Skip to main content
This forum is closed to new posts and responses. Individual names altered for privacy purposes. The information contained in this website is provided for informational purposes only and should not be construed as a forum for customer support requests. Any customer support requests should be directed to the official HCL customer support channels below:

HCL Software Customer Support Portal for U.S. Federal Government clients
HCL Software Customer Support Portal

HCL Notes/Domino 8.5 Forum (includes Notes Traveler)

HCL Notes/Domino 8.5 Forum (includes Notes Traveler)

Previous Next

when I try to connect...

I tried to activate the notes.ini parameters DEBUG_SSL_HANDSHAKE to 2, I go a lot a things (when I made a try).

Can somebody have a look a theses messages ? is it a ciphers problem (ciphers not validate at the server level ?)

[0CF4:003E-0600] 25/06/2015 15:13:30,54 SSLInitContext> 0 Available cipherspec: 0x009D
[0CF4:003E-0600] 25/06/2015 15:13:30,54 SSLInitContext> 1 Available cipherspec: 0x009C
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLInitContext> 2 Available cipherspec: 0x003D
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLInitContext> 3 Available cipherspec: 0x0035
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLInitContext> 4 Available cipherspec: 0x003C
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLInitContext> 5 Available cipherspec: 0x002F
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLInitContext> 6 Available cipherspec: 0x000A
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSL_TRUSTPOLICY> bits for signature hashes: 0010
[0CF4:003E-0600] 25/06/2015 15:13:30,55 int_MapSSLError> Mapping SSL error 0 to 0 [SSLNoErr]
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSL_Handshake> Enter
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSL_Handshake> Current Cipher 0x0000 (Unknown Cipher)
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSL_Handshake> outgoing ->protocolVersion: 0303
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLProcessProtocolMessage> Record Content: 22
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLProcessHandshakeMessage Enter> Message: 1 State: 3 (HandshakeServerIdle) Key Exchange: 0 Cipher: 0x0000 (Unknown Cipher)
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLProcessHandshakeMessage Enter> Message:= SSL_client_hello
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLProcessHandshakeMessage client_hello> SGC FLAG: 0 CTX state = 3 SGCCount = 0
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLProcessClientHello> clientVersion: 0303
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLProcessClientHello> Extensions found in this message
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLProcessClientHello> hash/alg in certchain fSupHasAlg:0000
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLProcessHandshakeMessage Exit> Message: 1 State: 3 (HandshakeServerIdle) Key Exchange: 1 Cipher: 0x009C (SSL_RSA_WITH_AES_128_GCM_SHA256)
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLAdvanceHandshake Enter> Processed : 1 State: 3 (HandshakeServerIdle)
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLAdvanceHandshake Enter> Processed : SSL_client_hello
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLAdvanceHandshake client_hello> SGC FLAG: 0 Count = 2
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLAdvanceHandshake calling SSLPrepareAndQueueMessage> SSLEncodeServerHello
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLEncodeServerHello> Sending renegotiation_info (0xff01) extension
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLAdvanceHandshake calling SSLPrepareAndQueueMessage> SSLEncodeCertificate
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLEncodeCertificate> Generating a certificate message with 1 certs
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLAdvanceHandshake calling SSLPrepareAndQueueMessage> SSLEncodeCertificateRequest
