cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements

2868
Views
5
Helpful
9
Replies

CSD component certificate expired

Hi,

Today we have got problems running web launched CDS(Cisco Secure Desktop) and also using client based CSD/Hostscan from Linux

in combination with AnyConnect. (This works ok from Mac/Windows)

The web launch problem is reproducable on all platforms where it have been tested.

After the problem arrised we tried to upgrade the CDS and Hostscan packages to latest release (csd_3.6.6228-k9.pkg hostscan_3.1.02040-k9.pkg) but the problem is stil there.

From what I can understand it seems to be some signed code for which the certificate have expired.

Using web launch CSD I receive:

Screenshot.png

Screenshot-1.png

Screenshot-2.png

In Linux the libcsd.log looks like:

---

[Fri Feb 08 14:46:21.502 2013][libcsd][all][csd_init] hello

[Fri Feb 08 14:46:21.502 2013][libcsd][all][csd_init] libcsd.so version 3.1.02040

[Fri Feb 08 14:46:21.502 2013][libcsd][debug][hs_transport_init] initialization

[Fri Feb 08 14:46:21.502 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/opt/cisco/anyconnect/lib/libaccurl.so.4.2.0], signer = [Cisco Systems, Inc.], type = [2]

[Fri Feb 08 14:46:21.513 2013][libcsd][error][verify_cb] Error 10, certificate has expired

[Fri Feb 08 14:46:21.513 2013][libcsd][error][verify_cert] Certificate is not trusted

[Fri Feb 08 14:46:21.514 2013][libcsd][error][hs_file_verify_with_killdate] unable to verify the certificate trust.

[Fri Feb 08 14:46:21.514 2013][libcsd][error][hs_dl_load_global] file signature invalid, not loading library (/opt/cisco/anyconnect/lib/libaccurl.so.4.2.0).

[Fri Feb 08 14:46:21.514 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/opt/cisco/anyconnect/lib/libaccurl.so.4], signer = [Cisco Systems, Inc.], type = [2]

[Fri Feb 08 14:46:21.525 2013][libcsd][error][verify_cb] Error 10, certificate has expired

[Fri Feb 08 14:46:21.525 2013][libcsd][error][verify_cert] Certificate is not trusted

[Fri Feb 08 14:46:21.526 2013][libcsd][error][hs_file_verify_with_killdate] unable to verify the certificate trust.

[Fri Feb 08 14:46:21.526 2013][libcsd][error][hs_dl_load_global] file signature invalid, not loading library (/opt/cisco/anyconnect/lib/libaccurl.so.4).

[Fri Feb 08 14:46:21.526 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/opt/cisco/anyconnect/lib/libcurl.so], signer = [Cisco Systems, Inc.], type = [2]

[Fri Feb 08 14:46:21.526 2013][libcsd][warn][hs_file_verify_with_killdate] unable to open file (/opt/cisco/anyconnect/lib/libcurl.so)

[Fri Feb 08 14:46:21.526 2013][libcsd][error][hs_dl_load_global] file signature invalid, not loading library (/opt/cisco/anyconnect/lib/libcurl.so).

[Fri Feb 08 14:46:21.526 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/opt/cisco/hostscan/lib/libaccurl.so], signer = [Cisco Systems, Inc.], type = [2]

[Fri Feb 08 14:46:21.537 2013][libcsd][error][verify_cb] Error 10, certificate has expired

[Fri Feb 08 14:46:21.537 2013][libcsd][error][verify_cert] Certificate is not trusted

[Fri Feb 08 14:46:21.538 2013][libcsd][error][hs_file_verify_with_killdate] unable to verify the certificate trust.

[Fri Feb 08 14:46:21.538 2013][libcsd][error][hs_dl_load_global] file signature invalid, not loading library (/opt/cisco/hostscan/lib/libaccurl.so).

