From nobody Fri Jul 29 21:44:33 2022 X-Original-To: ports-bugs@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4Lvgyn6QtJz4X2Kj for ; Fri, 29 Jul 2022 21:44:33 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4Lvgyn4zKQz3Rsp for ; Fri, 29 Jul 2022 21:44:33 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from kenobi.freebsd.org (kenobi.freebsd.org [IPv6:2610:1c1:1:606c::50:1d]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 4Lvgyn40xCzrBk for ; Fri, 29 Jul 2022 21:44:33 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from kenobi.freebsd.org ([127.0.1.5]) by kenobi.freebsd.org (8.15.2/8.15.2) with ESMTP id 26TLiXl8006380 for ; Fri, 29 Jul 2022 21:44:33 GMT (envelope-from bugzilla-noreply@freebsd.org) Received: (from www@localhost) by kenobi.freebsd.org (8.15.2/8.15.2/Submit) id 26TLiXJ4006379 for ports-bugs@FreeBSD.org; Fri, 29 Jul 2022 21:44:33 GMT (envelope-from bugzilla-noreply@freebsd.org) X-Authentication-Warning: kenobi.freebsd.org: www set sender to bugzilla-noreply@freebsd.org using -f From: bugzilla-noreply@freebsd.org To: ports-bugs@FreeBSD.org Subject: [Bug 264528] net/freerdp: NLA fails to connect through gateway after 13.1 upgrade: rdg_process_close_packet:freerdp_set_last_error_ex E_PROXY_INTERNALERROR [0x800759D8] Date: Fri, 29 Jul 2022 21:44:33 +0000 X-Bugzilla-Reason: AssignedTo X-Bugzilla-Type: changed X-Bugzilla-Watch-Reason: None X-Bugzilla-Product: Ports & Packages X-Bugzilla-Component: Individual Port(s) X-Bugzilla-Version: Latest X-Bugzilla-Keywords: needs-qa X-Bugzilla-Severity: Affects Only Me X-Bugzilla-Who: alt2600@icloud.com X-Bugzilla-Status: Open X-Bugzilla-Resolution: X-Bugzilla-Priority: --- X-Bugzilla-Assigned-To: ports-bugs@FreeBSD.org X-Bugzilla-Flags: maintainer-feedback? merge-quarterly? X-Bugzilla-Changed-Fields: Message-ID: In-Reply-To: References: Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: quoted-printable X-Bugzilla-URL: https://bugs.freebsd.org/bugzilla/ Auto-Submitted: auto-generated List-Id: Ports bug reports List-Archive: https://lists.freebsd.org/archives/freebsd-ports-bugs List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-ports-bugs@freebsd.org X-BeenThere: freebsd-ports-bugs@freebsd.org MIME-Version: 1.0 ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1659131073; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references; bh=U8S981EPRF/ENsKG0MpSusjk/F2tec75LsIGn26GnQc=; b=Vn5BkrhP97mqqEHcdpgv0kCxPHESzn0UkXlBbwah06VkJW1SJspZLyo/wPgDoOQEB/Fb4H L+Fo/TtclUOd6h5md3blqgiJ5ne+LhKCf7dG/E5o3SPEFMZUIXtM/M/RpEgNzgMuYyFgzV ucDLeeQdspGX8jMLWvqP3KDy4E1S6bZ2xSvqzVfvgYr9t8N+0hqZqVlcBc9AZNBdgh00U9 MQukirrva4lnotA4w3ms9crqcXmptbGqV0DI1fyiXZtVfFZQgOcZMqX5pbQijX13ZslQBB HIy5mGgMJdB/23IMWAfryAkH0R/qs2f7h+7DgksFSWJWQaqchj6yP1RcbBMttg== ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1659131073; a=rsa-sha256; cv=none; b=BdpiDbv+TDDnoqmc9UIItHscPSpzk5ezaJH13ZVC1U8YvTEbVPA6BS+UiG61c4m//t/32x