OpenCSW Bug Tracker


Viewing Issue Simple Details Jump to Notes ] View Advanced ] Issue History ] Print ]
ID Category Severity Reproducibility Date Submitted Last Update
0005168 [stunnel] regular use block always 2014-04-23 21:25 2014-05-30 10:18
Reporter klpaskettw View Status public  
Assigned To bwalton
Priority normal Resolution fixed  
Status closed  
Summary 0005168: stunnel needs to be recompiled to work with OpenSSL 1.0.1g
Description Upon upgrade OpenSSL to 1.0.1g to fix the heartblead issue, stunnel will no longer start up. The following error is produced.

stunnel 4.56 on i386-pc-solaris2.10 platform
Compiled with OpenSSL 1.0.1e 11 Feb 2013
Running with OpenSSL 1.0.1g 7 Apr 2014
Update OpenSSL shared libraries or rebuild stunnel
Threading:PTHREAD Sockets:POLL,IPv6 SSL:ENGINE,OCSP,FIPS Auth:LIBWRAP
Reading configuration from file /etc/opt/csw/stunnel/stunnel.conf
FIPS_mode_set: F06D065: error:0F06D065:common libcrypto routines:FIPS_mode_set:fips mode not supported
Line 67: "[ldaps]": Failed to initialize SSL
str_stats: 7 block(s), 150 data byte(s), 294 control byte(s)

Additional Information
Tags No tags attached.
Attached Files

- Relationships

-  Notes
(0010808)
bwalton (administrator)
2014-04-23 23:58

I just uploaded new packages to the unstable catalog. Please test these when they hit your mirror.

Thanks
-Ben
(0010811)
klpaskettw (reporter)
2014-04-24 17:38

http://mirror.opencsw.org/status/ [^] shows that none of the mirrors have updated since 2014-04-09 04:08:50. I will test as soon as it shows up.
(0010817)
klpaskettw (reporter)
2014-05-05 04:34
edited on: 2014-05-05 04:37

I updated to the latest packages and stunnel is working fine.

I did have to add 'fips = no' to the default config file though. Maybe that was the problem all along.



Copyright © 2000 - 2008 Mantis Group
Powered by Mantis Bugtracker