[Fri Feb 08 14:46:21.538 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/usr/lib64/libcurl.so], signer = [(null)], type = [2]

[Fri Feb 08 14:46:21.538 2013][libcsd][debug][hs_file_verify_with_killdate] file verification bypassed: file = [/usr/lib64/libcurl.so], signer = [(null)], type = [2]

[Fri Feb 08 14:46:21.538 2013][libcsd][debug][hs_dl_load_global] attempting to load library (/usr/lib64/libcurl.so)

[Fri Feb 08 14:46:21.538 2013][libcsd][warn][hs_dl_load_global] unable to load (/usr/lib64/libcurl.so): /usr/lib64/libcurl.so: wrong ELF class: ELFCLASS64

[Fri Feb 08 14:46:21.538 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/usr/lib64/libcurl.so.4], signer = [(null)], type = [2]

[Fri Feb 08 14:46:21.538 2013][libcsd][debug][hs_file_verify_with_killdate] file verification bypassed: file = [/usr/lib64/libcurl.so.4], signer = [(null)], type = [2]

[Fri Feb 08 14:46:21.538 2013][libcsd][debug][hs_dl_load_global] attempting to load library (/usr/lib64/libcurl.so.4)

[Fri Feb 08 14:46:21.538 2013][libcsd][warn][hs_dl_load_global] unable to load (/usr/lib64/libcurl.so.4): /usr/lib64/libcurl.so.4: wrong ELF class: ELFCLASS64

[Fri Feb 08 14:46:21.538 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/usr/lib/libcurl.so.4], signer = [(null)], type = [2]

[Fri Feb 08 14:46:21.538 2013][libcsd][debug][hs_file_verify_with_killdate] file verification bypassed: file = [/usr/lib/libcurl.so.4], signer = [(null)], type = [2]

[Fri Feb 08 14:46:21.538 2013][libcsd][debug][hs_dl_load_global] attempting to load library (/usr/lib/libcurl.so.4)

[Fri Feb 08 14:46:21.539 2013][libcsd][debug][hs_dl_load_global] library (/usr/lib/libcurl.so.4) loaded

[Fri Feb 08 14:46:21.539 2013][libcsd][debug][hs_transport_curl_is_usable_libcurl] curl has no openssl support

[Fri Feb 08 14:46:21.540 2013][libcsd][debug][hs_transport_curl_load_curl] [/usr/lib/libcurl.so.4] does not have the required support

[Fri Feb 08 14:46:21.540 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/opt/cisco/anyconnect/lib/libcurl.so], signer = [Cisco Systems, Inc.], type = [2]

[Fri Feb 08 14:46:21.540 2013][libcsd][warn][hs_file_verify_with_killdate] unable to open file (/opt/cisco/anyconnect/lib/libcurl.so)

[Fri Feb 08 14:46:21.540 2013][libcsd][error][hs_dl_load_global] file signature invalid, not loading library (/opt/cisco/anyconnect/lib/libcurl.so).

[Fri Feb 08 14:46:21.540 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/usr/lib/libcurl.so.4.1.1], signer = [(null)], type = [2]

[Fri Feb 08 14:46:21.540 2013][libcsd][debug][hs_file_verify_with_killdate] file verification bypassed: file = [/usr/lib/libcurl.so.4.1.1], signer = [(null)], type = [2]

[Fri Feb 08 14:46:21.540 2013][libcsd][debug][hs_dl_load_global] attempting to load library (/usr/lib/libcurl.so.4.1.1)

[Fri Feb 08 14:46:21.541 2013][libcsd][debug][hs_dl_load_global] library (/usr/lib/libcurl.so.4.1.1) loaded

[Fri Feb 08 14:46:21.541 2013][libcsd][debug][hs_transport_curl_is_usable_libcurl] curl has no openssl support

[Fri Feb 08 14:46:21.541 2013][libcsd][debug][hs_transport_curl_load_curl] [/usr/lib/libcurl.so.4.1.1] does not have the required support

[Fri Feb 08 14:46:21.542 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/usr/lib/libcurl.so.4], signer = [(null)], type = [2]

[Fri Feb 08 14:46:21.542 2013][libcsd][debug][hs_file_verify_with_killdate] file verification bypassed: file = [/usr/lib/libcurl.so.4], signer = [(null)], type = [2]

[Fri Feb 08 14:46:21.542 2013][libcsd][debug][hs_dl_load_global] attempting to load library (/usr/lib/libcurl.so.4)

