8 72 7c c2 4b 85 3f e8 a0 dc 02 bb
|<7>| 00ad - a0 81 90 d7 82 0a c7 e1 5d a1 99 9e 87 16 28 50
|<7>| 00ae - 5e 47 32 34 c6 9d 2b 1a 06 74 89 61 97 99 7b 86
|<7>| 00af - 68 a3 ef 1f 3a 58 c6 69 2a 89 75 ff 82 75 52 d6
|<7>| 00b0 - f6 9d d5 0a 42 2d 65 5d a4 39 d6 4c da bd 76 6f
|<7>| 00b1 - af 9d c3 2b 72 80 c3 68 79 c6 4e 0b 4b 6a
|<7>| RB: Have 5 bytes into buffer. Adding 2846 bytes.
|<7>| RB: Requested 2851 bytes
|<2>| ASSERT: gnutls_cipher.c:204
|<4>| REC[8fdc0f8]: Decrypted Packet[1] Handshake(22) with length: 2846
|<6>| BUF[HSK]: Inserted 2846 bytes of Data(22)
|<6>| BUF[REC][HD]: Read 1 bytes of Data(22)
|<6>| BUF[REC][HD]: Read 3 bytes of Data(22)
|<3>| HSK[8fdc0f8]: CERTIFICATE was received [2846 bytes]
|<6>| BUF[REC][HD]: Read 2842 bytes of Data(22)
|<6>| BUF[HSK]: Peeked 74 bytes of Data
|<6>| BUF[HSK]: Emptied buffer
|<6>| BUF[HSK]: Inserted 4 bytes of Data
|<6>| BUF[HSK]: Inserted 2842 bytes of Data
|<7>| READ: Got 5 bytes from 4
|<7>| READ: read 5 bytes from 4
|<7>| 0000 - 16 03 01 02 0d
|<7>| RB: Have 0 bytes into buffer. Adding 5 bytes.
|<7>| RB: Requested 5 bytes
|<4>| REC[8fdc0f8]: Expected Packet[2] Handshake(22) with length: 1
|<4>| REC[8fdc0f8]: Received Packet[2] Handshake(22) with length: 525
|<7>| READ: Got 525 bytes from 4
|<7>| READ: read 525 bytes from 4
|<7>| 0000 - 0c 00 02 09 00 80 e6 96 9d 3d 49 5b e3 2c 7c f1
|<7>| 0001 - 80 c3 bd d4 79 8e 91 b7 81 82 51 bb 05 5e 2a 20
|<7>| 0002 - 64 90 4a 79 a7 70 fa 15 a2 59 cb d5 23 a6 a6 ef
|<7>| 0003 - 09 c4 30 48 d5 a2 2f 97 1f 3c 20 12 9b 48 00 0e
|<7>| 0004 - 6e dd 06 1c bc 05 3e 37 1d 79 4e 53 27 df 61 1e
|<7>| 0005 - bb be 1b ac 9b 5c 60 44 cf 02 3d 76 e0 5e ea 9b
|<7>| 0006 - ad 99 1b 13 a6 3c 97 4e 9e f1 83 9e b5 db 12 51
|<7>| 0007 - 36 f7 26 2e 56 a8 87 15 38 df d8 23 c6 50 50 85
|<7>| 0008 - e2 1f 0d d5 c8 6b 00 01 02 00 80 3b d5 b3 04 07
|<7>| 0009 - e1 74 f0 16 7f 07 4c 85 35 cd e5 62 c5 25 42 8e
|<7>| 000a - f9 89 75 dd 5f 2b 46 79 d7 87 6d 7f 6b b3 d3 e8
|<7>| 000b - 41 34 cc cf f1 5f 51 c0 72 a3 83 e1 c5 f2 14 16
