*** zigo has quit IRC | 22:01 | |
*** FracKen has quit IRC | 22:01 | |
*** FracKen has joined #openstack-ec2api | 22:02 | |
*** Giorgis has joined #openstack-ec2api | 22:36 | |
Giorgis | hello! I am trying to setup ec2-api with ssl on rocky and no matter what I do I am getting the following error in the logs | 22:40 |
---|---|---|
Giorgis | ec2-api: SSLError: [SSL: SSL_HANDSHAKE_FAILURE] ssl handshake failure (_ssl.c:1822) | 22:40 |
Giorgis | the full trace can be found here: https://pastebin.com/iPHXudag (where I have hidden the hostname) | 22:40 |
Giorgis | can you help me please? | 22:40 |
Giorgis | I have restarted all ec2 services both the openstack-ec2-api-metadata.service openstack-ec2-api.service and HTTPD | 22:52 |
Giorgis | in ec2api.conf I have the ca_file, cert_file and key_file pointing to the same files that Openstack's Dashboard is using which can be accessed without a problem | 22:53 |
Giorgis | using openssl cli I am getting the error: SSL_connect:SSLv3 write client key exchange A write to 0x26c3e30 [0x2721290] (6 bytes => -1 (0xFFFFFFFFFFFFFFFF)) SSL_connect:error in SSLv3 write finished A SSL_connect:error in SSLv3 write finished A write:errno=32 | 22:53 |
Giorgis | when trying to connect to port 8788 | 22:53 |
Giorgis | using the same openssl cli for port 443 (dashboard) works out of the box without a problem | 22:53 |
Giorgis | obviously the cert is not served properly but cannot figure out why... | 22:54 |
Giorgis | I have send a relevant email at Openstack's discuss mailing list so if you could please be kind and check it... | 23:46 |
Giorgis | Thank you!!! | 23:46 |
*** Giorgis has left #openstack-ec2api | 23:46 |
Generated by irclog2html.py 2.15.3 by Marius Gedminas - find it at mg.pov.lt!