summaryrefslogblamecommitdiffstats
path: root/archives/extend/2014-April/000371.html
blob: 1809aeae2cf09cf459766df9c8a643353728e5d8 (plain) (tree)
























































































































































































                                                                                                                                                                                                                                                 
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">
<HTML>
 <HEAD>
   <TITLE> [99s-extend] ssl_hello_world
   </TITLE>
   <LINK REL="Index" HREF="index.html" >
   <LINK REL="made" HREF="mailto:extend%40lists.ninenines.eu?Subject=Re%3A%20%5B99s-extend%5D%20ssl_hello_world&In-Reply-To=%3C5347D8C7.8020906%40ninenines.eu%3E">
   <META NAME="robots" CONTENT="index,nofollow">
   <style type="text/css">
       pre {
           white-space: pre-wrap;       /* css-2.1, curent FF, Opera, Safari */
           }
   </style>
   <META http-equiv="Content-Type" content="text/html; charset=us-ascii">
   <LINK REL="Previous"  HREF="000370.html">
   <LINK REL="Next"  HREF="000372.html">
 </HEAD>
 <BODY BGCOLOR="#ffffff">
   <H1>[99s-extend] ssl_hello_world</H1>
    <B>Lo&#239;c Hoguin</B> 
    <A HREF="mailto:extend%40lists.ninenines.eu?Subject=Re%3A%20%5B99s-extend%5D%20ssl_hello_world&In-Reply-To=%3C5347D8C7.8020906%40ninenines.eu%3E"
       TITLE="[99s-extend] ssl_hello_world">essen at ninenines.eu
       </A><BR>
    <I>Fri Apr 11 13:57:59 CEST 2014</I>
    <P><UL>
        <LI>Previous message: <A HREF="000370.html">[99s-extend] ssl_hello_world
</A></li>
        <LI>Next message: <A HREF="000372.html">[99s-extend] ssl
</A></li>
         <LI> <B>Messages sorted by:</B> 
              <a href="date.html#371">[ date ]</a>
              <a href="thread.html#371">[ thread ]</a>
              <a href="subject.html#371">[ subject ]</a>
              <a href="author.html#371">[ author ]</a>
         </LI>
       </UL>
    <HR>  
<!--beginarticle-->
<PRE>It's tested on ArchLinux from R15B01 to master so that's unrelated to 
the Erlang version.