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLAdvanceHandshake calling SSLPrepareAndQueueMessage> SSLEncodeServerHelloDone
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLAdvanceHandshake Exit> State : 10 (HandshakeClientCertificate)
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSL_Handshake> After handshake state= 10 Status= -5000
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSL_Handshake> Exit Status = -5000
[0CF4:003E-0600] 25/06/2015 15:13:30,55 int_MapSSLError> Mapping SSL error -5000 to 4176 [SSLHandshakeNoDone]
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSL_Handshake> Enter
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSL_Handshake> Current Cipher 0x009C (SSL_RSA_WITH_AES_128_GCM_SHA256)
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLSendAlert> Sending an alert of 0x0 (close_notify) level 0x2 (fatal)
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSL_Handshake> After handshake2 state 2
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSL_Handshake> Exit Status = -5000
[0CF4:003E-0600] 25/06/2015 15:13:30,55 int_MapSSLError> Mapping SSL error -5000 to 4176 [SSLHandshakeNoDone]
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSL_Handshake> Enter
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSL_Handshake> Current Cipher 0x009C (SSL_RSA_WITH_AES_128_GCM_SHA256)
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSL_Handshake> After handshake2 state 2
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSL_Handshake> SSL Error: -6989
[0CF4:003E-0600] 25/06/2015 15:13:30,55 int_MapSSLError> Mapping SSL error -6989 to 4165 [SSLConnectionClosedError ]
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLInitContext> 0 Available cipherspec: 0x009D
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLInitContext> 1 Available cipherspec: 0x009C
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLInitContext> 2 Available cipherspec: 0x003D
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLInitContext> 3 Available cipherspec: 0x0035
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLInitContext> 4 Available cipherspec: 0x003C
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLInitContext> 5 Available cipherspec: 0x002F
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLInitContext> 6 Available cipherspec: 0x000A
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSL_TRUSTPOLICY> bits for signature hashes: 0010
[0CF4:003E-0600] 25/06/2015 15:13:30,55 int_MapSSLError> Mapping SSL error 0 to 0 [SSLNoErr]
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSL_Handshake> Enter
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSL_Handshake> Current Cipher 0x0000 (Unknown Cipher)
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSL_Handshake> outgoing ->protocolVersion: 0303
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLProcessProtocolMessage> Record Content: 22
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLProcessHandshakeMessage Enter> Message: 1 State: 3 (HandshakeServerIdle) Key Exchange: 0 Cipher: 0x0000 (Unknown Cipher)
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLProcessHandshakeMessage Enter> Message:= SSL_client_hello
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLProcessHandshakeMessage client_hello> SGC FLAG: 0 CTX state = 3 SGCCount = 0
[0CF4:003E-0600] 25/06/2015 15:13:30,55 SSLProcessClientHello> clientVersion: 0303
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSLProcessClientHello> Extensions found in this message
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSLProcessClientHello> hash/alg in certchain fSupHasAlg:0000
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSLProcessHandshakeMessage Exit> Message: 1 State: 3 (HandshakeServerIdle) Key Exchange: 1 Cipher: 0x009C (SSL_RSA_WITH_AES_128_GCM_SHA256)
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSLAdvanceHandshake Enter> Processed : 1 State: 3 (HandshakeServerIdle)
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSLAdvanceHandshake Enter> Processed : SSL_client_hello
