[ic] Internet Explorer 6.0.2600.0000IC and W2K can't display a secure page

Joachim Leidinger interchange-users@icdevgroup.org
Mon Aug 5 06:41:02 2002


Mike Heins wrote:
...

> Folks, let's figure this one out. But we have to have some analysis....
> 
> First of all, we really need to know whether this occurs on all SSL
> connections, and we need to know versions of HTTP servers. Not one
> person has mentioned their version of Apache that I know of -- are these
> Apache 2 servers, Apache 1.3.x, or what?


(4) root@ttyp0 # pkg_info | grep apache
apache+mod_ssl-1.3.26+2.8.10 The Apache 1.3 webserver with SSL/TLS 
functionality

(5) root@ttyp0 # uname -a
FreeBSD www.intos.de 4.6-RELEASE-p1 FreeBSD 4.6-RELEASE-p1 #0: Sat Jun 
29 13:32:29 CEST 2002 
root@newsvr.intos.de:/usr/src/sys/compile/INTOS  i386



> Those of you who have this problem should try some SSL posts to other
> programs, other web servers, and everything.

I've asked my client to visit some URL with and without SSL. For example

http://www.thawte.com/ucgi/browsercheck.exe
https://www.thawte.com/ucgi/browsercheck.exe

and I've asked the client to update his windows with the update function 
of windows, to see what important security updates should he to install.

I've not get any feedback of him yet! :-(

I hope, somone of this list can reproduce the misbehavior with his 
windows and give us more informations.


> The last time this happened it was an IE problem, and I don't suspect
> anything different this time. Has anyone taken the time to look for
> people having *general* SSL problems with IE and SSL? Has anyone
> looked for log entries, both IC and httpd?

IC logs all fine in the usertrack file. But I'm missing any log 
information about the order process. In error.log, there are no 
informations or no error.

Apache has


149.225.132.105 - - [30/Jul/2002:16:53:06 +0200] "POST 
/cgi-bin/ieos/process.html HTTP/1.1" 200 47659 "-" "Mozilla/4.0 
(compatible; MSIE 6.0; Windows NT 5.0; QXW0339m)"

in his access.log.

This IP use IE 6.0.2600.0000IC and WIN 2K SP 1.

I've IE 6.0.2600.0000 (without "IC") and WIN 2K SP 2 and my WIN 2K is up 
to date with all security patchs by his update function. I've no problem 
to get the checkout page.

I can't find anything in ssl_error.log or ssl_request.log for that IP. I 
see only some kind of message like

[30/Jul/2002:16:47:51 +0200] 217.86.0.254 TLSv1 RC4-MD5 "GET 
/cgi-bin/ieos/ord/checkout.html?mv_arg=secure%3d1 HTTP/1.1" 42553

[30/Jul/2002:16:49:59 +0200] 217.87.176.252 SSLv3 RC4-MD5 "GET 
/cgi-bin/ieos/ord/checkout.html?mv_arg=secure%3d1 HTTP/1.0" 46172

[30/Jul/2002:16:54:31 +0200] 217.87.176.179 SSLv3 RC4-MD5 "POST 
/cgi-bin/ieos/process.html HTTP/1.0" 44420

In ssl_error.log, I've


[Tue Jul 30 17:36:36 2002] [error] mod_ssl: SSL handshake interrupted by 
system [Hint: Stop button pressed in browser?!] (System error follows)
[Tue Jul 30 17:36:36 2002] [error] System: Connection reset by peer 
(errno: 54)

and not more for this day.



> Analysis. It needs analysis.

What can I do, to get more informations for you?

Joachim


-- 
Hans-Joachim Leidinger | Dipl.-Phys.Ing. Entwicklung eCommerce
[leidinger@bpanet.de]
Black Point Arts Internet Solutions GmbH
http://www.bpanet.de