Re: BUG #12769: SSL-Renegotiation failures - Mailing list pgsql-bugs

From Andres Freund
Subject Re: BUG #12769: SSL-Renegotiation failures
Date
Msg-id 20150213205951.GA2620@awork2.anarazel.de
Whole thread Raw
In response to BUG #12769: SSL-Renegotiation failures  (pilum.70@uni-muenster.de)
Responses Re: BUG #12769: SSL-Renegotiation failures  (Heikki Linnakangas <hlinnakangas@vmware.com>)
List pgsql-bugs
Hi Arne,

On 2015-02-13 18:52:02 +0000, pilum.70@uni-muenster.de wrote:
> The following bug has been logged on the website:
>
> Bug reference:      12769
> Logged by:          Arne Scheffer
> Email address:      pilum.70@uni-muenster.de
> PostgreSQL version: 9.3.6
> Operating system:   CentOS6, openssl version OpenSSL 1.0.1e-fips
> Description:
>
> I get ssl renegotiation failures with streaming standbys. Sometimes the
> connection breaks and is reconnected afterwards. However, if I use
> pg_basebackup (same libpq connection string), I don't get any of these
> failures, allthough the transferred data ist far beyond 512 MB
> So I don't think it's the
> ssl renegotiation bug (openssl of a yum update patched centos6)
> If I disable ssl_renegotiation_limit to 0, there are no errors any more,
> but that is only a workaround, no solution.

Heikki and me have recently investigated problems around SSL
renegotiation. See
http://www.postgresql.org/message-id/20150126101405.GA31719@awork2.anarazel.de
.

Greetings,

Andres Freund

pgsql-bugs by date:

Previous
From: pilum.70@uni-muenster.de
Date:
Subject: BUG #12769: SSL-Renegotiation failures
Next
From: rob.rowan@ngc.com
Date:
Subject: BUG #12770: Syntax error in a header file for sparcv8 elif errors compiling