|<7>| 000c - 48 3b 6e b6 d9 bb 57 9e 3f e8 22 5c f0 52 9c 60
|<7>| 000d - f8 fb ec 16 53 dd a5 80 43 a0 02 b5 cc 43 7e 68
|<7>| 000e - bf 1d 5d c3 b3 65 ec 29 90 2e a7 0b 63 51 70 f5
|<7>| 000f - d7 c8 59 d7 2e 30 33 9e 2e 05 6b fc 62 f8 18 c6
|<7>| 0010 - 38 65 4b ce 3a 4b 47 d2 b9 75 c6 01 00 64 92 a1
|<7>| 0011 - 4d d6 98 00 93 9b 1d d8 a4 01 80 c1 d3 de 08 b8
|<7>| 0012 - db 07 66 7f aa 93 45 8d 48 bb ae 2f 6e df 26 bc
|<7>| 0013 - 8e ba 3f e1 e1 96 d1 6a 67 d8 73 11 ed 0f d8 36
|<7>| 0014 - 30 ba c6 ba d7 af 09 08 9e d3 9c ae 6b d3 b8 3e
|<7>| 0015 - f0 f5 b6 7d e6 2e 07 15 e2 49 a0 bd b4 4d 17 f3
|<7>| 0016 - eb bc 3c 21 f2 4f 34 3d 44 5e bc 77 44 95 a6 19
|<7>| 0017 - d3 62 1c 2f 78 e6 3f 53 dd 6f 41 69 65 f0 63 47
|<7>| 0018 - 8a 98 f5 40 35 26 c2 ad f9 f8 5b 9a 19 4a 7f cd
|<7>| 0019 - f4 72 25 4d c2 ac b3 94 da 1b a3 22 8b f8 c8 07
|<7>| 001a - 68 b8 bd 29 3c e8 8d d0 06 1c 62 a9 fb 49 89 52
|<7>| 001b - aa af f4 93 27 84 28 2a d5 8b d1 80 8b 65 88 7b
|<7>| 001c - 3a 86 21 c2 25 f8 0f 03 32 72 c6 59 11 24 05 1b
|<7>| 001d - 50 4c 23 6e 6b b2 cf bf 00 24 b1 c1 98 d9 84 c7
|<7>| 001e - 01 50 33 5b e3 f4 94 1e d4 52 4e c8 90 83 fd 84
|<7>| 001f - ef e5 3a bc 12 1e c0 08 ca cf b1 cb 23 84 be 25
|<7>| 0020 - 30 ca e5 15 84 ac c1 4a f5 80 4b b1 ba
|<7>| RB: Have 5 bytes into buffer. Adding 525 bytes.
|<7>| RB: Requested 530 bytes
|<2>| ASSERT: gnutls_cipher.c:204
|<4>| REC[8fdc0f8]: Decrypted Packet[2] Handshake(22) with length: 525
|<6>| BUF[HSK]: Inserted 525 bytes of Data(22)
|<6>| BUF[REC][HD]: Read 1 bytes of Data(22)
|<6>| BUF[REC][HD]: Read 3 bytes of Data(22)
|<3>| HSK[8fdc0f8]: SERVER KEY EXCHANGE was received [525 bytes]
|<6>| BUF[REC][HD]: Read 521 bytes of Data(22)
|<6>| BUF[HSK]: Peeked 2846 bytes of Data
|<6>| BUF[HSK]: Emptied buffer
|<6>| BUF[HSK]: Inserted 4 bytes of Data
|<6>| BUF[HSK]: Inserted 521 bytes of Data
|<7>| READ: Got 5 bytes from 4
|<7>| READ: read 5 bytes from 4
|<7>| 0000 - 16 03 01 00 c3
|<7>| RB: Have 0 bytes into buffer. Adding 5 bytes.
