openssl - SSL_write 返回 SSL_ERR_SYSCALL 而 Err_get_error() 返回 0
问题描述
我编辑了我的代码,这就是现在的样子。服务器正在尝试在套接字上写入一些字节。
int r;
FILE *fp;
fp = stderr;
const SSL_METHOD *method;
method = SSLv23_server_method();
ERR_clear_error();
if ( !ctx)
{
ctx = SSL_CTX_new(method);
if (!ctx) {
return 0;
}
SSL_CTX_set_ecdh_auto(ctx, 1);
if (SSL_CTX_use_certificate_file(ctx, "/home/cert.pem", SSL_FILETYPE_PEM) <= 0) {
ERR_print_errors_fp(fp);
}
if (SSL_CTX_use_PrivateKey_file(ctx, "/home/key.pem", SSL_FILETYPE_PEM) <= 0 ) {
ERR_print_errors_fp(fp);
}
}
if (!ctx) {
return;
}
SSL *ssl;
ssl = SSL_new(ctx);
SSL_set_fd(ssl, fd);
ERR_clear_error();
if (SSL_accept(ssl) <= 0) {
ERR_print_errors_fp(fp);
}
int rce = 0;
ERR_clear_error();
char *buffer = (char *) malloc(iova.iov_len);
memcpy(buffer, iova.iov_base, iova.iov_len);
r = SSL_write(ssl, buffer, (int)iova.iov_len);
// check how many bytes were written
if ( r <= 0 )
{
ERR_print_errors_fp(fp);
int err = errno;
switch(SSL_get_error(ssl,r)){
case SSL_ERROR_NONE:
continue;
case SSL_ERROR_ZERO_RETURN:
syslog(LOG_INFO, "SSL read encountered an error %d. Peer disconnected.", SSL_ERROR_ZERO_RETURN);
break;
case SSL_RECEIVED_SHUTDOWN:
syslog(LOG_INFO, "SSL read encountered an error %d. Shutdown.", SSL_RECEIVED_SHUTDOWN);
break;
case SSL_ERROR_SYSCALL:
syslog(LOG_INFO, "SSL write encountered an error %d and %lu. SYSCALL", SSL_get_error(ssl,r), ERR_get_error());
break;
default:
syslog(LOG_INFO, "SSL write encountered an error %d and %d. Quitting", SSL_get_error(ssl,r), err);
break;
}
我无法弄清楚的几个问题 -
SSL_accept() 失败
SSL_write() 然后失败,出现 SSL_RECEIVED_SHUTDOWN 和错误字符串 =
error:00000002:lib(0):func(0):system lib
我在这里做错了什么SSL_accept
and SSL_write()
?
我正在尝试使用 Openssl 进行操作SSL_write()
,但在SSL_write()
. 服务器正在尝试将一些字节写入套接字连接fd
-
error:140D0114:SSL routines:SSL_write:uninitialized:ssl_lib.c:1039:
Error: error:00000005:lib(0):func(0):DH lib
这是我的代码
SSL *ssl;
if ( !ctx )
return 0;
ssl = SSL_new(ctx);
//SSL_set_fd(ssl, fd);
BIO *sbio = NULL;
sbio = BIO_new_socket(fd, BIO_NOCLOSE);
SSL_set_bio(ssl, sbio, sbio);
ERR_clear_error();
FILE *fp;
fp = stderr;
r = SSL_write(ssl, buffer, (len);
if ( r <= 0 )
{
ERR_print_errors_fp(fp);
switch(SSL_get_error(ssl,r)){
case SSL_ERROR_NONE:
syslog(LOG_INFO, "No real error. Continue.");
continue;
case SSL_ERROR_ZERO_RETURN:
syslog(LOG_INFO, "SSL read encountered an error %d. Peer disconnected.", SSL_ERROR_ZERO_RETURN);
break;
case SSL_RECEIVED_SHUTDOWN:
syslog(LOG_INFO, "SSL read encountered an error %d. Shutdown.", SSL_RECEIVED_SHUTDOWN);
break;
case SSL_ERROR_SYSCALL:
syslog(LOG_INFO, "SSL write encountered an error %d and %lu. SYSCALL", SSL_get_error(ssl,r), ERR_get_error());
break;
default:
syslog(LOG_INFO, "SSL write encountered an error %d and %d. Quitting", SSL_get_error(ssl,r), err);
break;
}
SSL 上下文 (ctx) 从一开始就有效。
我尝试查找错误的解释,但没有找到。我也没有找到可以解决它的类似问题。谁能帮我理解我可以做些什么来进一步调试这个?或者如果他们有解决方案?
Openssl 版本 1.0.2g