On 04/11/2014 01:48 PM, Samir Sow wrote:
&gt;<i> Thx.
</I>&gt;<i>
</I>&gt;<i> On which OS + Erlang version is the server running ?
</I>&gt;<i>
</I>&gt;<i> Samir
</I>&gt;<i> On 11 avr. 2014, at 13:41, Lo&#239;c Hoguin &lt;<A HREF="https://lists.ninenines.eu/listinfo/extend">essen at ninenines.eu</A>&gt; wrote:
</I>&gt;<i>
</I>&gt;&gt;<i> This is the successful output I get. You should try to see why yours is different, perhaps someone somewhere ran into the same issue at some point. Note that the --cacert option isn't needed and basically makes no difference.
</I>&gt;&gt;<i>
</I>&gt;&gt;<i>
</I>&gt;&gt;<i> % curl -ikvv <A HREF="https://localhost:8443">https://localhost:8443</A>
</I>&gt;&gt;<i> * Rebuilt URL to: <A HREF="https://localhost:8443/">https://localhost:8443/</A>
</I>&gt;&gt;<i> * Hostname was NOT found in DNS cache
</I>&gt;&gt;<i> *   Trying 127.0.0.1...
</I>&gt;&gt;<i> * Connected to localhost (127.0.0.1) port 8443 (#0)
</I>&gt;&gt;<i> * successfully set certificate verify locations:
</I>&gt;&gt;<i> *   CAfile: /etc/ssl/certs/ca-certificates.crt
</I>&gt;&gt;<i>   CApath: none
</I>&gt;&gt;<i> * SSLv3, TLS handshake, Client hello (1):
</I>&gt;&gt;<i> * SSLv3, TLS handshake, Server hello (2):
</I>&gt;&gt;<i> * SSLv3, TLS handshake, CERT (11):
</I>&gt;&gt;<i> * SSLv3, TLS handshake, Server key exchange (12):
</I>&gt;&gt;<i> * SSLv3, TLS handshake, Server finished (14):
</I>&gt;&gt;<i> * SSLv3, TLS handshake, Client key exchange (16):
</I>&gt;&gt;<i> * SSLv3, TLS change cipher, Client hello (1):
</I>&gt;&gt;<i> * SSLv3, TLS handshake, Finished (20):
</I>&gt;&gt;<i> * SSLv3, TLS change cipher, Client hello (1):
</I>&gt;&gt;<i> * SSLv3, TLS handshake, Finished (20):
</I>&gt;&gt;<i> * SSL connection using ECDHE-RSA-AES256-SHA384
</I>&gt;&gt;<i> * Server certificate:
</I>&gt;&gt;<i> * 	 subject: C=US; ST=Texas; O=Nine Nines; OU=Cowboy; CN=localhost
</I>&gt;&gt;<i> * 	 start date: 2013-02-28 05:23:34 GMT
</I>&gt;&gt;<i> * 	 expire date: 2033-02-23 05:23:34 GMT
</I>&gt;&gt;<i> * 	 issuer: C=US; ST=Texas; O=Nine Nines; OU=Cowboy; CN=ROOT CA
</I>&gt;&gt;<i> * 	 SSL certificate verify result: self signed certificate in certificate chain (19), continuing anyway.
</I>&gt;&gt;&gt;<i> GET / HTTP/1.1
</I>&gt;&gt;&gt;<i> User-Agent: curl/7.35.0
</I>&gt;&gt;&gt;<i> Host: localhost:8443
</I>&gt;&gt;&gt;<i> Accept: */*
</I>&gt;&gt;&gt;<i>
</I>&gt;&gt;<i> &lt; HTTP/1.1 200 OK
</I>&gt;&gt;<i> HTTP/1.1 200 OK
</I>&gt;&gt;<i> &lt; connection: keep-alive
</I>&gt;&gt;<i> connection: keep-alive
</I>&gt;&gt;<i> * Server Cowboy is not blacklisted
</I>&gt;&gt;<i> &lt; server: Cowboy
</I>&gt;&gt;<i> server: Cowboy
</I>&gt;&gt;<i> &lt; date: Fri, 11 Apr 2014 11:30:03 GMT
</I>&gt;&gt;<i> date: Fri, 11 Apr 2014 11:30:03 GMT
</I>&gt;&gt;<i> &lt; content-length: 12
</I>&gt;&gt;<i> content-length: 12
</I>&gt;&gt;<i> &lt; content-type: text/plain
</I>&gt;&gt;<i> content-type: text/plain
</I>&gt;&gt;<i>
</I>&gt;&gt;<i> &lt;
</I>&gt;&gt;<i>
</I>&gt;&gt;<i>
</I>&gt;&gt;<i> On 04/11/2014 01:25 PM, Samir Sow wrote:
</I>&gt;&gt;&gt;<i> Thx.
</I>&gt;&gt;&gt;<i>
</I>&gt;&gt;&gt;<i> Same error &#8230;
</I>&gt;&gt;&gt;<i> Openssl s_client does not work either.
</I>&gt;&gt;&gt;<i> the server does not answer to ClientHello &#8230;
</I>&gt;&gt;&gt;<i>
</I>&gt;&gt;&gt;<i> Samir
</I>&gt;&gt;&gt;<i>
