Problems with SSL

Al Gettier <gettier-9sXRx/[email protected]> Wed, 19 Nov 2014 08:48:38 -0600
Newsgroups gmane.comp.java.grinder.user
Message-ID <[email protected]>
Hello everyone

I am really over my head in getting SSL working to my system.  I can connect to my system with both IE and Firefox, but when I try to connect with grinder the host disconnects during the initial handshake.  I am assuming it is an SSL Key problem, but I really don’t know this stuff very well, any help would be appreciated.

I turned on debugging, and some interesting things in the log are:

2014-11-18 18:57:22,817 INFO  agent: worker AE-B62PK02-0 started

keyStore is :
keyStore type is : jks
keyStore provider is :
init keystore
init keymanager of type SunX509
trustStore is: C:\Program Files (x86)\Java\jre7\lib\security\cacerts
trustStore type is : jks
trustStore provider is :
init truststore
adding as trusted cert:

  Subject: CN=SwissSign Platinum CA - G2, O=SwissSign AG, C=CH
  Issuer:  CN=SwissSign Platinum CA - G2, O=SwissSign AG, C=CH
  Algorithm: RSA; Serial number: 0x4eb200670c035d4f
  Valid from Wed Oct 25 03:36:00 CDT 2006 until Sat Oct 25 03:36:00 CDT 2036

At this point, many trusted cert’s are added.  Then many messages about ignoring unsupported ciphers, with this in the middle:

Allow unsafe renegotiation: false
Allow legacy hello messages: true
Is initial handshake: true
Is secure renegotiation: false

Then when communicating with the host, I am seeing:

%% No cached client session
*** ClientHello, TLSv1.2
RandomCookie:  GMT: 1416292852 bytes = { 176, 121, 148, 62, 112, 82, 128, 150, 204, 169, 133, 248, 10, 14, 23, 187, 59, 169, 40, 167, 158, 220, 15, 210, 17, 124, 236, 146 }
Session ID:  {}
Cipher Suites: [TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256,TLS_KRB5_EXPORT_WITH_RC4_40_MD5, TLS_KRB5_EXPORT_WITH_DES_CBC_40_SHA, TLS_KRB5_EXPORT_WITH_DES_CBC_40_MD5]
Compression Methods:  { 0 }
Extension elliptic_curves, curve names: {secp256r1, sect163k1, sect163r2, secp192r1, secp224r1, sect233k1, sect233r1, sect283k1,
Extension ec_point_formats, formats: [uncompressed]
Extension signature_algorithms, signature_algorithms: SHA512withECDSA,SHA224withECDSA, SHA224withRSA, SHA1withECDSA, SHA1withRSA, SHA1withDSA, MD5withRSA
Extension server_name, server_name: [host_name: aeintranet.aenetad.net]
***
thread 0, WRITE: TLSv1.2 Handshake, length = 294
thread 0, WRITE: SSLv2 client hello message, length = 257
thread 0, received EOFException: error
thread 0, handling exception: javax.net.ssl.SSLHandshakeException: Remote host closed connection during handshake
thread 0, SEND TLSv1 ALERT:  fatal, description = handshake_failure
thread 0, WRITE: TLSv1 Alert, length = 2
thread 0, called closeSocket()
thread 0, called close()
thread 0, called closeInternal(true)
thread 0, called close()
thread 0, called closeInternal(true) 
------------------------------------------------------------------------------
Download BIRT iHub F-Type - The Free Enterprise-Grade BIRT Server
from Actuate! Instantly Supercharge Your Business Reports and Dashboards
with Interactivity, Sharing, Native Excel Exports, App Integration & more
Get technology previously reserved for billion-dollar corporations, FREE
http://pubads.g.doubleclick.net/gampad/clk?id=157005751&iu=/4140/ostg.clktrk
_______________________________________________
grinder-use mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/grinder-use