[Date Prev][Date Next] [Chronological] [Thread] [Top]

RE: Connecting Netscape + SSL to OpenLdap 2.0.6



> >Has anyone had luck getting Outlook to connect to OpenLDAP via SSL?
>
> Yes but not with login:
>
> Anon    OK
> SSL    OK
> Login    OK
> SSL+Login    Outlook crashes
>
> I am told by one who usally knows these things that my MSIE DLL's are the
> cause.

Interesting... here are my results:

Outlook Version: 2000 (9.0.0.2711)
OpenLDAP Version: 2.0.6
TLSVerifyClient is /NOT/ set in slapd.conf (default to 1?)

Anon: OK
SSL Anon: Crash

I have not tried logging in.

I have included the debug from slapd.  I applogize that it is very verbose,
but I thought someone might find it useful.

Thank you,
Seth

TLS trace: SSL_accept:before/accept initialization
tls_read: want=11, got=11
  0000:  80 61 01 03 01 00 48 00  00 00 10                  .a....H....
tls_read: want=88, got=88
  0000:  8f 80 01 80 00 03 80 00  01 81 00 01 81 00 03 82   ................
  0010:  00 01 00 00 04 00 00 05  00 00 0a 83 00 04 84 80   ................
  0020:  40 01 00 80 07 00 c0 03  00 80 00 00 09 06 00 40   @..............@
  0030:  00 00 64 00 00 62 00 00  03 00 00 06 83 00 04 84   ..d..b..........
  0040:  28 40 02 00 80 04 00 80  e4 da 07 63 dd d9 80 d4   (@.........c....
  0050:  bd d7 c9 af 05 c7 f5 ad                            ........
TLS trace: SSL_accept:SSLv3 read client hello A
TLS trace: SSL_accept:SSLv3 write server hello A
TLS trace: SSL_accept:SSLv3 write certificate A
TLS trace: SSL_accept:SSLv3 write server done A
tls_write: want=779, written=779
  0000:  16 03 01 00 4a 02 00 00  46 03 01 39 ef 11 32 83   ....J...F..9..2.
  0010:  b0 c0 1b 54 5e fa 89 7b  a8 2f d9 17 fa 26 8f 44   ...T^..{./...&.D
  0020:  6d 52 83 bb 32 1e 04 61  7b 16 21 20 d1 29 cb bc   mR..2..a{.! .)..
  0030:  f0 5d 96 e3 92 50 91 de  6a 31 11 bc 8e 7a 80 a3   .]...P..j1...z..
  0040:  67 23 75 41 b9 f5 46 62  44 c2 26 63 00 04 00 16   g#uA..FbD.&c....
  0050:  03 01 02 ae 0b 00 02 aa  00 02 a7 00 02 a4 30 82   ..............0.