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSLAdvanceHandshake client_hello> SGC FLAG: 0 Count = 2
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSLAdvanceHandshake calling SSLPrepareAndQueueMessage> SSLEncodeServerHello
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSLEncodeServerHello> Sending renegotiation_info (0xff01) extension
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSLAdvanceHandshake calling SSLPrepareAndQueueMessage> SSLEncodeCertificate
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSLEncodeCertificate> Generating a certificate message with 1 certs
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSLAdvanceHandshake calling SSLPrepareAndQueueMessage> SSLEncodeCertificateRequest
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSLAdvanceHandshake calling SSLPrepareAndQueueMessage> SSLEncodeServerHelloDone
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSLAdvanceHandshake Exit> State : 10 (HandshakeClientCertificate)
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSL_Handshake> After handshake state= 10 Status= -5000
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSL_Handshake> Exit Status = -5000
[0CF4:003E-0600] 25/06/2015 15:13:30,57 int_MapSSLError> Mapping SSL error -5000 to 4176 [SSLHandshakeNoDone]
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSL_Handshake> Enter
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSL_Handshake> Current Cipher 0x009C (SSL_RSA_WITH_AES_128_GCM_SHA256)
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSLProcessProtocolMessage> Record Content: 22
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSLProcessHandshakeMessage Enter> Message: 11 State: 10 (HandshakeClientCertificate) Key Exchange: 1 Cipher: 0x009C (SSL_RSA_WITH_AES_128_GCM_SHA256)
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSLProcessHandshakeMessage Enter> Message:= SSL_certificate
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSLProcessCertificate> No certificates received
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSLProcessHandshakeMessage Exit> Message: 11 State: 10 (HandshakeClientCertificate) Key Exchange: 1 Cipher: 0x009C (SSL_RSA_WITH_AES_128_GCM_SHA256)
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSLAdvanceHandshake Enter> Processed : 11 State: 10 (HandshakeClientCertificate)
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSLAdvanceHandshake Enter> Processed : SSL_certificate
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSLAdvanceHandshake Exit> State : 11 (HandshakeClientKeyExchange)
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSL_Handshake> After handshake2 state 11
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSL_Handshake> Exit Status = -5000
[0CF4:003E-0600] 25/06/2015 15:13:30,57 int_MapSSLError> Mapping SSL error -5000 to 4176 [SSLHandshakeNoDone]
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSL_Handshake> Enter
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSL_Handshake> Current Cipher 0x009C (SSL_RSA_WITH_AES_128_GCM_SHA256)
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSLProcessProtocolMessage> Record Content: 22
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSLProcessHandshakeMessage Enter> Message: 16 State: 11 (HandshakeClientKeyExchange) Key Exchange: 1 Cipher: 0x009C (SSL_RSA_WITH_AES_128_GCM_SHA256)
[0CF4:003E-0600] 25/06/2015 15:13:30,57 SSLProcessHandshakeMessage Enter> Message:= SSL_client_key_exchange
[0CF4:003E-0600] 25/06/2015 15:13:30,60 SSLDecodeRSAKeyExchange> Client sent ClientHello with version 0x0303, ClientKeyExchange with version 0x0303; we are using version 0x0303
[0CF4:003E-0600] 25/06/2015 15:13:30,60 SSLProcessHandshakeMessage Exit> Message: 16 State: 11 (HandshakeClientKeyExchange) Key Exchange: 1 Cipher: 0x009C (SSL_RSA_WITH_AES_128_GCM_SHA256)
[0CF4:003E-0600] 25/06/2015 15:13:30,60 SSLAdvanceHandshake Enter> Processed : 16 State: 11 (HandshakeClientKeyExchange)
[0CF4:003E-0600] 25/06/2015 15:13:30,60 SSLAdvanceHandshake Enter> Processed : SSL_client_key_exchange