[Fri Feb 08 14:46:21.543 2013][libcsd][debug][hs_dl_load_global] library (/usr/lib/libcurl.so.4) loaded

[Fri Feb 08 14:46:21.543 2013][libcsd][debug][hs_transport_curl_is_usable_libcurl] curl has no openssl support

[Fri Feb 08 14:46:21.543 2013][libcsd][debug][hs_transport_curl_load_curl] [/usr/lib/libcurl.so.4] does not have the required support

[Fri Feb 08 14:46:21.543 2013][libcsd][debug][hs_transport_curl_load_curl] unable to load curl

[Fri Feb 08 14:46:21.543 2013][libcsd][debug][hs_transport_curl_init] unable to load curl

[Fri Feb 08 14:46:21.543 2013][libcsd][error][hs_transport_init] initialization failed

[Fri Feb 08 14:46:21.543 2013][libcsd][debug][hs_transport_free] de-initialization

[Fri Feb 08 14:46:21.543 2013][libcsd][debug][hs_transport_free] de-initialization done

[Fri Feb 08 14:46:21.543 2013][libcsd][debug][hs_cache_reset] Resetting cache for '0'

[Fri Feb 08 14:46:32.069 2013][libcsd][all][csd_init] hello

[Fri Feb 08 14:46:32.069 2013][libcsd][all][csd_init] libcsd.so version 3.1.02040

[Fri Feb 08 14:46:32.069 2013][libcsd][debug][hs_transport_init] initialization

[Fri Feb 08 14:46:32.069 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/opt/cisco/anyconnect/lib/libaccurl.so.4.2.0], signer = [Cisco Systems, Inc.], type = [2]

[Fri Feb 08 14:46:32.089 2013][libcsd][error][verify_cb] Error 10, certificate has expired

[Fri Feb 08 14:46:32.089 2013][libcsd][error][verify_cert] Certificate is not trusted

[Fri Feb 08 14:46:32.090 2013][libcsd][error][hs_file_verify_with_killdate] unable to verify the certificate trust.

[Fri Feb 08 14:46:32.090 2013][libcsd][error][hs_dl_load_global] file signature invalid, not loading library (/opt/cisco/anyconnect/lib/libaccurl.so.4.2.0).

[Fri Feb 08 14:46:32.090 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/opt/cisco/anyconnect/lib/libaccurl.so.4], signer = [Cisco Systems, Inc.], type = [2]

[Fri Feb 08 14:46:32.101 2013][libcsd][error][verify_cb] Error 10, certificate has expired

[Fri Feb 08 14:46:32.101 2013][libcsd][error][verify_cert] Certificate is not trusted

[Fri Feb 08 14:46:32.102 2013][libcsd][error][hs_file_verify_with_killdate] unable to verify the certificate trust.

[Fri Feb 08 14:46:32.102 2013][libcsd][error][hs_dl_load_global] file signature invalid, not loading library (/opt/cisco/anyconnect/lib/libaccurl.so.4).

[Fri Feb 08 14:46:32.102 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/opt/cisco/anyconnect/lib/libcurl.so], signer = [Cisco Systems, Inc.], type = [2]

[Fri Feb 08 14:46:32.102 2013][libcsd][warn][hs_file_verify_with_killdate] unable to open file (/opt/cisco/anyconnect/lib/libcurl.so)

[Fri Feb 08 14:46:32.102 2013][libcsd][error][hs_dl_load_global] file signature invalid, not loading library (/opt/cisco/anyconnect/lib/libcurl.so).

[Fri Feb 08 14:46:32.102 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/opt/cisco/hostscan/lib/libaccurl.so], signer = [Cisco Systems, Inc.], type = [2]

[Fri Feb 08 14:46:32.113 2013][libcsd][error][verify_cb] Error 10, certificate has expired

[Fri Feb 08 14:46:32.114 2013][libcsd][error][verify_cert] Certificate is not trusted

[Fri Feb 08 14:46:32.114 2013][libcsd][error][hs_file_verify_with_killdate] unable to verify the certificate trust.