|<7>| RB: Requested 5 bytes
|<4>| REC[8fdc0f8]: Expected Packet[3] Handshake(22) with length: 1
|<4>| REC[8fdc0f8]: Received Packet[3] Handshake(22) with length: 195
|<7>| READ: Got 195 bytes from 4
|<7>| READ: read 195 bytes from 4
|<7>| 0000 - 0d 00 00 bb 04 03 04 01 02 00 b4 00 b2 30 81 af
|<7>| 0001 - 31 0b 30 09 06 03 55 04 06 13 02 55 53 31 10 30
|<7>| 0002 - 0e 06 03 55 04 08 13 07 41 6c 61 62 61 6d 61 31
|<7>| 0003 - 13 30 11 06 03 55 04 07 13 0a 48 75 6e 74 73 76
|<7>| 0004 - 69 6c 6c 65 31 15 30 13 06 03 55 04 0a 13 0c 44
|<7>| 0005 - 69 67 69 75 6d 2c 20 49 6e 63 2e 31 22 30 20 06
|<7>| 0006 - 03 55 04 0b 13 19 41 73 74 65 72 69 73 6b 20 44
|<7>| 0007 - 65 76 65 6c 6f 70 6d 65 6e 74 20 54 65 61 6d 31
|<7>| 0008 - 16 30 14 06 03 55 04 03 13 0d 44 69 67 69 75 6d
|<7>| 0009 - 20 53 56 4e 20 43 41 31 26 30 24 06 09 2a 86 48
|<7>| 000a - 86 f7 0d 01 09 01 16 17 61 73 74 65 72 69 73 6b
|<7>| 000b - 74 65 61 6d 40 64 69 67 69 75 6d 2e 63 6f 6d 0e
|<7>| 000c - 00 00 00
|<7>| RB: Have 5 bytes into buffer. Adding 195 bytes.
|<7>| RB: Requested 200 bytes
|<2>| ASSERT: gnutls_cipher.c:204
|<4>| REC[8fdc0f8]: Decrypted Packet[3] Handshake(22) with length: 195
|<6>| BUF[HSK]: Inserted 195 bytes of Data(22)
|<6>| BUF[REC][HD]: Read 1 bytes of Data(22)
|<6>| BUF[REC][HD]: Read 3 bytes of Data(22)
|<3>| HSK[8fdc0f8]: CERTIFICATE REQUEST was received [191 bytes]
|<6>| BUF[REC][HD]: Read 187 bytes of Data(22)
|<6>| BUF[HSK]: Peeked 525 bytes of Data
|<6>| BUF[HSK]: Emptied buffer
|<6>| BUF[HSK]: Inserted 4 bytes of Data
|<6>| BUF[HSK]: Inserted 187 bytes of Data
- Successfully sent 0 certificate(s) to server.
|<6>| BUF[REC][HD]: Read 1 bytes of Data(22)
|<6>| BUF[REC][HD]: Read 3 bytes of Data(22)
|<3>| HSK[8fdc0f8]: SERVER HELLO DONE was received [4 bytes]
|<6>| BUF[HSK]: Peeked 191 bytes of Data
|<6>| BUF[HSK]: Emptied buffer
|<6>| BUF[HSK]: Inserted 4 bytes of Data
|<3>| HSK[8fdc0f8]: CERTIFICATE was send [7 bytes]
|<6>| BUF[HSK]: Peeked 4 bytes of Data
|<6>| BUF[HSK]: Emptied buffer
|<4>| REC[8fdc0f8]: Sending Packet[1] Handshake(22) with length: 7
|<2>| ASSERT: gnutls_cipher.c:204
|<7>| WRITE: Will write 12 bytes to 4.
|<7>| WRITE: wrote 12 bytes to 4. Left 0 bytes. Total 12 bytes.
|<7>| 0000 - 16 03 01 00 07 0b 00 00 03 00 00 00
|<4>| REC[8fdc0f8]: Sent Packet[2] Handshake(22) with length: 12
|<3>| HSK[8fdc0f8]: CLIENT KEY EXCHANGE was send [134 bytes]
|<6>| BUF[HSK]: Peeked 0 bytes of Data
|<6>| BUF[HSK]: Emptied buffer
|<4>| REC[8fdc0f8]: Sending Packet[2] Handshake(22) with length: 134
|<2>| ASSERT: gnutls_cipher.c:204
|<7>| WRITE: Will write 139 bytes to 4.
