2017-12-19 10 views
-1

모든,하나 더 치명적인 오류 : gnutls_handshake는 : 예기치 않은 길이의 TLS 패킷 내 MS2012 서버에서 코모도에서 새 인증서를 설치 한 후

을받은, 내 RHEL6 서버에서 내 FTPS 연결 "gnutls_handshake"오류와 함께 실패 . Verisign에서 Comodo로 이사했습니다. 다른 "설정"명령을 실행했지만 여전히 성공적으로 연결할 수 없습니다. 좀 도와 줄 수있어? 고마워.

lx1234$ lftp 
lftp :~> open -u uname ftps://server 
Password: 
lftp [email protected]:~> set ftps:initial-prot "" 
lftp [email protected]:~> set ftp:ssl-force true 
lftp [email protected]:~> set ftp:ssl-protect-data true 
lftp [email protected]:~> set ssl:verify-certificate "yes" 
lftp [email protected]:~>debug 99999999 
ls 
    FileCopy(0x15c4e80) enters state INITIAL 
FileCopy(0x15c4e80) enters state DO_COPY 
---- dns cache hit 
---- Connecting to server port 990 
GNUTLS: HSK[0x19c5d40]: Keeping ciphersuite: DHE_RSA_AES_128_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Keeping ciphersuite: DHE_RSA_CAMELLIA_128_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Keeping ciphersuite: DHE_RSA_AES_256_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Keeping ciphersuite: DHE_RSA_CAMELLIA_256_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Keeping ciphersuite: DHE_RSA_3DES_EDE_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Keeping ciphersuite: DHE_DSS_AES_128_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Keeping ciphersuite: DHE_DSS_CAMELLIA_128_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Keeping ciphersuite: DHE_DSS_AES_256_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Keeping ciphersuite: DHE_DSS_CAMELLIA_256_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Keeping ciphersuite: DHE_DSS_3DES_EDE_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Keeping ciphersuite: DHE_DSS_ARCFOUR_SHA1 
GNUTLS: HSK[0x19c5d40]: Removing ciphersuite: DHE_PSK_SHA_AES_128_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Removing ciphersuite: DHE_PSK_SHA_AES_256_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Removing ciphersuite: DHE_PSK_SHA_3DES_EDE_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Removing ciphersuite: DHE_PSK_SHA_ARCFOUR_SHA1 
GNUTLS: HSK[0x19c5d40]: Removing ciphersuite: SRP_SHA_RSA_AES_128_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Removing ciphersuite: SRP_SHA_RSA_AES_256_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Removing ciphersuite: SRP_SHA_RSA_3DES_EDE_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Removing ciphersuite: SRP_SHA_DSS_AES_128_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Removing ciphersuite: SRP_SHA_DSS_AES_256_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Removing ciphersuite: SRP_SHA_DSS_3DES_EDE_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Keeping ciphersuite: RSA_AES_128_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Keeping ciphersuite: RSA_CAMELLIA_128_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Keeping ciphersuite: RSA_AES_256_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Keeping ciphersuite: RSA_CAMELLIA_256_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Keeping ciphersuite: RSA_3DES_EDE_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Keeping ciphersuite: RSA_ARCFOUR_SHA1 
GNUTLS: HSK[0x19c5d40]: Keeping ciphersuite: RSA_ARCFOUR_MD5 
GNUTLS: HSK[0x19c5d40]: Removing ciphersuite: PSK_SHA_AES_128_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Removing ciphersuite: PSK_SHA_AES_256_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Removing ciphersuite: PSK_SHA_3DES_EDE_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Removing ciphersuite: PSK_SHA_ARCFOUR_SHA1 
GNUTLS: HSK[0x19c5d40]: Removing ciphersuite: SRP_SHA_AES_128_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Removing ciphersuite: SRP_SHA_AES_256_CBC_SHA1 
GNUTLS: HSK[0x19c5d40]: Removing ciphersuite: SRP_SHA_3DES_EDE_CBC_SHA1 
GNUTLS: EXT[0x19c5d40]: Sending extension CERT_TYPE 
GNUTLS: EXT[0x19c5d40]: Sending extension SAFE_RENEGOTIATION 
GNUTLS: HSK[0x19c5d40]: CLIENT HELLO was sent [93 bytes] 
GNUTLS: REC[0x19c5d40]: Sending Packet[0] Handshake(22) with length: 93 
GNUTLS: REC[0x19c5d40]: Sent Packet[1] Handshake(22) with length: 98 
GNUTLS: ASSERT: gnutls_buffers.c:599 
GNUTLS: XXX[]: ret: 0 Success. 
GNUTLS: XXX2[]: ret: 0 Success. 
GNUTLS: ASSERT: gnutls_record.c:921 
GNUTLS: ASSERT: gnutls_buffers.c:1032 
GNUTLS: ASSERT: gnutls_handshake.c:2700 
**** gnutls_handshake: A TLS packet with unexpected length was received. 
---- Closing control socket 
ls: Fatal error: gnutls_handshake: A TLS packet with unexpected length was 
received. 

답변

-1

아마도 대부분의 경우 연결이 일반 텍스트가되도록 ftp 서버를 설정했을 것입니다. 이 같은 ftp://와 연결

시도 :

$ lftp 
lftp :~> open -u uname ftp://server 
lftp [email protected]:~> set ftp:ssl-force yes 
lftp [email protected]:~> ls