using Apache 2.28 on Windows 2003; apache won't start withvalidated certs using openssl; openssl deb

------_=_NextPart_001_01C8BC41.362DE67C
Content-Type: text/plain;
charset=iso-8859-1
Content-Transfer-Encoding: quoted-printable

I am receiving the following error entries when I try to start apache. I =
was able to validate the key by using the openssl command. It printed out =
a=
lot of hex stuff. So, I believe the key is good. I was also able to prin=
t=
out the cert.

[Wed May 21 18:40:53 2008] [info] Init: Seeding PRNG with 136 bytes of =
entropy
[Wed May 21 18:40:54 2008] [info] Loading certificate & private key of =
SSL-aware server
[Wed May 21 18:40:54 2008] [error] Init: SSLPassPhraseDialog builtin is not=
=
supported on Win32 (key file C:/Program Files/Apache Software =
=46oundation/Apache2.2/conf/geophil.key)
[Wed May 21 18:42:36 2008] [info] Init: Seeding PRNG with 136 bytes of =
entropy
[Wed May 21 18:42:36 2008] [info] Loading certificate & private key of =
SSL-aware server
[Wed May 21 18:42:36 2008] [info] Init: Requesting pass phrase from dialog =
=66ilter program (C:/Program Files/Apache Software =
=46oundation/Apache2.2/conf/resource.bat)
[Wed May 21 18:42:36 2008] [error] Init: Pass phrase incorrect
[Wed May 21 18:42:36 2008] [error] SSL Library Error: 218710117 =
error:0D094065:asn1 encoding routines:d2i_ASN1_SET:bad class
[Wed May 21 18:42:36 2008] [error] SSL Library Error: 218529960 =
error:0D0680A8:asn1 encoding routines:ASN1_CHECK_TLEN:wrong tag
[Wed May 21 18:42:36 2008] [error] SSL Library Error: 218595386 =
error:0D07803A:asn1 encoding routines:ASN1_ITEM_EX_D2I:nested asn1 error
[Wed May 21 18:42:36 2008] [error] SSL Library Error: 218734605 =
error:0D09A00D:asn1 encoding routines:d2i_PrivateKey:ASN1 lib

The other issue I have with Apache 2.28 has to do with file descriptors. I=
=
issue the follow command on Windows 2003: openssl s_client -connect =
localhost:443 -state -debug

Loading 'screen' into random state - done
connect: Bad file descriptor
connect:errno=3D10061

This is a hot item that I am solving for a customer, please get back to me =
right away.

Thank you.

Phil L.


Phil Lefort
PSO Senior Field Engineer
Office: 650-216-2173
Cell: 650-743-1917
phil.lefort [at] tumbleweed.com
www.tumbleweed.com =
<https://webaccess.tumbleweed.com/exchweb/bin/redir.asp=3FURL=3Dhttp://www.=
tumbleweed.com>=

Gartner 2007 Magic Quadrant
Tumbleweed Positioned in Leaders Quadrant
http://www.tumbleweed.com/securemessenger

"Tumbleweed Communications <tumbleweed.com>" made the following
annotations on 05/22/08, 12:39:40
------------------------------------------------------------ ---------------=
---
=3D=3D=3D Tumbleweed Communications Disclaimer =3D=3D=3D

This e-mail, including attachments, may include confidential and/or =
proprietary information, and may be used only by the person or entity to =
which it is addressed. If the reader of this e-mail is not the intended =
recipient or his or her authorized agent, the reader is hereby notified tha=
t=
any dissemination, distribution or copying of this e-mail is prohibited. I=
=66=
you have received this e-mail in error, please notify the sender by =
replying to this message and delete this e-mail immediately.


Tumbleweed Communications Corp., an industry leader in managed file
transfer and content security, provides enterprise-class solutions to
organizations of all sizes. Tumbleweed's innovative products enable
organizations to effectively manage and protect business-critical
Internet communications, with capabilities that span secure file
transfer, encryption, data loss prevention, and email security.


=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D =3D=3D=3D=3D=3D=
=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D =3D=3D=3D=3D=3D=
=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D =3D=3D=3D=3D=3D=
=3D=3D=3D

------_=_NextPart_001_01C8BC41.362DE67C
Content-Type: text/html;
charset=iso-8859-1
Content-Transfer-Encoding: quoted-printable

