check_nrpe fails, SSL handshake error (NOT Solved)

Patrick Soltani PSoltani at iitcorporation.com
Tue Dec 23 20:26:31 CET 2003


Hi,

When there is no more info on the module, then I'll turn to "truss" on Solaris and run the same command line but with truss to see what exactly the module is doing and what kind of internal roll-o-coaster it traverses.

That should shed more light on the issue.

Regards,
Patrick Soltani.




> -----Original Message-----
> From: nagios-users-admin at lists.sourceforge.net
> [mailto:nagios-users-admin at lists.sourceforge.net]On Behalf Of Michael
> Tucker
> Sent: Monday, December 22, 2003 8:23 PM
> To: nagios-users at lists.sourceforge.net
> Subject: Re: [Nagios-users] check_nrpe fails, SSL handshake error (NOT
> Solved)
> 
> 
> 
> On Monday, December 22, 2003, at 05:34  PM, John Downs wrote:
> 
> >    I wish my problem was so easy to fix. I recompiled with  
> > --disable-ssl
> > option and it works
> > a little better.(I tried the permissions issue it didn't 
> help) I am  
> > still
> > getting the following error
> > in /var/adm/messages:
> >
> >    Network server bind failure (126: cannot assign requested addres)
> > This happens when I start start nrpe in daemon mode with:
> > /usr/bin/nrpe -c /etc/nrpe.cfg -d
> >
> > nrpe is owned by root and has suid bit set. nrpe.cfg is owned by  
> > nagios and
> > is readable by everyone.
> >
> > any ideas on this?
> >
> > Thanks!!
> >
> > -john
> >
> 
> Yeah, I get exactly the same thing. (Well *almost* exactly the same.  
> Mine says "(125: cannot assign requested address)", but 
> otherwise it's  
> the same if I try to launch nrpe as a stand-alone daemon. (In 
> my case,  
> both nrpe and nrpe.cfg are owned by nagios:nagios, no suid 
> bit set, and  
> are readable by everyone.)
> 
> It works if I use inetd with tcp wrappers, though, as I 
> described in my  
> first message...
> 
> > /etc/inetd.conf:
> > nrpe	stream	tcp	nowait	nagios	
> /usr/sfw/sbin/tcpd	/usr/local/nagios/ 
> > bin/nrpe -c /usr/local/nagios/bin/nrpe.cfg -i
> >
> > /etc/services:
> > nrpe	5666/tcp	# NRPE (Nagios remote plugin executor)
> 
> ...but ONLY if I have SSL disabled (recompiled nrpe with  
> --disable-ssl). I plan to deploy this to some sites where the SSL  
> security will be critically important. I can continue with my 
> testing  
> without it, but sooner or later I've got to fix this link in 
> the chain.
> 
> Surely there's someone out there running Solaris who's had a similar  
> problem, and figured out how to solve it?
> 
> *frustrated*
> 
> Michael
> 
> 
> 
> -------------------------------------------------------
> This SF.net email is sponsored by: IBM Linux Tutorials.
> Become an expert in LINUX or just sharpen your skills.  Sign 
> up for IBM's
> Free Linux Tutorials.  Learn everything from the bash shell 
> to sys admin.
> Click now! http://ads.osdn.com/?ad_id=1278&alloc_id=3371&op=click
> _______________________________________________
> Nagios-users mailing list
> Nagios-users at lists.sourceforge.net
> https://lists.sourceforge.net/lists/listinfo/nagios-users
> ::: Please include Nagios version, plugin version (-v) and OS 
> when reporting any issue. 
> ::: Messages without supporting info will risk being sent to /dev/null
> 


-------------------------------------------------------
This SF.net email is sponsored by: IBM Linux Tutorials.
Become an expert in LINUX or just sharpen your skills.  Sign up for IBM's
Free Linux Tutorials.  Learn everything from the bash shell to sys admin.
Click now! http://ads.osdn.com/?ad_id78&alloc_id371&op=click
_______________________________________________
Nagios-users mailing list
Nagios-users at lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/nagios-users
::: Please include Nagios version, plugin version (-v) and OS when reporting any issue. 
::: Messages without supporting info will risk being sent to /dev/null





More information about the Users mailing list