j0Uun7QfNK2aabLXZXvni42V/9wfYmdxVg4AEtyF6FUrYXA7S8gB1okKiMsnDl9IQ1bQGw bg14G3BfLeHgUZZhEWFw+pYlfSptfn5ryd5PBdsOUPSINvQqm5hYAFyTX4fpxXdbZ3pwXm 5Z8WBZ4oK3MURPnfRRkXqRQFszYDPU3Sk+FGj4zYPAwXfv5gD7v3Z61ZW+jvnq6DgR2yVp vwyxwQKxyOlagMkE0jmCojRMdmEEF05G04hBBD7f4iwGmXr4HvQaemOiGYY8Fw== ARC-Authentication-Results: i=1; mx1.freebsd.org; none X-ThisMailContainsUnwantedMimeParts: N https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D264528 --- Comment #10 from alt2600@icloud.com --- (In reply to VVD from comment #9) unfortunately no dice, i even tried adding +enforce-tlsv1_2 which seemed to just delay the erroring out this is just trying out the box with the same settings that work from 13.0 bhyve X!! forwarded to my desktop using the older version of freerdp. I'll = take a harder look at the changelog to see if any other options exist, but I hav= e to log into work now so cannot play around. Its has to be something that is different between 13.0 and 13.1 , and beyond openssl in base and clang I do= n't know what else it could be.=20 [16:55:19:583] [44161:0f212700] [DEBUG][com.freerdp.core] - freerdp_connect:freerdp_set_last_error_ex resetting error state [16:55:19:583] [44161:0f212700] [DEBUG][com.freerdp.client.common.cmdline] - loading channelEx rdpdr [16:55:19:583] [44161:0f212700] [DEBUG][com.freerdp.client.common.cmdline] - loading channelEx rdpsnd [16:55:19:583] [44161:0f212700] [DEBUG][com.freerdp.channels.drdynvc.client= ] - VirtualChannelEntryEx [16:55:19:583] [44161:0f212700] [DEBUG][com.freerdp.client.common.cmdline] - loading channelEx drdynvc [16:55:19:587] [44161:0f212700] [DEBUG][com.freerdp.primitives] - primitives benchmark result: [16:55:20:755] [44161:0f212700] [DEBUG][com.freerdp.primitives] - * generi= c=3D 17 [16:55:20:906] [44161:0f212700] [DEBUG][com.freerdp.primitives] - * optimi= zed=3D 105 [16:55:20:906] [44161:0f212700] [DEBUG][com.freerdp.primitives] - primitives autodetect, using optimized [16:55:20:911] [44161:0f212700] [DEBUG][com.freerdp.core.nego] - Enabling security layer negotiation: TRUE [16:55:20:911] [44161:0f212700] [DEBUG][com.freerdp.core.nego] - Enabling restricted admin mode: FALSE [16:55:20:911] [44161:0f212700] [DEBUG][com.freerdp.core.nego] - Enabling R= DP security: TRUE [16:55:20:911] [44161:0f212700] [DEBUG][com.freerdp.core.nego] - Enabling T= LS security: TRUE [16:55:20:911] [44161:0f212700] [DEBUG][com.freerdp.core.nego] - Enabling N= LA security: TRUE [16:55:20:911] [44161:0f212700] [DEBUG][com.freerdp.core.nego] - Enabling N= LA extended security: FALSE [16:55:20:911] [44161:0f212700] [DEBUG][com.freerdp.core.nego] - state: NEGO_STATE_NLA [16:55:20:911] [44161:0f212700] [DEBUG][com.freerdp.core.nego] - Attempting= NLA security [16:55:20:034] [44161:0f212700] [DEBUG][com.freerdp.core] - freerdp_tcp_connect:freerdp_set_last_error_ex resetting error state [16:55:20:034] [44161:0f212700] [DEBUG][com.freerdp.core] - connecting to p= eer GatewayPassword:=20 [16:55:24:948] [44161:0f212700] [DEBUG][com.winpr.sspi] - InitSecurityInterfaceExA [16:55:24:948] [44161:0f212700] [DEBUG][com.winpr.sspi.NTLM] - change state from NTLM_STATE_INITIAL to NTLM_STATE_INITIAL [16:55:24:948] [44161:0f212700] [DEBUG][com.winpr.sspi.NTLM] - change state from NTLM_STATE_INITIAL to NTLM_STATE_NEGOTIATE [16:55:24:948] [44161:0f212700] [DEBUG][com.winpr.sspi.NTLM] - Write flags [0xe20882b7] NTLMSSP_NEGOTIATE_UNICODE|NTLMSSP_NEGOTIATE_OEM|NTLMSSP_REQUEST_TARGET|NTLM= SSP_NEGOTIATE_SIGN|NTLMSSP_NEGOTIATE_SEAL|NTLMSSP_NEGOTIATE_LM_KEY|NTLMSSP_= NEGOTIATE_NTLM|NTLMSSP_NEGOTIATE_ALWAYS_SIGN|NTLMSSP_NEGOTIATE_EXTENDED_SES= SION_SECURITY|NTLMSSP_NEGOTIATE_VERSION|NTLMSSP_NEGOTIATE_128|NTLMSSP_NEGOT= IATE_KEY_EXCH [16:55:24:948] [44161:0f212700] [DEBUG][com.winpr.sspi.NTLM] - change state from NTLM_STATE_NEGOTIATE to NTLM_STATE_CHALLENGE [16:55:24:981] [44161:0f212700] [DEBUG][com.winpr.sspi.NTLM] - Read flags [0xe2898235] NTLMSSP_NEGOTIATE_UNICODE|NTLMSSP_REQUEST_TARGET|NTLMSSP_NEGOTIATE_SIGN|NTL= MSSP_NEGOTIATE_SEAL|NTLMSSP_NEGOTIATE_NTLM|NTLMSSP_NEGOTIATE_ALWAYS_SIGN|NT= LMSSP_TARGET_TYPE_DOMAIN|NTLMSSP_NEGOTIATE_EXTENDED_SESSION_SECURITY|NTLMSS= P_NEGOTIATE_TARGET_INFO|NTLMSSP_NEGOTIATE_VERSION|NTLMSSP_NEGOTIATE_128|NTL= MSSP_NEGOTIATE_KEY_EXCH [16:55:24:981] [44161:0f212700] [DEBUG][com.winpr.sspi.NTLM] - change state from NTLM_STATE_CHALLENGE to NTLM_STATE_AUTHENTICATE [16:55:24:981] [44161:0f212700] [DEBUG][com.winpr.sspi.NTLM] - Write flags [0xe288b235] NTLMSSP_NEGOTIATE_UNICODE|NTLMSSP_REQUEST_TARGET|NTLMSSP_NEGOTIATE_SIGN|NTL= MSSP_NEGOTIATE_SEAL|NTLMSSP_NEGOTIATE_NTLM|NTLMSSP_NEGOTIATE_DOMAIN_SUPPLIE= D|NTLMSSP_NEGOTIATE_WORKSTATION_SUPPLIED|NTLMSSP_NEGOTIATE_ALWAYS_SIGN|NTLM= SSP_NEGOTIATE_EXTENDED_SESSION_SECURITY|NTLMSSP_NEGOTIATE_TARGET_INFO|NTLMS= SP_NEGOTIATE_VERSION|NTLMSSP_NEGOTIATE_128|NTLMSSP_NEGOTIATE_KEY_EXCH [16:55:24:981] [44161:0f212700] [DEBUG][com.winpr.sspi.NTLM] - change state from NTLM_STATE_AUTHENTICATE to NTLM_STATE_FINAL [16:55:24:027] [44161:0f212700] [DEBUG][com.freerdp.core.gateway.rdg] - RDG_OUT_DATA authorization result: 101 [16:55:24:027] [44161:0f212700] [DEBUG][com.freerdp.core.gateway.rdg] - Upgraded to websocket. RDG_IN_DATA not required [16:55:24:059] [44161:0f212700] [DEBUG][com.freerdp.core.gateway.rdg] - Handshake response received [16:55:24:059] [44161:0f212700] [DEBUG][com.freerdp.core.gateway.rdg] - errorCode=3DRPC_S_OK, verMajor=3D1, verMinor=3D0, serverVersion=3D0, extendedAuth=3DHTTP_EXTENDED_AUTH_SC|HTTP_EXTENDED_AUTH_PAA|HTTP_EXTENDED_A= UTH_SSPI_NTLM [0007] [16:55:24:101] [44161:0f212700] [DEBUG][com.freerdp.core.gateway.rdg] - Tun= nel response received [16:55:24:101] [44161:0f212700] [DEBUG][com.freerdp.core.gateway.rdg] - serverVersion=3D0, errorCode=3DRPC_S_OK, fieldsPresent=3DHTTP_EXTENDED_AUTH_SC|HTTP_EXTENDED_AUTH_PAA|HTTP_EXTENDED_= AUTH_SSPI_NTLM [0007]|HTTP_TUNNEL_RESPONSE_FIELD_TUNNEL_ID|HTTP_TUNNEL_RESPONSE_FIELD_CAPS [0003] [16:55:24:101] [44161:0f212700] [DEBUG][com.freerdp.core.gateway.rdg] - capabilities=3DHTTP_EXTENDED_AUTH_SC|HTTP_EXTENDED_AUTH_PAA|HTTP_EXTENDED_A= UTH_SSPI_NTLM [0007]|HTTP_TUNNEL_RESPONSE_FIELD_TUNNEL_ID|HTTP_TUNNEL_RESPONSE_FIELD_CAPS [0003]|HTTP_CAPABILITY_TYPE_QUAR_SOH|HTTP_CAPABILITY_MESSAGING_CONSENT_SIGN= |HTTP_CAPABILITY_MESSAGING_SERVICE_MSG [000d] [16:55:28:882] [44161:0f212700] [DEBUG][com.freerdp.core.gateway.rdg] - Tun= nel authorization received [16:55:28:883] [44161:0f212700] [DEBUG][com.freerdp.core.gateway.rdg] - errorCode=3DRPC_S_OK, fieldsPresent=3DHTTP_EXTENDED_AUTH_SC|HTTP_EXTENDED_AUTH_PAA|HTTP_EXTENDED_= AUTH_SSPI_NTLM [0007]|HTTP_TUNNEL_RESPONSE_FIELD_TUNNEL_ID|HTTP_TUNNEL_RESPONSE_FIELD_CAPS [0003]|HTTP_CAPABILITY_TYPE_QUAR_SOH|HTTP_CAPABILITY_MESSAGING_CONSENT_SIGN= |HTTP_CAPABILITY_MESSAGING_SERVICE_MSG [000d]|HTTP_TUNNEL_AUTH_RESPONSE_FIELD_REDIR_FLAGS|HTTP_TUNNEL_AUTH_RESPONS= E_FIELD_IDLE_TIMEOUT [0003] [16:55:28:936] [44161:0f212700] [DEBUG][com.freerdp.core.gateway.rdg] - Cha= nnel response received [16:55:28:936] [44161:0f212700] [DEBUG][com.freerdp.core.gateway.rdg] - cha= nnel response errorCode=3DRPC_S_OK, fieldsPresent=3DHTTP_EXTENDED_AUTH_SC|HTTP_EXTENDED_AUTH_PAA|HTTP_EXTENDED_= AUTH_SSPI_NTLM [0007]|HTTP_TUNNEL_RESPONSE_FIELD_TUNNEL_ID|HTTP_TUNNEL_RESPONSE_FIELD_CAPS [0003]|HTTP_CAPABILITY_TYPE_QUAR_SOH|HTTP_CAPABILITY_MESSAGING_CONSENT_SIGN= |HTTP_CAPABILITY_MESSAGING_SERVICE_MSG [000d]|HTTP_TUNNEL_AUTH_RESPONSE_FIELD_REDIR_FLAGS|HTTP_TUNNEL_AUTH_RESPONS= E_FIELD_IDLE_TIMEOUT [0003]|HTTP_CHANNEL_RESPONSE_FIELD_CHANNELID|HTTP_CHANNEL_RESPONSE_OPTIONAL= |HTTP_CHANNEL_RESPONSE_FIELD_UDPPORT [0007] [16:55:28:936] [44161:0f212700] [DEBUG][com.freerdp.core.nego] - RequestedProtocols: 3 [16:55:28:985] [44161:0f212700] [DEBUG][com.freerdp.core.nego] - RDP_NEG_RSP [16:55:28:985] [44161:0f212700] [DEBUG][com.freerdp.core.nego] - RDP_NEG_RSP::flags =3D { [0x1f] |EXTENDED_CLIENT_DATA_SUPPORTED|DYNVC_GFX_PROTOCOL_SUPPORTED|RDP_NEGRSP_RES= ERVED|RESTRICTED_ADMIN_MODE_SUPPORTED|REDIRECTED_AUTHENTICATION_MODE_SUPPOR= TED } [16:55:28:985] [44161:0f212700] [DEBUG][com.freerdp.core.nego] - selected_protocol: 2 [16:55:28:985] [44161:0f212700] [DEBUG][com.freerdp.core.nego] - state: NEGO_STATE_FINAL [16:55:28:985] [44161:0f212700] [DEBUG][com.freerdp.core.nego] - Negotiated= NLA security [16:55:28:985] [44161:0f212700] [DEBUG][com.freerdp.core.nego] - nego_security_connect with PROTOCOL_HYBRID [16:55:28:016] [44161:0f212700] [ERROR][com.freerdp.core] - rdg_process_close_packet:freerdp_set_last_error_ex E_PROXY_INTERNALERROR [0x800759D8] [16:55:28:052] [44161:0f212700] [DEBUG][com.freerdp.core.nego] - Failed to connect with NLA security --=20 You are receiving this mail because: You are the assignee for the bug.=