<HTML dir=3Dltr><HEAD>
<META http-equiv=3DContent-Type content=3D"text/html; charset=3Dunicode">
<META content=3D"MSHTML 6.00.6000.16640" name=3DGENERATOR></HEAD>
<BODY>
<DIV id=3DidOWAReplyText18800 dir=3Dltr>
<DIV dir=3Dltr><FONT face=3DArial color=3D#000000 size=3D2>I am receiving =
the following error entries when I try to start apache.  I was able to=
=
validate the key by using the openssl command.  It printed out a lot o=
=66=
hex stuff.  So, I believe the key is good.  I was also able to =
print out the cert.</FONT></DIV>
<DIV dir=3Dltr><FONT face=3DArial size=3D2></FONT> </DIV>
<DIV dir=3Dltr><FONT color=3D#ff0000>[Wed May 21 18:40:53 2008] [info] Init=
:=
Seeding PRNG with 136 bytes of entropy<BR>[Wed May 21 18:40:54 2008] [info=
]=
Loading certificate & private key of SSL-aware server<BR>[Wed May 21 =
18:40:54 2008] [error] Init: SSLPassPhraseDialog builtin is not supported o=
n=
Win32 (key file C:/Program Files/Apache Software =
=46oundation/Apache2.2/conf/geophil.key)<BR>[Wed May 21 18:42:36 2008] =
[info] Init: Seeding PRNG with 136 bytes of entropy<BR><STRONG><FONT =
color=3D#800000>[Wed May 21 18:42:36 2008] [info] Loading certificate &=
=
private key of SSL-aware server<BR>[Wed May 21 18:42:36 2008] [info] Init: =
Requesting pass phrase from dialog filter program (C:/Program Files/Apache =
Software Foundation/Apache2.2/conf/resource.bat)<BR>[Wed May 21 18:42:36 =
2008] [error] Init: Pass phrase incorrect<BR></FONT></STRONG>[Wed May 21 =
18:42:36 2008] [error] SSL Library Error: 218710117 error:0D094065:asn1 =
encoding routines:d2i_ASN1_SET:bad class<BR>[Wed May 21 18:42:36 2008] =
[error] SSL Library Error: 218529960 error:0D0680A8:asn1 encoding =
routines:ASN1_CHECK_TLEN:wrong tag<BR>[Wed May 21 18:42:36 2008] [error] SS=
L=
Library Error: 218595386 error:0D07803A:asn1 encoding =
routines:ASN1_ITEM_EX_D2I:nested asn1 error<BR>[Wed May 21 18:42:36 2008] =
[error] SSL Library Error: 218734605 error:0D09A00D:asn1 encoding =
routines:d2i_PrivateKey:ASN1 lib<BR></FONT></DIV>
<DIV dir=3Dltr><FONT color=3D#ff0000><FONT color=3D#000000>The other issue =
I=
have with Apache 2.28 has to do with file descriptors.  I issue the =
=66ollow command on Windows 2003:   </FONT></FONT><FONT =
color=3D#ff0000><STRONG><FONT face=3DArial size=3D2>openssl s_client =
-connect localhost:44</FONT></STRONG><FONT color=3Dred><SPAN =
style=3D"FONT-WEIGHT: bold; FONT-SIZE: 10pt; COLOR: red; FONT-FAMILY: =
Arial">3 -state -debug</SPAN></FONT></FONT></DIV><FONT color=3D#ff0000><FON=
T=
color=3Dred><SPAN style=3D"FONT-WEIGHT: bold; FONT-SIZE: 10pt; COLOR: red;=
=
=46ONT-FAMILY: Arial"><FONT face=3DArial color=3Dred size=3D2><SPAN =
style=3D"FONT-WEIGHT: bold; FONT-SIZE: 10pt; COLOR: red; FONT-FAMILY: =
Arial">
<DIV dir=3Dltr><BR><FONT color=3D#800000>Loading 'screen' into random state=
=
- done</FONT></DIV>
<DIV dir=3Dltr><FONT color=3D#800000>connect: Bad file =
descriptor</FONT></DIV>
<DIV dir=3Dltr><FONT color=3D#800000>connect:errno=3D10061</FONT></DIV>
<DIV dir=3Dltr><FONT color=3D#800000></FONT> </DIV>
<DIV dir=3Dltr><FONT color=3D#000000>This is a hot item that I am solving =
=66or a customer, please get back to me right away.</FONT></DIV>
<DIV dir=3Dltr><FONT color=3D#000000></FONT> </DIV>
<DIV dir=3Dltr><FONT color=3D#000000>Thank you.</FONT></DIV>
<DIV dir=3Dltr><FONT color=3D#000000></FONT> </DIV>
<DIV dir=3Dltr><FONT color=3D#000000>Phil =
L.</FONT></DIV></SPAN></FONT></SPAN></FONT></FONT>
<DIV dir=3Dltr><FONT color=3D#800000><SPAN style=3D"FONT-WEIGHT: bold; =
=46ONT-SIZE: 10pt; COLOR: red; FONT-FAMILY: =
Arial"></SPAN></FONT> </DIV>
<DIV dir=3Dltr><FONT color=3D#800000><SPAN style=3D"FONT-WEIGHT: bold; =
=46ONT-SIZE: 10pt; COLOR: red; FONT-FAMILY: Arial"></SPAN></FONT><FONT =
=66ace=3DArial color=3D#000000 size=3D2></FONT> </DIV></DIV>
<DIV id=3DidSignature97938 dir=3Dltr>
