in reply to Re^3: Internal SSL error after Ubuntu update
in thread Internal SSL error after Ubuntu update
ssl_choose_client_version:unsupported protocolThat does suggest to me that the newest protocol version supported by the server is older than the oldest protocol permitted by the upgraded client. Given that your working client shows a negotiated TLSv1.1 that's probably the highest/newest supported by the server.
Very likely. The LDAP server is ancient, the last update must have been in 2011. Replacement is planned, but for now, we have to work with that old installation.
check the MinProtocol setting in the openssl config of your upgraded machine. You may have to configure it downwards towards TLSv1.1 to permit the connection.
Following https://askubuntu.com/questions/1233186/ubuntu-20-04-how-to-set-lower-ssl-security-level, I modified the openssl configuration to allow TLS v1.1. openssl sclient is now able to connect.
Perl still gets the same old error:
SSL connect attempt failed error:14161044:SSL routines:state_machine:internal errorAlexander
|
|---|
| Replies are listed 'Best First'. | |
|---|---|
|
Re^5: Internal SSL error after Ubuntu update
by hippo (Archbishop) on Jan 22, 2021 at 15:11 UTC | |
by afoken (Chancellor) on Jan 22, 2021 at 15:30 UTC |