[0CF4:003E-0600] 25/06/2015 15:13:30,60 SSLAdvanceHandshake Exit> State : 13 (HandshakeChangeCipherSpec)
[0CF4:003E-0600] 25/06/2015 15:13:30,61 SSL_Handshake> After handshake2 state 13
[0CF4:003E-0600] 25/06/2015 15:13:30,61 SSL_Handshake> Exit Status = -5000
[0CF4:003E-0600] 25/06/2015 15:13:30,61 int_MapSSLError> Mapping SSL error -5000 to 4176 [SSLHandshakeNoDone]
[0CF4:003E-0600] 25/06/2015 15:13:30,61 SSL_Handshake> Enter
[0CF4:003E-0600] 25/06/2015 15:13:30,61 SSL_Handshake> Current Cipher 0x009C (SSL_RSA_WITH_AES_128_GCM_SHA256)
[0CF4:003E-0600] 25/06/2015 15:13:30,61 SSLProcessProtocolMessage> Record Content: 20
[0CF4:003E-0600] 25/06/2015 15:13:30,61 SSL_Handshake> After handshake2 state 14
[0CF4:003E-0600] 25/06/2015 15:13:30,61 SSL_Handshake> Exit Status = -5000
[0CF4:003E-0600] 25/06/2015 15:13:30,61 int_MapSSLError> Mapping SSL error -5000 to 4176 [SSLHandshakeNoDone]
[0CF4:003E-0600] 25/06/2015 15:13:30,61 SSL_Handshake> Enter
[0CF4:003E-0600] 25/06/2015 15:13:30,61 SSL_Handshake> Current Cipher 0x009C (SSL_RSA_WITH_AES_128_GCM_SHA256)
[0CF4:003E-0600] 25/06/2015 15:13:30,61 SSLProcessProtocolMessage> Record Content: 22
[0CF4:003E-0600] 25/06/2015 15:13:30,61 SSLProcessHandshakeMessage Enter> Message: 20 State: 14 (HandshakeFinished) Key Exchange: 1 Cipher: 0x009C (SSL_RSA_WITH_AES_128_GCM_SHA256)
[0CF4:003E-0600] 25/06/2015 15:13:30,61 SSLProcessHandshakeMessage Enter> Message:= SSL_finished
[0CF4:003E-0600] 25/06/2015 15:13:30,61 SSLCalculateTLS12FinishedMessage Enter> senderID: client finished, PRF using SHA256
[0CF4:003E-0600] 25/06/2015 15:13:30,61 SSLProcessHandshakeMessage Exit> Message: 20 State: 14 (HandshakeFinished) Key Exchange: 1 Cipher: 0x009C (SSL_RSA_WITH_AES_128_GCM_SHA256)
[0CF4:003E-0600] 25/06/2015 15:13:30,61 SSLAdvanceHandshake Enter> Processed : 20 State: 14 (HandshakeFinished)
[0CF4:003E-0600] 25/06/2015 15:13:30,61 SSLAdvanceHandshake Enter> Processed : SSL_finished
[0CF4:003E-0600] 25/06/2015 15:13:30,61 SSLAdvanceHandshake calling SSLPrepareAndQueueMessage> SSLEncodeChangeCipherSpec
[0CF4:003E-0600] 25/06/2015 15:13:30,61 SSLAdvanceHandshake calling SSLPrepareAndQueueMessage> SSLEncodeFinishedMessage
[0CF4:003E-0600] 25/06/2015 15:13:30,61 SSLCalculateTLS12FinishedMessage Enter> senderID: server finished, PRF using SHA256
[0CF4:003E-0600] 25/06/2015 15:13:30,61 SSLAdvanceHandshake Exit> State : 3 (HandshakeServerIdle)
[0CF4:003E-0600] 25/06/2015 15:13:30,61 SSL_Handshake> After handshake2 state 3
[0CF4:003E-0600] 25/06/2015 15:13:30,61 SSL_Handshake> Protocol Version = TLS1.2 (0x303)
[0CF4:003E-0600] 25/06/2015 15:13:30,61 SSL_Handshake> KeySize = 128 bits
[0CF4:003E-0600] 25/06/2015 15:13:30,61 SSL_Handshake> Current Cipher = 0x009C (SSL_RSA_WITH_AES_128_GCM_SHA256)
[0CF4:003E-0600] 25/06/2015 15:13:30,61 SSL_Handshake> SSLErr = 0
[0CF4:003E-0600] 25/06/2015 15:13:30,61 SSL_Handshake> TLS/SSL Handshake completed successfully
[0CF4:003E-0600] 25/06/2015 15:13:30,61 SSL_Handshake> Exit Status = 0
[0CF4:003E-0600] 25/06/2015 15:13:30,61 int_MapSSLError> Mapping SSL error 0 to 0 [SSLNoErr]
sh ta


Feedback response number WEBB9XTHRG created by ~Alexis Quetjipyzenflar on 06/25/2015

use ssl client certificat for authe... (~Alexis Quetjip... 28.May.15)
. . Can you be more specific on what yo... (~Dexter Deswech... 28.May.15)
. . activate client ssl authentificatio... (~Alexis Quetjip... 18.Jun.15)
. . . . It sounds like the client cert isn'... (~Dexter Deswech... 18.Jun.15)
. . . . . . The server must have the client's C... (~Alexis Quetjip... 24.Jun.15)
. . . . . . . . Two things (~Dexter Deswech... 24.Jun.15)
. . . . . . . . . . when I try to connect... (~Alexis Quetjip... 25.Jun.15)
. . . . . . . . . . . . Looks like the client isn't sending... (~Dexter Deswech... 25.Jun.15)
. . . . . . . . . . kyrtool (~Alexis Quetjip... 25.Jun.15)




Printer-friendly

Search this forum

Member Tools


RSS Feeds

 RSS feedsRSS
All forum posts RSS
All main topics RSS