<DIV RE>
<DIV>
<DIV class=3DMsoNormal><FONT face=3D"Trebuchet MS" color=3D#124885 =
size=3D2><SPAN style=3D"FONT-SIZE: 10.5pt; COLOR: #124885; FONT-FAMILY: =
'Trebuchet MS'">Phil Lefort</SPAN></FONT><BR><FONT face=3D"Trebuchet MS" =
color=3D#3a3c3b size=3D1><SPAN style=3D"FONT-SIZE: 7.5pt; COLOR: #3a3c3b; =
=46ONT-FAMILY: 'Trebuchet MS'">PSO Senior Field Engineer<BR>Office: =
650-216-2173<BR>Cell: 650-743-1917<BR><A =
href=3D"mailto:phil.lefort [at] tumbleweed.com" =
target=3D_blank>phil.lefort [at] tumbleweed.com</A> <BR></SPAN></FONT><FONT =
=66ace=3DVerdana color=3D#5c7fa7 size=3D1><SPAN style=3D"FONT-SIZE: 8.5pt; =
COLOR: #5c7fa7; FONT-FAMILY: Verdana"><A title=3Dhttp://www.tumbleweed.com/=
=
href=3D"https://webaccess.tumbleweed.com/exchweb/bin/redir.a sp=3FURL=3Dhttp=
://www.tumbleweed.com"=
target=3D_blank>www.tumbleweed.com</A></SPAN></FONT><FONT =
color=3Dnavy><SPAN style=3D"COLOR: navy"></SPAN></FONT></DIV>
<DIV class=3DMsoNormal><FONT face=3D"Trebuchet MS" color=3Dmaroon =
size=3D2><SPAN style=3D"FONT-SIZE: 10pt; COLOR: maroon; FONT-FAMILY: =
'Trebuchet MS'">Gartner 2007 Magic Quadrant</SPAN></FONT><FONT =
=66ace=3DVerdana color=3D#5c7fa7 size=3D1><SPAN style=3D"FONT-SIZE: 8.5pt; =
COLOR: #5c7fa7; FONT-FAMILY: Verdana"></SPAN></FONT></DIV>
<DIV class=3DMsoNormal><FONT face=3D"Trebuchet MS" color=3Dmaroon =
size=3D2><SPAN style=3D"FONT-SIZE: 10pt; COLOR: maroon; FONT-FAMILY: =
'Trebuchet MS'">Tumbleweed Positioned in Leaders Quadrant</SPAN></FONT><FON=
T=
face=3DVerdana color=3D#5c7fa7 size=3D1><SPAN style=3D"FONT-SIZE: 8.5pt; =
COLOR: #5c7fa7; FONT-FAMILY: Verdana"></SPAN></FONT></DIV>
<DIV class=3DMsoNormal><FONT face=3DArial color=3D#5c7fa7 size=3D1><SPAN =
style=3D"FONT-SIZE: 7.5pt; COLOR: #5c7fa7; FONT-FAMILY: Arial"><A =
title=3Dhttp://www.tumbleweed.com/securemessenger =
href=3D"http://www.tumbleweed.com/securemessenger" =
target=3D_blank>http://www.tumbleweed.com/securemessenger</A></SPAN></FONT>=
</DIV></DIV><PRE></PRE></DIV></DIV>
<P><pre wrap>"Tumbleweed Communications <tumbleweed.com>" made the =
=66ollowing
annotations on 05/22/08, 12:39:40
------------------------------------------------------------ ---------------=
---
</pre>=3D=3D=3D Tumbleweed Communications Disclaimer =3D=3D=3D <br>
This e-mail, including attachments, may include confidential and/or =
proprietary information, and may be used only by the person or entity to =
which it is addressed. If the reader of this e-mail is not the intended =
recipient or his or her authorized agent, the reader is hereby notified tha=
t=
any dissemination, distribution or copying of this e-mail is prohibited. I=
=66=
you have received this e-mail in error, please notify the sender by =
replying to this message and delete this e-mail immediately. <br> <br>
Tumbleweed Communications Corp., an industry leader in managed file
transfer and content security, provides enterprise-class solutions to
organizations of all sizes. Tumbleweed's innovative products enable
organizations to effectively manage and protect business-critical
Internet communications, with capabilities that span secure file
transfer, encryption, data loss prevention, and email security.<br>

=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D =3D=3D=3D=3D=3D=
=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D =3D=3D=3D=3D=3D=
=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D =3D=3D=3D=3D=3D=
=3D=3D=3D
</pre></P></BODY></HTML>
------_=_NextPart_001_01C8BC41.362DE67C--
Phil Lefort [ Do, 22 Mai 2008 21:22 ] [ ID #1953396 ]
Webserver » gmane.comp.apache.mod-ssl.user » using Apache 2.28 on Windows 2003; apache won't start withvalidated certs using openssl; openssl deb

Vorheriges Thema: file descriptor error # 10061 under Win 2003 & WinXP
Nächstes Thema: SSLRequire, client certs and dynamic IP addresses