|<7>| WRITE: wrote 139 bytes to 4. Left 0 bytes. Total 139 bytes.
|<7>| 0000 - 16 03 01 00 86 10 00 00 82 00 80 ca 3e 42 62 97
|<7>| 0001 - 21 6e 2e 44 70 e0 58 42 d3 11 ce 1c 51 2d c3 30
|<7>| 0002 - da c0 c3 de 8a 01 8d 58 18 4f 9e 2c 3b 74 99 69
|<7>| 0003 - 15 d4 11 d9 7a 81 62 e8 64 62 04 cf df 58 17 5c
|<7>| 0004 - 9e 46 fd f4 5f 32 f6 cf 9e 6c e3 d6 a1 c1 68 aa
|<7>| 0005 - d6 71 11 ff 63 13 c0 be 41 d4 70 eb 81 b0 47 41
|<7>| 0006 - 69 43 46 08 bf 7f 45 31 df f4 cb 79 29 23 43 2a
|<7>| 0007 - b1 08 b1 39 50 fe 6a 86 dc 03 e9 f7 3e cc 36 96
|<7>| 0008 - be 1d 2a 57 40 c3 d9 62 e5 89 18
|<4>| REC[8fdc0f8]: Sent Packet[3] Handshake(22) with length: 139
|<3>| REC[8fdc0f8]: Sent ChangeCipherSpec
|<4>| REC[8fdc0f8]: Sending Packet[3] Change Cipher Spec(20) with length: 1
|<2>| ASSERT: gnutls_cipher.c:204
|<7>| WRITE: Will write 6 bytes to 4.
|<7>| WRITE: wrote 6 bytes to 4. Left 0 bytes. Total 6 bytes.
|<7>| 0000 - 14 03 01 00 01 01
|<4>| REC[8fdc0f8]: Sent Packet[4] Change Cipher Spec(20) with length: 6
|<9>| INT: PREMASTER SECRET[128]: b50ee5a149b39392810f07608e830b8912d1c5f8081d5fb88766a366849cf95f51ab8d75d91e4b2ea32f93c5f1ce2be70a39921587040c9d2a8fb1392118e7e58da7aa78928a2848b936b34683a12c370d37342297e92bde90ed54c6704abb11ede1c2b82c3c7fd454651250903a7a11072f3319e2989b417bcc5ee03a3daaff
|<9>| INT: CLIENT RANDOM[32]: 490a3c73b5226a86330c1f5a3890c19c3207a2a48670c8fadd4ba0985a598525
|<9>| INT: SERVER RANDOM[32]: 490a3c7874524b240c7d04cd145fe5e083be7ad4ae5501efaae12f0c3520917e
|<9>| INT: MASTER SECRET: 9ab14ca65000091bbadf7532d049645c70fe9c61a4970534ea061faa95a618e9cbfd918cd444706319fa364d45d1e5fe
|<9>| INT: KEY BLOCK[104]: 16d7324e089ae1d8c9bc4d75df25366fa636725a06456dffedd9d6ee34f6466c
|<9>| INT: CLIENT WRITE KEY [16]: d54f4f9f5d347e6f25f9ff614d11854b
|<9>| INT: SERVER WRITE KEY [16]: 849f55a75236fde17d05f7b65a1b5ca2
|<3>| HSK[8fdc0f8]: Cipher Suite: DHE_RSA_AES_128_CBC_SHA1
|<3>| HSK[8fdc0f8]: Initializing internal [write] cipher sessions
|<6>| BUF[HSK]: Peeked 0 bytes of Data
|<6>| BUF[HSK]: Emptied buffer
|<3>| HSK[8fdc0f8]: FINISHED was send [16 bytes]
|<6>| BUF[HSK]: Peeked 0 bytes of Data
|<6>| BUF[HSK]: Emptied buffer
|<4>| REC[8fdc0f8]: Sending Packet[0] Handshake(22) with length: 16
|<7>| WRITE: Will write 245 bytes to 4.