[Fri Feb 08 14:46:32.114 2013][libcsd][error][hs_dl_load_global] file signature invalid, not loading library (/opt/cisco/hostscan/lib/libaccurl.so).

[Fri Feb 08 14:46:32.114 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/usr/lib64/libcurl.so], signer = [(null)], type = [2]

[Fri Feb 08 14:46:32.114 2013][libcsd][debug][hs_file_verify_with_killdate] file verification bypassed: file = [/usr/lib64/libcurl.so], signer = [(null)], type = [2]

[Fri Feb 08 14:46:32.114 2013][libcsd][debug][hs_dl_load_global] attempting to load library (/usr/lib64/libcurl.so)

[Fri Feb 08 14:46:32.115 2013][libcsd][warn][hs_dl_load_global] unable to load (/usr/lib64/libcurl.so): /usr/lib64/libcurl.so: wrong ELF class: ELFCLASS64

[Fri Feb 08 14:46:32.115 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/usr/lib64/libcurl.so.4], signer = [(null)], type = [2]

[Fri Feb 08 14:46:32.115 2013][libcsd][debug][hs_file_verify_with_killdate] file verification bypassed: file = [/usr/lib64/libcurl.so.4], signer = [(null)], type = [2]

[Fri Feb 08 14:46:32.115 2013][libcsd][debug][hs_dl_load_global] attempting to load library (/usr/lib64/libcurl.so.4)

[Fri Feb 08 14:46:32.115 2013][libcsd][warn][hs_dl_load_global] unable to load (/usr/lib64/libcurl.so.4): /usr/lib64/libcurl.so.4: wrong ELF class: ELFCLASS64

[Fri Feb 08 14:46:32.115 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/usr/lib/libcurl.so.4], signer = [(null)], type = [2]

[Fri Feb 08 14:46:32.115 2013][libcsd][debug][hs_file_verify_with_killdate] file verification bypassed: file = [/usr/lib/libcurl.so.4], signer = [(null)], type = [2]

[Fri Feb 08 14:46:32.115 2013][libcsd][debug][hs_dl_load_global] attempting to load library (/usr/lib/libcurl.so.4)

[Fri Feb 08 14:46:32.116 2013][libcsd][debug][hs_dl_load_global] library (/usr/lib/libcurl.so.4) loaded

[Fri Feb 08 14:46:32.116 2013][libcsd][debug][hs_transport_curl_is_usable_libcurl] curl has no openssl support

[Fri Feb 08 14:46:32.116 2013][libcsd][debug][hs_transport_curl_load_curl] [/usr/lib/libcurl.so.4] does not have the required support

[Fri Feb 08 14:46:32.116 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/opt/cisco/anyconnect/lib/libcurl.so], signer = [Cisco Systems, Inc.], type = [2]

[Fri Feb 08 14:46:32.116 2013][libcsd][warn][hs_file_verify_with_killdate] unable to open file (/opt/cisco/anyconnect/lib/libcurl.so)

[Fri Feb 08 14:46:32.116 2013][libcsd][error][hs_dl_load_global] file signature invalid, not loading library (/opt/cisco/anyconnect/lib/libcurl.so).

[Fri Feb 08 14:46:32.117 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/usr/lib/libcurl.so.4.1.1], signer = [(null)], type = [2]

[Fri Feb 08 14:46:32.117 2013][libcsd][debug][hs_file_verify_with_killdate] file verification bypassed: file = [/usr/lib/libcurl.so.4.1.1], signer = [(null)], type = [2]

[Fri Feb 08 14:46:32.117 2013][libcsd][debug][hs_dl_load_global] attempting to load library (/usr/lib/libcurl.so.4.1.1)

[Fri Feb 08 14:46:32.118 2013][libcsd][debug][hs_dl_load_global] library (/usr/lib/libcurl.so.4.1.1) loaded

[Fri Feb 08 14:46:32.118 2013][libcsd][debug][hs_transport_curl_is_usable_libcurl] curl has no openssl support

[Fri Feb 08 14:46:32.118 2013][libcsd][debug][hs_transport_curl_load_curl] [/usr/lib/libcurl.so.4.1.1] does not have the required support