  0060:  02 a0 30 82 02 09 a0 03  02 01 02 02 01 00 30 0d   ..0...........0.
  0070:  06 09 2a 86 48 86 f7 0d  01 01 04 05 00 30 45 31   ..*.H........0E1
  0080:  0b 30 09 06 03 55 04 06  13 02 41 55 31 13 30 11   .0...U....AU1.0.
  0090:  06 03 55 04 08 13 0a 53  6f 6d 65 2d 53 74 61 74   ..U....Some-Stat
  00a0:  65 31 21 30 1f 06 03 55  04 0a 13 18 49 6e 74 65   e1!0...U....Inte
  00b0:  72 6e 65 74 20 57 69 64  67 69 74 73 20 50 74 79   rnet Widgits Pty
  00c0:  20 4c 74 64 30 1e 17 0d  30 30 31 30 31 37 31 38    Ltd0...00101718
  00d0:  33 39 33 36 5a 17 0d 30  31 31 30 31 37 31 38 33   3936Z..011017183
  00e0:  39 33 36 5a 30 45 31 0b  30 09 06 03 55 04 06 13   936Z0E1.0...U...
  00f0:  02 41 55 31 13 30 11 06  03 55 04 08 13 0a 53 6f   .AU1.0...U....So
  0100:  6d 65 2d 53 74 61 74 65  31 21 30 1f 06 03 55 04   me-State1!0...U.
  0110:  0a 13 18 49 6e 74 65 72  6e 65 74 20 57 69 64 67   ...Internet Widg
  0120:  69 74 73 20 50 74 79 20  4c 74 64 30 81 9f 30 0d   its Pty Ltd0..0.
  0130:  06 09 2a 86 48 86 f7 0d  01 01 01 05 00 03 81 8d   ..*.H...........
  0140:  00 30 81 89 02 81 81 00  d0 1d 36 23 3c d7 dd 1b   .0........6#<...
  0150:  a8 ef 6a d4 90 29 a7 df  ef 3f 2f a8 9e 14 8e 23   ..j..)...?/....#
  0160:  9e cf 58 d2 8e a4 06 be  a6 c4 77 db 09 d7 8b 6e   ..X.......w....n
  0170:  b0 f4 da 8b 29 59 8b 08  e1 8a d8 4e 4a 87 eb 8e   ....)Y.....NJ...
  0180:  43 48 a8 e1 0f 1c 00 67  72 da 6c 13 9e 18 42 bc   CH.....gr.l...B.
  0190:  6c 9d 5a 21 cc 28 1d a0  18 fd 76 1e 0e 14 49 6c   l.Z!.(....v...Il
  01a0:  44 53 e9 a0 16 06 5e b0  c0 36 6d 30 a8 b1 ec dd   DS....^..6m0....
  01b0:  d2 4c 30 2d fd b7 87 10  94 48 54 d7 92 dc 0b 2c   .L0-.....HT....,
  01c0:  1e 63 24 44 0d bd a9 45  02 03 01 00 01 a3 81 9f   .c$D...E........
  01d0:  30 81 9c 30 1d 06 03 55  1d 0e 04 16 04 14 c7 ba   0..0...U........
  01e0:  ee 48 93 c8 34 33 43 50  96 30 75 80 e6 21 03 6c   .H..43CP.0u..!.l
  01f0:  e0 67 30 6d 06 03 55 1d  23 04 66 30 64 80 14 c7   .g0m..U.#.f0d...

