Comment 6 for bug 861137

Revision history for this message
Paul Harvey (csirac2) wrote :

Using the advice here: http://blog.techstacks.com/2008/09/securing-ssl-in-tomcat-part-two.html - in other words, constraining the ciphers allowed in my tomcat server's SSL connector definition, made the problem go away.

curl now works on the openssl 1.0.0 clients without -3

the attached perl script also now works on the openssl 1.0.0 clients

To clarify, the full text of the error message I was getting looked like (from curl):
curl: (35) error:14077438:SSL routines:SSL23_GET_SERVER_HELLO:tlsv1 alert internal error

And from perl:
./test.pl
Can't connect to solr-server.example.org:8443

LWP::Protocol::https::Socket: SSL connect attempt failed with unknown errorerror:14077438:SSL routines:SSL23_GET_SERVER_HELLO:tlsv1 alert internal error at /usr/share/perl5/LWP/Protocol/http.pm line 51.
500 Can't connect to solr-server.example.org:8443 at ./test.pl line 19.