[nginx] SSL: logging level of "https proxy request" errors.

Maxim Dounin mdounin at mdounin.ru
Tue Dec 4 13:36:54 UTC 2018


details:   https://hg.nginx.org/nginx/rev/6c52c99c475e
branches:  stable-1.14
changeset: 7412:6c52c99c475e
user:      Maxim Dounin <mdounin at mdounin.ru>
date:      Thu Jul 05 20:45:29 2018 +0300
description:
SSL: logging level of "https proxy request" errors.

The "http request" and "https proxy request" errors cannot happen
with HTTP due to pre-handshake checks in ngx_http_ssl_handshake(),
but can happen when SSL is used in stream and mail modules.

diffstat:

 src/event/ngx_event_openssl.c |  2 ++
 1 files changed, 2 insertions(+), 0 deletions(-)

diffs (12 lines):

diff --git a/src/event/ngx_event_openssl.c b/src/event/ngx_event_openssl.c
--- a/src/event/ngx_event_openssl.c
+++ b/src/event/ngx_event_openssl.c
@@ -2063,6 +2063,8 @@ ngx_ssl_connection_error(ngx_connection_
             || n == SSL_R_DIGEST_CHECK_FAILED                        /*  149 */
             || n == SSL_R_ERROR_IN_RECEIVED_CIPHER_LIST              /*  151 */
             || n == SSL_R_EXCESSIVE_MESSAGE_SIZE                     /*  152 */
+            || n == SSL_R_HTTPS_PROXY_REQUEST                        /*  155 */
+            || n == SSL_R_HTTP_REQUEST                               /*  156 */
             || n == SSL_R_LENGTH_MISMATCH                            /*  159 */
 #ifdef SSL_R_NO_CIPHERS_PASSED
             || n == SSL_R_NO_CIPHERS_PASSED                          /*  182 */


More information about the nginx-devel mailing list