[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[iaik-ssl] Handshake problem in iSaSiLk_light



Hi,
I have written short applet which uses iSaSiLk_light to communicate with a
server - Apache with mod_ssl support or with server based on SUN's JSSE. But
there is still problem with handshake. 

debug info:
    send client_hello... 
    received server_hello... 
    Server doesn't want to resume a previous session. 
    CipherSuite selected by server: SSL_RSA_WITH_RC4_MD5 
    CompressionMethod selected by server: NULL 
    received Certificate - ignoring... 
    received server_hello_done... 
    send ClientKeyExchange... 
    send change_cipher_spec... 
    send finished... 
    An exception occured: socket write error (code=10053) 
    java.net.SocketException: socket write error (code=10053) 	
   	at java.net.SocketOutputStream.write(SocketOutputStream.java:87)

	at iaik.applet.ssl.OutputRecord.sendMessage(OutputRecord.java:188)

	at iaik.applet.ssl.Handshaker.sendMessage(Handshaker.java:81) 	
	at
iaik.applet.ssl.ClientHandshaker.sendHandshakeMessages(ClientHandshaker.java
:111) 	
	at
iaik.applet.ssl.ClientHandshaker.doHandshake(ClientHandshaker.java:247)

	at
iaik.applet.ssl.SSLConnection.startHandshake(SSLConnection.java:90) 	
	at SSLCode1.fetchDocument(SSLCode1.java:57) 	
    
Apache-SSL log file:
   [15/Mar/2001 15:10:40 02324] [error] SSL handshake failed (server
d203s40:443, client 1.20.203.40) (OpenSSL library error follows)
   [15/Mar/2001 15:10:40 02324] [error] OpenSSL: error:0407106B:rsa
routines:RSA_padding_check_PKCS1_type_2:block type is not 02
   [15/Mar/2001 15:10:40 02324] [error] OpenSSL: error:04065072:rsa
routines:RSA_EAY_PRIVATE_DECRYPT:padding check failed
   [15/Mar/2001 15:10:40 02324] [error] OpenSSL: error:1408B076:SSL
routines:SSL3_GET_CLIENT_KEY_EXCHANGE:bad rsa decrypt	

It seems to be problem with ClientKeyExchange message. I don't know if I do
something wrong, because demo applet on iaik's web page doesn't work also.
Know anybody solution?
     
Best regards, 
Marek T.
--
Mailinglist-archive at http://jcewww.iaik.at/mailarchive/iaik-ssl/sslthreads.html

To unsubscribe send an email to listserv@iaik.at with the folowing content: UNSUBSCRIBE iaik-ssl