Mock Version: 2.15 Mock Version: 2.15 Mock Version: 2.15 ENTER ['do_with_status'](['bash', '--login', '-c', '/usr/bin/rpmbuild -bs --target riscv64 --nodeps /builddir/build/SPECS/ocserv.spec'], chrootPath='/var/lib/mock/f37-build-677379-76293/root'env={'TERM': 'vt100', 'SHELL': '/bin/bash', 'HOME': '/builddir', 'HOSTNAME': 'mock', 'PATH': '/usr/bin:/bin:/usr/sbin:/sbin', 'PROMPT_COMMAND': 'printf "\\033]0;\\007"', 'PS1': ' \\s-\\v\\$ ', 'LANG': 'C.UTF-8'}shell=Falselogger=timeout=604800uid=991gid=135user='mockbuild'nspawn_args=[]unshare_net=TrueprintOutput=False) Executing command: ['bash', '--login', '-c', '/usr/bin/rpmbuild -bs --target riscv64 --nodeps /builddir/build/SPECS/ocserv.spec'] with env {'TERM': 'vt100', 'SHELL': '/bin/bash', 'HOME': '/builddir', 'HOSTNAME': 'mock', 'PATH': '/usr/bin:/bin:/usr/sbin:/sbin', 'PROMPT_COMMAND': 'printf "\\033]0;\\007"', 'PS1': ' \\s-\\v\\$ ', 'LANG': 'C.UTF-8'} and shell False Building target platforms: riscv64 Building for target riscv64 setting SOURCE_DATE_EPOCH=1668470400 Wrote: /builddir/build/SRPMS/ocserv-1.1.6-2.0.riscv64.fc37.src.rpm Child return code was: 0 ENTER ['do_with_status'](['bash', '--login', '-c', '/usr/bin/rpmbuild -bb --target riscv64 --nodeps /builddir/build/SPECS/ocserv.spec'], chrootPath='/var/lib/mock/f37-build-677379-76293/root'env={'TERM': 'vt100', 'SHELL': '/bin/bash', 'HOME': '/builddir', 'HOSTNAME': 'mock', 'PATH': '/usr/bin:/bin:/usr/sbin:/sbin', 'PROMPT_COMMAND': 'printf "\\033]0;\\007"', 'PS1': ' \\s-\\v\\$ ', 'LANG': 'C.UTF-8'}shell=Falselogger=timeout=604800uid=991gid=135user='mockbuild'nspawn_args=[]unshare_net=TrueprintOutput=False) Executing command: ['bash', '--login', '-c', '/usr/bin/rpmbuild -bb --target riscv64 --nodeps /builddir/build/SPECS/ocserv.spec'] with env {'TERM': 'vt100', 'SHELL': '/bin/bash', 'HOME': '/builddir', 'HOSTNAME': 'mock', 'PATH': '/usr/bin:/bin:/usr/sbin:/sbin', 'PROMPT_COMMAND': 'printf "\\033]0;\\007"', 'PS1': ' \\s-\\v\\$ ', 'LANG': 'C.UTF-8'} and shell False Building target platforms: riscv64 Building for target riscv64 setting SOURCE_DATE_EPOCH=1668470400 Executing(%prep): /bin/sh -e /var/tmp/rpm-tmp.hTOEyT + umask 022 + cd /builddir/build/BUILD + gpgv2 --keyring /builddir/build/SOURCES/gpgkey-1F42418905D8206AA754CCDC29EE58B996865171.gpg /builddir/build/SOURCES/ocserv-1.1.6.tar.xz.sig /builddir/build/SOURCES/ocserv-1.1.6.tar.xz gpgv: Signature made Thu Feb 17 03:22:20 2022 EST gpgv: using RSA key 1F42418905D8206AA754CCDC29EE58B996865171 gpgv: Good signature from "Nikos Mavrogiannopoulos " gpgv: aka "Nikos Mavrogiannopoulos " gpgv: aka "Nikos Mavrogiannopoulos " + cd /builddir/build/BUILD + rm -rf ocserv-1.1.6 + /usr/lib/rpm/rpmuncompress -x /builddir/build/SOURCES/ocserv-1.1.6.tar.xz + STATUS=0 + '[' 0 -ne 0 ']' + cd ocserv-1.1.6 + /usr/bin/chmod -Rf a+rX,u+w,g-w,o-w . + rm -f src/http-parser/http_parser.c src/http-parser/http_parser.h + rm -rf src/protobuf/protobuf-c/ + touch src/ctl.proto src/ipc.proto + rm -rf src/ccan/talloc + sed -i 's|/etc/ocserv.conf|/etc/ocserv/ocserv.conf|g' src/config.c + sed -i 's/run-as-group = nogroup/run-as-group = nobody/g' tests/data/apple-ios.config tests/data/config-per-group.config tests/data/disconnect-user.config tests/data/disconnect-user2.config tests/data/haproxy-proxyproto-v1.config tests/data/haproxy-proxyproto.config tests/data/ipv6-iface.config tests/data/multiple-routes.config tests/data/no-route-default.config tests/data/no-route-group.config tests/data/ping-leases.config tests/data/radius-group.config tests/data/radius-otp.config tests/data/radius.config tests/data/test-ban.config tests/data/test-cert-opt-pass.config tests/data/test-ciphers.config tests/data/test-client-bypass-protocol.config tests/data/test-compression-lz4.config tests/data/test-compression-lzs.config tests/data/test-cookie-invalidation.config tests/data/test-cookie-timeout-2.config tests/data/test-cookie-timeout.config tests/data/test-ed25519.config tests/data/test-enc-key.config tests/data/test-enc-key2.config tests/data/test-explicit-ip.config tests/data/test-group-name.config tests/data/test-group-pass.config tests/data/test-gssapi-local-map.config tests/data/test-gssapi-opt-cert.config tests/data/test-gssapi-opt-pass.config