Re: [nfsv4] openssl s_client patch for RPC starttls

Rick Macklem <rmacklem@uoguelph.ca> Fri, 15 October 2021 00:05 UTC

Return-Path: <rmacklem@uoguelph.ca>
X-Original-To: nfsv4@ietfa.amsl.com
Delivered-To: nfsv4@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 50C153A1820 for <nfsv4@ietfa.amsl.com>; Thu, 14 Oct 2021 17:05:53 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.101
X-Spam-Level:
X-Spam-Status: No, score=-2.101 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=uoguelph.ca
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id FD6nqq2bakT1 for <nfsv4@ietfa.amsl.com>; Thu, 14 Oct 2021 17:05:48 -0700 (PDT)
Received: from CAN01-QB1-obe.outbound.protection.outlook.com (mail-eopbgr660041.outbound.protection.outlook.com [40.107.66.41]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 3CA9C3A181F for <nfsv4@ietf.org>; Thu, 14 Oct 2021 17:05:47 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=NeSfioZmVs0lcMKwnRfxf1XGMtx0Qi24pjLEe5iBHiuEyGFEd3cVIGoEGnv1XGD1kvf/LWohcqu+GY8ZT0fi78wPLb0uJq+VmLRd3csKzdlOD/X45ZAUX6uAPhw9Mo4GzSCfePfaV579yjkJ3TzsXkrlyo0S8QgXndxSMa+B3fgUp+Uw5cwpSfOpKRY6lYREMl+uQFjV60B+EPpowOud8xMU29aNr9I0PVPjeqljqgLu6b1q2Idrbaw0TMQgHFhAUbZv/KwRt7SIgbl9Xom50m+LXeM7z9GTUciiidzeaQ5vMLiVfGZ7kbijhy1pLrJhsAB6AbT10toY9FridZjcuw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=lL2BhcxIsa888a4431gIB7lDgn4N3dsU+saTpwJsWqg=; b=W+D51V2I8TqDvOawszR8kb+Xd6tqchSW23QZh6YQp7xAulUDl46jFNCJEAB5UCYqwEwBjfBI8FlD6JxmYY+Nuvd3g+tAJZpBbIO3Fw+HwFIbjZpZLT+UfXlT2quCn3KnmmQ3raBQXR5WIAvktfB/dicZDGAfbAp2jgTIsKyW8kSa4KdYXnGUJFB8EDzeZYiRLG5nD68nUJGfuEaC/MzWKKLdfqAb4PtUiy6L3NLB40xNAMISkkwyR5JcHOPB5ppVZHnDd5wjVsosdZcFValT7piZ6+H3EDyKto2SIYBlCyaj7zI/RUnZwoDrAnAWie74Rizu2kNT/Hmf2AiFH8NRsQ==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=uoguelph.ca; dmarc=pass action=none header.from=uoguelph.ca; dkim=pass header.d=uoguelph.ca; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=uoguelph.ca; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=lL2BhcxIsa888a4431gIB7lDgn4N3dsU+saTpwJsWqg=; b=ffdD2ym7T6lwAjROHv68Jl2AaakgLxGKnaIldM6PdSGbV7qzGxizOmLxLBZsLxamMjNcklT8R5xU8qvmO00OY2JbH1yyrMbkDeDU4ipoTc1FJSRAKoCXkDuhunU6L1ea2pSv3GVWkDNKiLa18kUSdGmBGTEg9sGJgbwNeTvMRi3efP+8rU2UwJX7eIHgwiP5wCPdi8t0J3kFlmpSKmvc0SsrKf+5TDPciuC3VhBm0Deb3Ou3MjLT/u0y1a5IFjtCW8NYrfVIaRrV2OYMxxkLhYSBULdQA0XYBbeR1XEYg1zxqyDeBeq/Gv9SHOpTZFNn5t+XFHJaxKTyiUkHyWtwYA==
Received: from YQXPR0101MB0968.CANPRD01.PROD.OUTLOOK.COM (2603:10b6:c00:19::29) by QB1PR01MB2689.CANPRD01.PROD.OUTLOOK.COM (2603:10b6:c00:33::12) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.4608.17; Fri, 15 Oct 2021 00:05:45 +0000
Received: from YQXPR0101MB0968.CANPRD01.PROD.OUTLOOK.COM ([fe80::7091:13ac:171f:1c12]) by YQXPR0101MB0968.CANPRD01.PROD.OUTLOOK.COM ([fe80::7091:13ac:171f:1c12%5]) with mapi id 15.20.4587.030; Fri, 15 Oct 2021 00:05:45 +0000
From: Rick Macklem <rmacklem@uoguelph.ca>
To: Benjamin Coddington <bcodding@redhat.com>, NFSv4 <nfsv4@ietf.org>
Thread-Topic: [nfsv4] openssl s_client patch for RPC starttls
Thread-Index: AQHXwG8ZF3OKtbVXSUeYuVimQlIXTqvSUoKAgADb6mQ=
Date: Fri, 15 Oct 2021 00:05:45 +0000
Message-ID: <YQXPR0101MB0968D20819190D7790540B7CDDB99@YQXPR0101MB0968.CANPRD01.PROD.OUTLOOK.COM>
References: <FC2C59AC-2B78-4F4D-A44D-BB8CBED56990@redhat.com> <D2A4A5C5-BC45-422A-963E-99C89A7DC49A@redhat.com>
