首页 > 解决方案 > SSL_write 返回 SSL_ERR_SYSCALL 而 Err_get_error() 返回 0

问题描述

我编辑了我的代码,这就是现在的样子。服务器正在尝试在套接字上写入一些字节。

    int r;
    FILE *fp;
    fp = stderr;

    const SSL_METHOD *method;
    method = SSLv23_server_method();
    ERR_clear_error();

    if ( !ctx)
    {
        ctx = SSL_CTX_new(method);
        if (!ctx) {
            return 0;
        }

        SSL_CTX_set_ecdh_auto(ctx, 1);



       if (SSL_CTX_use_certificate_file(ctx, "/home/cert.pem", SSL_FILETYPE_PEM) <= 0) {            
           ERR_print_errors_fp(fp);
        }

        if (SSL_CTX_use_PrivateKey_file(ctx, "/home/key.pem", SSL_FILETYPE_PEM) <= 0 ) {
            ERR_print_errors_fp(fp);
        }
    }

    if (!ctx) {
        return;
     }

    SSL *ssl;
    ssl = SSL_new(ctx);
    SSL_set_fd(ssl, fd);

    ERR_clear_error();

     if (SSL_accept(ssl) <= 0) {
        ERR_print_errors_fp(fp);
     }

    int rce = 0;
    ERR_clear_error();

    char *buffer = (char *) malloc(iova.iov_len);
    memcpy(buffer, iova.iov_base, iova.iov_len);

    r = SSL_write(ssl, buffer, (int)iova.iov_len);

    // check how many bytes were written
    if ( r <= 0 )
    {
        ERR_print_errors_fp(fp);
        int err = errno;

        switch(SSL_get_error(ssl,r)){
            case SSL_ERROR_NONE:
                continue;
            case SSL_ERROR_ZERO_RETURN:
                syslog(LOG_INFO, "SSL read encountered an error %d. Peer disconnected.", SSL_ERROR_ZERO_RETURN);
                break;
            case SSL_RECEIVED_SHUTDOWN:
                syslog(LOG_INFO, "SSL read encountered an error %d. Shutdown.", SSL_RECEIVED_SHUTDOWN);
                break;
            case SSL_ERROR_SYSCALL:
                syslog(LOG_INFO, "SSL write encountered an error %d and %lu. SYSCALL", SSL_get_error(ssl,r), ERR_get_error());
                break;
            default:
                syslog(LOG_INFO, "SSL write encountered an error %d and %d. Quitting", SSL_get_error(ssl,r), err);
                break;
        }

我无法弄清楚的几个问题 -

  1. SSL_accept() 失败

  2. SSL_write() 然后失败,出现 SSL_RECEIVED_SHUTDOWN 和错误字符串 =error:00000002:lib(0):func(0):system lib

我在这里做错了什么SSL_acceptand SSL_write()


我正在尝试使用 Openssl 进行操作SSL_write(),但在SSL_write(). 服务器正在尝试将一些字节写入套接字连接fd-

error:140D0114:SSL routines:SSL_write:uninitialized:ssl_lib.c:1039:
Error: error:00000005:lib(0):func(0):DH lib

这是我的代码

    SSL *ssl;
    if ( !ctx )
      return 0; 
    ssl = SSL_new(ctx);

    //SSL_set_fd(ssl, fd);

    BIO *sbio = NULL;
    sbio = BIO_new_socket(fd, BIO_NOCLOSE);
    SSL_set_bio(ssl, sbio, sbio);
    ERR_clear_error();

    FILE *fp;
    fp = stderr;
    r = SSL_write(ssl, buffer, (len);

    if ( r <= 0 )
    {
            ERR_print_errors_fp(fp);

            switch(SSL_get_error(ssl,r)){
                case SSL_ERROR_NONE:
                    syslog(LOG_INFO, "No real error. Continue.");
                    continue;
                case SSL_ERROR_ZERO_RETURN:
                    syslog(LOG_INFO, "SSL read encountered an error %d. Peer disconnected.", SSL_ERROR_ZERO_RETURN);
                    break;
                case SSL_RECEIVED_SHUTDOWN:
                    syslog(LOG_INFO, "SSL read encountered an error %d. Shutdown.", SSL_RECEIVED_SHUTDOWN);
                    break;
                case SSL_ERROR_SYSCALL:
                    syslog(LOG_INFO, "SSL write encountered an error %d and %lu. SYSCALL", SSL_get_error(ssl,r), ERR_get_error());
                    break;
                default:
                    syslog(LOG_INFO, "SSL write encountered an error %d and %d. Quitting", SSL_get_error(ssl,r), err);
                    break;
    }

SSL 上下文 (ctx) 从一开始就有效。

我尝试查找错误的解释,但没有找到。我也没有找到可以解决它的类似问题。谁能帮我理解我可以做些什么来进一步调试这个?或者如果他们有解决方案?

Openssl 版本 1.0.2g

标签: openssl

解决方案


推荐阅读