[Fri Feb 08 14:46:32.118 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/usr/lib/libcurl.so.4], signer = [(null)], type = [2]

[Fri Feb 08 14:46:32.118 2013][libcsd][debug][hs_file_verify_with_killdate] file verification bypassed: file = [/usr/lib/libcurl.so.4], signer = [(null)], type = [2]

[Fri Feb 08 14:46:32.118 2013][libcsd][debug][hs_dl_load_global] attempting to load library (/usr/lib/libcurl.so.4)

[Fri Feb 08 14:46:32.119 2013][libcsd][debug][hs_dl_load_global] library (/usr/lib/libcurl.so.4) loaded

[Fri Feb 08 14:46:32.120 2013][libcsd][debug][hs_transport_curl_is_usable_libcurl] curl has no openssl support

[Fri Feb 08 14:46:32.120 2013][libcsd][debug][hs_transport_curl_load_curl] [/usr/lib/libcurl.so.4] does not have the required support

[Fri Feb 08 14:46:32.120 2013][libcsd][debug][hs_transport_curl_load_curl] unable to load curl

[Fri Feb 08 14:46:32.120 2013][libcsd][debug][hs_transport_curl_init] unable to load curl

[Fri Feb 08 14:46:32.120 2013][libcsd][error][hs_transport_init] initialization failed

[Fri Feb 08 14:46:32.120 2013][libcsd][debug][hs_transport_free] de-initialization

[Fri Feb 08 14:46:32.120 2013][libcsd][debug][hs_transport_free] de-initialization done

[Fri Feb 08 14:46:32.120 2013][libcsd][debug][hs_cache_reset] Resetting cache for '0'

[Fri Feb 08 14:46:32.160 2013][libcsd][all][csd_init] hello

[Fri Feb 08 14:46:32.160 2013][libcsd][all][csd_init] libcsd.so version 3.1.02040

[Fri Feb 08 14:46:32.160 2013][libcsd][debug][hs_transport_init] initialization

[Fri Feb 08 14:46:32.160 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/opt/cisco/anyconnect/lib/libaccurl.so.4.2.0], signer = [Cisco Systems, Inc.], type = [2]

[Fri Feb 08 14:46:32.180 2013][libcsd][error][verify_cb] Error 10, certificate has expired

[Fri Feb 08 14:46:32.180 2013][libcsd][error][verify_cert] Certificate is not trusted

[Fri Feb 08 14:46:32.181 2013][libcsd][error][hs_file_verify_with_killdate] unable to verify the certificate trust.

[Fri Feb 08 14:46:32.181 2013][libcsd][error][hs_dl_load_global] file signature invalid, not loading library (/opt/cisco/anyconnect/lib/libaccurl.so.4.2.0).

[Fri Feb 08 14:46:32.181 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/opt/cisco/anyconnect/lib/libaccurl.so.4], signer = [Cisco Systems, Inc.], type = [2]

[Fri Feb 08 14:46:32.192 2013][libcsd][error][verify_cb] Error 10, certificate has expired

[Fri Feb 08 14:46:32.192 2013][libcsd][error][verify_cert] Certificate is not trusted

[Fri Feb 08 14:46:32.193 2013][libcsd][error][hs_file_verify_with_killdate] unable to verify the certificate trust.

[Fri Feb 08 14:46:32.193 2013][libcsd][error][hs_dl_load_global] file signature invalid, not loading library (/opt/cisco/anyconnect/lib/libaccurl.so.4).

[Fri Feb 08 14:46:32.193 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/opt/cisco/anyconnect/lib/libcurl.so], signer = [Cisco Systems, Inc.], type = [2]

[Fri Feb 08 14:46:32.193 2013][libcsd][warn][hs_file_verify_with_killdate] unable to open file (/opt/cisco/anyconnect/lib/libcurl.so)

[Fri Feb 08 14:46:32.193 2013][libcsd][error][hs_dl_load_global] file signature invalid, not loading library (/opt/cisco/anyconnect/lib/libcurl.so).

