SSL Error: alert internal error

Christopher Peters cjpeters at uci.edu
Mon Jul 29 18:02:48 EDT 2013


Well, we are using it for the SSO transaction (which uses Apache), but I
see your point.  I don't really know how Java's dependencies are set up,
but if you say it's not relying on OSSL, I will take your word for it.
 That makes life much simpler anyway.

As for the SSL thing, I have a server mirrored on another system and I can
set it up with 1.7 and see if I can get an OpenSSL connection to Tomcat on
8443.  I will give that a shot and let you know what I find out.

Chris


On Mon, Jul 29, 2013 at 2:50 PM, Cantor, Scott <cantor.2 at osu.edu> wrote:

> On 7/29/13 5:47 PM, "Christopher Peters" <cjpeters at uci.edu> wrote:
>
> >I will work on upgrading Java to 1.7 and possibly OpenSSL and see if that
> >fixes things.  We do have a rather old version of OpenSSL on the system,
> >and the related libraries. And, of course, an old version of Java.
>
> You're not using OpenSSL, that's not relevant.
>
> The bad cert error isn't the expiration, we're talking protocol level
> issues here. OpenSSL's s_client doesn't care about the dates or the
> validity, it's just trying to negotiate the connection.
>
> -- Scott
>
>
> --
> To unsubscribe from this list send an email to
> users-unsubscribe at shibboleth.net
>



-- 
Chris Peters
Middleware Services Developer
Office of Information Technology - NSP
(949) 824-6845
cjpeters at uci.edu
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/users/attachments/20130729/0cde655e/attachment.html 


More information about the users mailing list