|<7>| WRITE: wrote 245 bytes to 4. Left 0 bytes. Total 245 bytes.
|<7>| 0000 - 16 03 01 00 f0 ab 31 11 14 5b 06 3b 9c 37 9e 4f
|<7>| 0001 - d9 12 dc eb 6b 32 7a 75 ee f8 e7 30 9c 88 15 4b
|<7>| 0002 - d1 89 24 f8 c1 1e 88 c9 60 b6 e9 66 75 b1 25 bd
|<7>| 0003 - 8e 42 37 d1 38 c9 2a 8c 6e 48 58 cd 22 8d e6 e9
|<7>| 0004 - 5c 08 52 ee 17 29 1d 6e dc b9 cf a7 cd 39 e6 e8
|<7>| 0005 - a7 de 51 97 74 b3 a6 44 a0 ea 15 3c f6 a8 eb 4e
|<7>| 0006 - aa 21 80 15 a7 0b 50 55 63 56 88 e9 40 18 5d 74
|<7>| 0007 - b6 b2 dc b3 70 88 25 3f 2b bb d1 89 3b 3f da 4c
|<7>| 0008 - 5c 6c 6d 69 74 24 5e d9 51 63 92 cb ef 7f 13 b3
|<7>| 0009 - e4 93 9b 0c 1c ab 55 51 48 39 e9 b0 82 35 95 47
|<7>| 000a - 03 0e 84 a1 61 e3 fc 8d 8c 4d 42 bd 51 9d d4 8b
|<7>| 000b - cc c8 cd 6c 3d 92 dc ad f6 58 19 da f7 19 94 b3
|<7>| 000c - 45 ad 28 8a 8b b0 f6 29 af 50 e1 92 3a 8d ea b2
|<7>| 000d - a7 24 96 4b a0 31 bd ba a3 47 9e e5 93 74 32 5d
|<7>| 000e - bc b7 c7 59 61 b0 02 f2 9b 12 4c f2 5e b8 9b 37
|<7>| 000f - 25 5e e1 8f 2e
|<4>| REC[8fdc0f8]: Sent Packet[1] Handshake(22) with length: 245
|<7>| READ: Got 5 bytes from 4
|<7>| READ: read 5 bytes from 4
|<7>| 0000 - 15 03 01 00 02
|<7>| RB: Have 0 bytes into buffer. Adding 5 bytes.
|<7>| RB: Requested 5 bytes
|<4>| REC[8fdc0f8]: Expected Packet[4] Change Cipher Spec(20) with length: 1
|<4>| REC[8fdc0f8]: Received Packet[4] Alert(21) with length: 2
|<7>| READ: Got 2 bytes from 4
|<7>| READ: read 2 bytes from 4
|<7>| 0000 - 02 28
|<7>| RB: Have 5 bytes into buffer. Adding 2 bytes.
|<7>| RB: Requested 7 bytes
|<2>| ASSERT: gnutls_cipher.c:204
|<4>| REC[8fdc0f8]: Decrypted Packet[4] Alert(21) with length: 2
|<4>| REC[8fdc0f8]: Alert[2|40] - Handshake failed - was received
|<2>| ASSERT: gnutls_record.c:695
|<2>| ASSERT: gnutls_record.c:1048
|<2>| ASSERT: gnutls_handshake.c:2507
|<2>| ASSERT: gnutls_handshake.c:2679
|<6>| BUF[HSK]: Cleared Data from buffer
*** Fatal error: A TLS fatal alert has been received.
*** Received alert [40]: Handshake failed
*** Handshake has failed
GNUTLS ERROR: A TLS fatal alert has been received.
jas at mocca:~$
More information about the Gnutls-help
mailing list