[Fri Feb 08 14:46:32.193 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/opt/cisco/hostscan/lib/libaccurl.so], signer = [Cisco Systems, Inc.], type = [2]

[Fri Feb 08 14:46:32.204 2013][libcsd][error][verify_cb] Error 10, certificate has expired

[Fri Feb 08 14:46:32.204 2013][libcsd][error][verify_cert] Certificate is not trusted

[Fri Feb 08 14:46:32.205 2013][libcsd][error][hs_file_verify_with_killdate] unable to verify the certificate trust.

[Fri Feb 08 14:46:32.205 2013][libcsd][error][hs_dl_load_global] file signature invalid, not loading library (/opt/cisco/hostscan/lib/libaccurl.so).

[Fri Feb 08 14:46:32.205 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/usr/lib64/libcurl.so], signer = [(null)], type = [2]

[Fri Feb 08 14:46:32.205 2013][libcsd][debug][hs_file_verify_with_killdate] file verification bypassed: file = [/usr/lib64/libcurl.so], signer = [(null)], type = [2]

[Fri Feb 08 14:46:32.205 2013][libcsd][debug][hs_dl_load_global] attempting to load library (/usr/lib64/libcurl.so)

[Fri Feb 08 14:46:32.205 2013][libcsd][warn][hs_dl_load_global] unable to load (/usr/lib64/libcurl.so): /usr/lib64/libcurl.so: wrong ELF class: ELFCLASS64

[Fri Feb 08 14:46:32.205 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/usr/lib64/libcurl.so.4], signer = [(null)], type = [2]

[Fri Feb 08 14:46:32.205 2013][libcsd][debug][hs_file_verify_with_killdate] file verification bypassed: file = [/usr/lib64/libcurl.so.4], signer = [(null)], type = [2]

[Fri Feb 08 14:46:32.205 2013][libcsd][debug][hs_dl_load_global] attempting to load library (/usr/lib64/libcurl.so.4)

[Fri Feb 08 14:46:32.205 2013][libcsd][warn][hs_dl_load_global] unable to load (/usr/lib64/libcurl.so.4): /usr/lib64/libcurl.so.4: wrong ELF class: ELFCLASS64

[Fri Feb 08 14:46:32.205 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/usr/lib/libcurl.so.4], signer = [(null)], type = [2]

[Fri Feb 08 14:46:32.205 2013][libcsd][debug][hs_file_verify_with_killdate] file verification bypassed: file = [/usr/lib/libcurl.so.4], signer = [(null)], type = [2]

[Fri Feb 08 14:46:32.205 2013][libcsd][debug][hs_dl_load_global] attempting to load library (/usr/lib/libcurl.so.4)

[Fri Feb 08 14:46:32.206 2013][libcsd][debug][hs_dl_load_global] library (/usr/lib/libcurl.so.4) loaded

[Fri Feb 08 14:46:32.206 2013][libcsd][debug][hs_transport_curl_is_usable_libcurl] curl has no openssl support

[Fri Feb 08 14:46:32.207 2013][libcsd][debug][hs_transport_curl_load_curl] [/usr/lib/libcurl.so.4] does not have the required support

[Fri Feb 08 14:46:32.207 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/opt/cisco/anyconnect/lib/libcurl.so], signer = [Cisco Systems, Inc.], type = [2]

[Fri Feb 08 14:46:32.207 2013][libcsd][warn][hs_file_verify_with_killdate] unable to open file (/opt/cisco/anyconnect/lib/libcurl.so)

[Fri Feb 08 14:46:32.207 2013][libcsd][error][hs_dl_load_global] file signature invalid, not loading library (/opt/cisco/anyconnect/lib/libcurl.so).