  0200:  ba ee 48 93 c8 34 33 43  50 96 30 75 80 e6 21 03   ..H..43CP.0u..!.
  0210:  6c e0 67 a1 49 a4 47 30  45 31 0b 30 09 06 03 55   l.g.I.G0E1.0...U
  0220:  04 06 13 02 41 55 31 13  30 11 06 03 55 04 08 13   ....AU1.0...U...
  0230:  0a 53 6f 6d 65 2d 53 74  61 74 65 31 21 30 1f 06   .Some-State1!0..
  0240:  03 55 04 0a 13 18 49 6e  74 65 72 6e 65 74 20 57   .U....Internet W
  0250:  69 64 67 69 74 73 20 50  74 79 20 4c 74 64 82 01   idgits Pty Ltd..
  0260:  00 30 0c 06 03 55 1d 13  04 05 30 03 01 01 ff 30   .0...U....0....0
  0270:  0d 06 09 2a 86 48 86 f7  0d 01 01 04 05 00 03 81   ...*.H..........
  0280:  81 00 c3 6e f5 67 d4 c4  f2 ed 70 eb 90 4d 9a 53   ...n.g....p..M.S
  0290:  fc f9 8a 93 f3 e4 73 73  97 79 85 a7 b7 ed df bc   ......ss.y......
  02a0:  2d 9c 8c 3e 28 d1 4a 75  85 08 33 f6 ec db 60 f0   -..>(.Ju..3...`.
  02b0:  63 e8 78 7b 79 92 92 01  df 8b 01 0a 41 8e e7 04   c.x{y.......A...
  02c0:  d9 4d bd 37 c6 eb 34 96  21 e0 d5 16 fb be 18 93   .M.7..4.!.......
  02d0:  7c f8 f3 33 88 28 8d 44  62 18 c0 b8 00 71 dc a2   |..3.(.Db....q..
  02e0:  64 77 7d e1 2e 1f 47 92  11 71 40 29 d7 5e cf 39   dw}...G..q@).^.9
  02f0:  e9 88 8b 5f 09 bd 25 03  33 1b 6f 6c 1f 1d 38 cf   ..._..%.3.ol..8.
  0300:  17 0d 16 03 01 00 04 0e  00 00 00                  ...........
TLS trace: SSL_accept:SSLv3 flush data
tls_read: want=5 error=Resource temporarily unavailable
TLS trace: SSL_accept:error in SSLv3 read client certificate A
TLS trace: SSL_accept:error in SSLv3 read client certificate A
daemon: select: listen=6 active_threads=0 tvp=NULL
daemon: activity on 1 descriptors
daemon: activity on: 9r
daemon: read activity on 9
connection_get(9)
connection_get(9): got connid=0
connection_read(9): checking for input on id=0
tls_read: want=5, got=5
  0000:  16 03 01 00 86                                     .....
tls_read: want=134, got=134
  0000:  10 00 00 82 00 80 a4 5d  c0 39 70 2f c7 48 49 06   .......].9p/.HI.
  0010:  db 50 63 d0 51 ef 55 0e  39 a9 b5 6d 0b 73 f7 73   .Pc.Q.U.9..m.s.s
  0020:  ca d2 ee 53 0f fd 8c 34  a1 8f f3 34 20 76 96 98   ...S...4...4 v..
  0030:  2e bf 91 28 fd 2b 58 3a  0e 6e 60 0e 1e 77 fd 09   ...(.+X:.n`..w..
  0040:  74 30 f2 c4 d7 5c 3e 2f  24 42 20 ec 5c d2 60 63   t0...\>/$B .\.`c
  0050:  a1 04 a8 97 53 7b 52 24  1b b9 31 fb b2 95 d1 2c   ....S{R$..1....,
  0060:  65 f0 73 87 3b 75 65 14  7f 0d 7e 8c 4d fd 7b 48   e.s.;ue...~.M.{H
  0070:  45 30 95 83 15 42 13 f8  a7 ce 9d 9c 7f c7 3e ae   E0...B........>.
  0080:  a1 ca 43 bd da 9c                                  ..C...
TLS trace: SSL_accept:SSLv3 read client key exchange A
tls_read: want=5, got=5
  0000:  14 03 01 00 01                                     .....
tls_read: want=1, got=1
  0000:  01                                                 .
tls_read: want=5, got=5
  0000:  16 03 01 00 20                                     ....
tls_read: want=32, got=32
  0000:  45 86 a9 d7 16 af 89 55  e0 d3 56 85 c2 c5 0a 69   E......U..V....i
  0010:  38 78 66 13 dd c8 e5 dc  3a 56 12 3b 1c 8e 14 aa   8xf.....:V.;....
TLS trace: SSL_accept:SSLv3 read finished A
TLS trace: SSL_accept:SSLv3 write change cipher spec A
TLS trace: SSL_accept:SSLv3 write finished A
tls_write: want=43, written=43
  0000:  14 03 01 00 01 01 16 03  01 00 20 3f 30 12 61 b4   .......... ?0.a.
  0010:  bb 38 22 ac bb 00 8e 16  7e 66 4e 2e 9c 0a eb be   .8".....~fN.....
  0020:  c7 50 d1 c5 73 29 5c 91  b8 fc b3                  .P..s)\....
TLS trace: SSL_accept:SSLv3 flush data
daemon: select: listen=6 active_threads=0 tvp=NULL
daemon: activity on 1 descriptors
daemon: activity on: 9r
daemon: read activity on 9
connection_get(9)
connection_get(9): got connid=0
connection_read(9): checking for input on id=0
ber_get_next
tls_read: want=5 error=Connection reset by peer
sockbuf_read: want=1 error=Connection reset by peer
ber_get_next on fd 9 failed errno=104 (Connection reset by peer)
connection_read(9): input error=-2 id=0, closing.
connection_closing: readying conn=0 sd=9 for close
connection_close: conn=0 sd=9
daemon: removing 9
tls_write: want=23 error=Broken pipe
daemon: select: listen=6 active_threads=0 tvp=NULL
daemon: activity on 1 descriptors
daemon: select: listen=6 active_threads=0 tvp=NULL