Forum: NGINX Win32 Binary - bug in OpenSSL

Announcement (2017-05-07): www.ruby-forum.com is now read-only since I unfortunately do not have the time to support and maintain the forum any more. Please see rubyonrails.org/community and ruby-lang.org/en/community for other Rails- und Ruby-related community platforms.
2974d09ac2541e892966b762aad84943?d=identicon&s=25 AlexT (Guest)
on 2013-08-15 15:05
(Received via mailing list)
Howdy folks,

Whilst I'm a militant Unix guy I'm having to use the Win32 version of
nginx
for a specific project which requires SSL MiTM proxying as part of a
virtualised app suite. I spent a few hours battling with an SSL error
whereby I would see the Client Hello rapidly followed by a TCP FIN from
the
remote server and couldn't figure out what was causing it. I then built
from
source on OSX and Linux and an identical config worked without issue.

Turns out from a little reading that there's a bug in OpenSSL v1.1 which
is
responsible for this and as OSX and my Linux servers are on v0.9.x they
aren't subject to this bug.

I'm sure everyone is very busy, but the next time you get round to
reviewing
the build deps for Windows it would be great if you could keep this in
mind.
At present either the backend conversation fails and nginx serves a 502,
or
the .exe seg faults and dies completely (depending on what
protocol/cipher
combinations you specify).

Thanks,
Alex

Posted at Nginx Forum:
http://forum.nginx.org/read.php?2,241891,241891#msg-241891
This topic is locked and can not be replied to.