[Fri Feb 08 14:46:32.207 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/usr/lib/libcurl.so.4.1.1], signer = [(null)], type = [2]

[Fri Feb 08 14:46:32.207 2013][libcsd][debug][hs_file_verify_with_killdate] file verification bypassed: file = [/usr/lib/libcurl.so.4.1.1], signer = [(null)], type = [2]

[Fri Feb 08 14:46:32.207 2013][libcsd][debug][hs_dl_load_global] attempting to load library (/usr/lib/libcurl.so.4.1.1)

[Fri Feb 08 14:46:32.208 2013][libcsd][debug][hs_dl_load_global] library (/usr/lib/libcurl.so.4.1.1) loaded

[Fri Feb 08 14:46:32.208 2013][libcsd][debug][hs_transport_curl_is_usable_libcurl] curl has no openssl support

[Fri Feb 08 14:46:32.208 2013][libcsd][debug][hs_transport_curl_load_curl] [/usr/lib/libcurl.so.4.1.1] does not have the required support

[Fri Feb 08 14:46:32.208 2013][libcsd][debug][hs_file_verify_with_killdate] verifying file signature: file = [/usr/lib/libcurl.so.4], signer = [(null)], type = [2]

[Fri Feb 08 14:46:32.209 2013][libcsd][debug][hs_file_verify_with_killdate] file verification bypassed: file = [/usr/lib/libcurl.so.4], signer = [(null)], type = [2]

[Fri Feb 08 14:46:32.209 2013][libcsd][debug][hs_dl_load_global] attempting to load library (/usr/lib/libcurl.so.4)

[Fri Feb 08 14:46:32.210 2013][libcsd][debug][hs_dl_load_global] library (/usr/lib/libcurl.so.4) loaded

[Fri Feb 08 14:46:32.210 2013][libcsd][debug][hs_transport_curl_is_usable_libcurl] curl has no openssl support

[Fri Feb 08 14:46:32.210 2013][libcsd][debug][hs_transport_curl_load_curl] [/usr/lib/libcurl.so.4] does not have the required support

[Fri Feb 08 14:46:32.210 2013][libcsd][debug][hs_transport_curl_load_curl] unable to load curl

[Fri Feb 08 14:46:32.210 2013][libcsd][debug][hs_transport_curl_init] unable to load curl

[Fri Feb 08 14:46:32.210 2013][libcsd][error][hs_transport_init] initialization failed

[Fri Feb 08 14:46:32.210 2013][libcsd][debug][hs_transport_free] de-initialization

[Fri Feb 08 14:46:32.210 2013][libcsd][debug][hs_transport_free] de-initialization done

[Fri Feb 08 14:46:32.210 2013][libcsd][debug][hs_cache_reset] Resetting cache for '0'

---

Please advice how this could be solved.

Do not hesitate to ask if there is any further information which I can provide.

Best regards

9 REPLIES 9
Beginner

CSD component certificate expired

Also confirmed on anyconnect-linux-3.1.03042-k9.

Cisco Employee

CSD component certificate expired

Re: CSD component certificate expired

Thank you for the confirmation, me and my 100+ Linux users hopes it will be quick.
While we wait, is there any work-around possible?

Once the update is available, do you think it will be possible to distribute it via VPN-headend or will it require a reinstall on the clients?

Best regards


Sent from Cisco Technical Support iPad App

Cisco Employee

Re: CSD component certificate expired

Yes the update will be a new client version so you can use whatever mechanism you're currently using to distribute the client should work. the only work around availabe is the one mentioend in the document, i.e. changing the clock.

CSD component certificate expired

The document states that the certificate problem only affects users running Linux and AnyConnect, but I guess that is not entirely true? I can for sure also se the problem running the web launch version(Java) of CSD using clientless web vpn on any plattform.

Also noted since friday(but not sure they are related) are problems with our Outlook Web access used over webvpn. Now our e-mail list does not display correct. You can stil log in, you can see your folders and the e-mail display, but the list of e-mails looks totaly scrambled.

Cisco Employee

CSD component certificate expired

Mattias,

You are correct, it impacts web deployments of CSD as well. I have updated the doc to reflect this more accurately. Thanks for that.

Regarding your other problem, i am not sure if it is related. You could wait for the fix and see if it gets resolved or, i would recommend, open a case with TAC for 32 bit linux machines to verify if it's another bug.

Beginner

CSD component certificate expired

What's the ETA on the fix?

Highlighted
Cisco Employee

CSD component certificate expired

Hopefully this week. We've run into some problems during testing that we're correcting now. Please subsribe to the bug for regular updates.

Beginner

CSD component certificate expired

I only have a guest login, and don't have the required privileges to even view, let alone subscribe, to the bug...