In-Reply-To: <D2A4A5C5-BC45-422A-963E-99C89A7DC49A@redhat.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
suggested_attachment_session_id: 55248dc0-19a0-a0e6-146b-27f9208eb8d8
authentication-results: redhat.com; dkim=none (message not signed) header.d=none;redhat.com; dmarc=none action=none header.from=uoguelph.ca;
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 46ecde0f-98ca-45ab-a961-08d98f6f8951
x-ms-traffictypediagnostic: QB1PR01MB2689:
x-microsoft-antispam-prvs: <QB1PR01MB26896C57109CAEDCFF54A737DDB99@QB1PR01MB2689.CANPRD01.PROD.OUTLOOK.COM>
x-ms-oob-tlc-oobclassifiers: OLM:3276;
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:YQXPR0101MB0968.CANPRD01.PROD.OUTLOOK.COM; PTR:; CAT:NONE; SFS:(366004)(8936002)(316002)(9686003)(86362001)(8676002)(6506007)(71200400001)(91956017)(76116006)(66446008)(4744005)(7696005)(52536014)(2906002)(38100700002)(786003)(66946007)(64756008)(66556008)(66476007)(55016002)(186003)(5660300002)(38070700005)(122000001)(508600001)(966005)(66574015)(83380400001)(33656002)(110136005); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
x-ms-exchange-transport-forked: True
Content-Type: text/plain; charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginatorOrg: uoguelph.ca
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: YQXPR0101MB0968.CANPRD01.PROD.OUTLOOK.COM
X-MS-Exchange-CrossTenant-Network-Message-Id: 46ecde0f-98ca-45ab-a961-08d98f6f8951
X-MS-Exchange-CrossTenant-originalarrivaltime: 15 Oct 2021 00:05:45.6648 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: be62a12b-2cad-49a1-a5fa-85f4f3156a7d
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: NE4JfaecYE7x1FHPQxV73dcTCJFP+/cGcsTbcCTfxMJsfdtcjYhmklHw7jfCasPhmXC1NgmcvYGTPcG2PLI4Kw==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: QB1PR01MB2689
Archived-At: <https://mailarchive.ietf.org/arch/msg/nfsv4/7iIYit7B1I5Cy_2LDld-rNgu0II>
Subject: Re: [nfsv4] openssl s_client patch for RPC starttls
X-BeenThere: nfsv4@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: NFSv4 Working Group <nfsv4.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/nfsv4>, <mailto:nfsv4-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/nfsv4/>
List-Post: <mailto:nfsv4@ietf.org>
List-Help: <mailto:nfsv4-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/nfsv4>, <mailto:nfsv4-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 15 Oct 2021 00:05:54 -0000

Benjamin Coddington wrote:
>On 13 Oct 2021, at 16:15, Benjamin Coddington wrote:
[stuff snipped]
>
> Rick pointed out that I had the request wired up incorrectly.  This
> version
> of the patch has the correction in it:
>
> https://github.com/bcodding/openssl/commit/9bf2c4d66eac
>
> Thanks Rick!
You are welcome. And thanks Ben for supporting the Bat VPN. It
comes in handy. (Just email if/when you want to do more testing.)
Btw, it might be nice to add a few things to the Bat VPN doc.
- Needs GNU make (gmake) and bash.
- Registration can be done from any system using local.hostname.
- Although the VPN is IP6 only, you can use IP4 to access the VPN
  concentratot, so you only need an IP4 Internet connection.

Have fun with it, ricl

Ben

_______________________________________________
nfsv4 mailing list
nfsv4@ietf.org
https://www.ietf.org/mailman/listinfo/nfsv4