</I>&gt;&gt;&gt;<i> On 11 avr. 2014, at 13:18, Lo&#239;c Hoguin &lt;<A HREF="https://lists.ninenines.eu/listinfo/extend">essen at ninenines.eu</A>&gt; wrote:
</I>&gt;&gt;&gt;<i>
</I>&gt;&gt;&gt;&gt;<i> The certificate in the SSL example is self-generated, try curl with the --insecure option.
</I>&gt;&gt;&gt;&gt;<i>
</I>&gt;&gt;&gt;&gt;<i> On 04/11/2014 12:39 PM, Samir Sow wrote:
</I>&gt;&gt;&gt;&gt;&gt;<i> Hi,
</I>&gt;&gt;&gt;&gt;&gt;<i>
</I>&gt;&gt;&gt;&gt;&gt;<i> Still struggling to make ssl work.
</I>&gt;&gt;&gt;&gt;&gt;<i>
</I>&gt;&gt;&gt;&gt;&gt;<i> I downloaded the example ssl_hello_world.
</I>&gt;&gt;&gt;&gt;&gt;<i> Upon execution : i get the following error with curl
</I>&gt;&gt;&gt;&gt;&gt;<i>
</I>&gt;&gt;&gt;&gt;&gt;<i>   About to connect() to localhost port 8443 (#0)
</I>&gt;&gt;&gt;&gt;&gt;<i> *   Trying ::1... Connexion refus&#233;e
</I>&gt;&gt;&gt;&gt;&gt;<i> *   Trying 127.0.0.1... connected
</I>&gt;&gt;&gt;&gt;&gt;<i> * Connected to localhost (127.0.0.1) port 8443 (#0)
</I>&gt;&gt;&gt;&gt;&gt;<i> * Initializing NSS with certpath: sql:/etc/pki/nssdb
</I>&gt;&gt;&gt;&gt;&gt;<i> * NSS error -8018
</I>&gt;&gt;&gt;&gt;&gt;<i> * Closing connection #0
</I>&gt;&gt;&gt;&gt;&gt;<i> * Problem with the SSL CA cert (path? access rights?)
</I>&gt;&gt;&gt;&gt;&gt;<i> curl: (77) Problem with the SSL CA cert (path? access rights?)
</I>&gt;&gt;&gt;&gt;&gt;<i>
</I>&gt;&gt;&gt;&gt;&gt;<i>
</I>&gt;&gt;&gt;&gt;&gt;<i> cmd = curl -vv --cacert priv/cert/cowboy-ca.crt -i <A HREF="https://localhost:8443/">https://localhost:8443/</A>
</I>&gt;&gt;&gt;&gt;&gt;<i>
</I>&gt;&gt;&gt;&gt;&gt;<i> cacert path checked.
</I>&gt;&gt;&gt;&gt;&gt;<i> read permission checked
</I>&gt;&gt;&gt;&gt;&gt;<i>
</I>&gt;&gt;&gt;&gt;&gt;<i> I&#8217;ve tested with a browser and get a connection error.
</I>&gt;&gt;&gt;&gt;&gt;<i>
</I>&gt;&gt;&gt;&gt;&gt;<i> Any clue ?
</I>&gt;&gt;&gt;&gt;&gt;<i>
</I>&gt;&gt;&gt;&gt;&gt;<i> Samir
</I>&gt;&gt;&gt;&gt;&gt;<i>
</I>&gt;&gt;&gt;&gt;&gt;<i>
</I>&gt;&gt;&gt;&gt;&gt;<i> _______________________________________________
</I>&gt;&gt;&gt;&gt;&gt;<i> Extend mailing list
</I>&gt;&gt;&gt;&gt;&gt;<i> <A HREF="https://lists.ninenines.eu/listinfo/extend">Extend at lists.ninenines.eu</A>
</I>&gt;&gt;&gt;&gt;&gt;<i> <A HREF="https://lists.ninenines.eu/listinfo/extend">https://lists.ninenines.eu/listinfo/extend</A>
</I>&gt;&gt;&gt;&gt;&gt;<i>
</I>&gt;&gt;&gt;&gt;<i>
</I>&gt;&gt;&gt;&gt;<i> --
</I>&gt;&gt;&gt;&gt;<i> Lo&#239;c Hoguin
</I>&gt;&gt;&gt;&gt;<i> <A HREF="http://ninenines.eu">http://ninenines.eu</A>
</I>&gt;&gt;&gt;<i>
</I>&gt;&gt;<i>
</I>&gt;&gt;<i> --
</I>&gt;&gt;<i> Lo&#239;c Hoguin
</I>&gt;&gt;<i> <A HREF="http://ninenines.eu">http://ninenines.eu</A>
</I>&gt;<i>
</I>
-- 
Lo&#239;c Hoguin
<A HREF="http://ninenines.eu">http://ninenines.eu</A>

</PRE>

<!--endarticle-->
    <HR>
    <P><UL>
        <!--threads-->
	<LI>Previous message: <A HREF="000370.html">[99s-extend] ssl_hello_world
</A></li>
	<LI>Next message: <A HREF="000372.html">[99s-extend] ssl
</A></li>
         <LI> <B>Messages sorted by:</B> 
              <a href="date.html#371">[ date ]</a>
              <a href="thread.html#371">[ thread ]</a>
              <a href="subject.html#371">[ subject ]</a>
              <a href="author.html#371">[ author ]</a>
         </LI>
       </UL>

<hr>
<a href="https://lists.ninenines.eu/listinfo/extend">More information about the Extend
mailing list</a><br>
</body></html>