tests/data/test-gssapi.config tests/data/test-haproxy-auth.config tests/data/test-haproxy-connect.config tests/data/test-iroute.config tests/data/test-max-same-1.config tests/data/test-multi-cookie.config tests/data/test-multiple-client-ip.config tests/data/test-namespace-listen.config tests/data/test-otp-cert.config tests/data/test-otp.config tests/data/test-pam-noauth.config tests/data/test-pam.config tests/data/test-pass-opt-cert.config tests/data/test-pass-script.config tests/data/test-psk-negotiate.config tests/data/test-rsa-pss.config tests/data/test-san-cert.config tests/data/test-script-multi-user.config tests/data/test-sighup-key-change.config tests/data/test-sighup.config tests/data/test-stress.config tests/data/test-traffic.config tests/data/test-udp-listen-host.config tests/data/test-user-cert.config tests/data/test-user-config.config tests/data/test-user-group-cert-no-pass.config tests/data/test-user-group-cert.config tests/data/test-vhost-pass-cert.config tests/data/test1.config tests/data/test3.config + sed -i 's/either version 3 of the License/either version 2 of the License/g' build-aux/snippet/_Noreturn.h build-aux/snippet/arg-nonnull.h build-aux/snippet/c++defs.h build-aux/snippet/warn-on-use.h + RPM_EC=0 ++ jobs -p + exit 0 Executing(%build): /bin/sh -e /var/tmp/rpm-tmp.oCV5SC + umask 022 + cd /builddir/build/BUILD + CFLAGS='-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -fasynchronous-unwind-tables -fstack-clash-protection' + export CFLAGS + CXXFLAGS='-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -fasynchronous-unwind-tables -fstack-clash-protection' + export CXXFLAGS + FFLAGS='-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -fasynchronous-unwind-tables -fstack-clash-protection -I/usr/lib64/gfortran/modules' + export FFLAGS + FCFLAGS='-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -fasynchronous-unwind-tables -fstack-clash-protection -I/usr/lib64/gfortran/modules' + export FCFLAGS + LDFLAGS='-Wl,-z,relro -Wl,--as-needed -Wl,-z,now -specs=/usr/lib/rpm/redhat/redhat-hardened-ld -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -Wl,--build-id=sha1 -specs=/usr/lib/rpm/redhat/redhat-package-notes' + export LDFLAGS + LT_SYS_LIBRARY_PATH=/usr/lib64: + export LT_SYS_LIBRARY_PATH + CC=gcc + export CC + CXX=g++ + export CXX + cd ocserv-1.1.6 + CFLAGS='-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -fasynchronous-unwind-tables -fstack-clash-protection' + export CFLAGS + CXXFLAGS='-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -fasynchronous-unwind-tables -fstack-clash-protection' + export CXXFLAGS + FFLAGS='-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -fasynchronous-unwind-tables -fstack-clash-protection -I/usr/lib64/gfortran/modules' + export FFLAGS + FCFLAGS='-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -fasynchronous-unwind-tables -fstack-clash-protection -I/usr/lib64/gfortran/modules' + export FCFLAGS + LDFLAGS='-Wl,-z,relro -Wl,--as-needed -Wl,-z,now -specs=/usr/lib/rpm/redhat/redhat-hardened-ld -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -Wl,--build-id=sha1 -specs=/usr/lib/rpm/redhat/redhat-package-notes' + export LDFLAGS + LT_SYS_LIBRARY_PATH=/usr/lib64: + export LT_SYS_LIBRARY_PATH + CC=gcc + export CC + CXX=g++ + export CXX + '[' '-flto=auto -ffat-lto-objectsx' '!=' x ']' ++ find . -type f -name configure -print + for file in $(find . -type f -name configure -print) + /usr/bin/sed -r --in-place=.backup 's/^char \(\*f\) \(\) = /__attribute__ ((used)) char (*f) () = /g' ./configure + diff -u ./configure.backup ./configure + mv ./configure.backup ./configure + /usr/bin/sed -r --in-place=.backup 's/^char \(\*f\) \(\);/__attribute__ ((used)) char (*f) ();/g' ./configure + diff -u ./configure.backup ./configure + mv ./configure.backup ./configure + /usr/bin/sed -r --in-place=.backup 's/^char \$2 \(\);/__attribute__ ((used)) char \$2 ();/g' ./configure + diff -u ./configure.backup ./configure --- ./configure.backup 2022-02-17 03:21:00.000000000 -0500 +++ ./configure 2022-11-15 04:03:02.809219679 -0500 @@ -3048,7 +3048,7 @@ #ifdef __cplusplus extern "C" #endif -char $2 (); +__attribute__ ((used)) char $2 (); /* The GNU C library defines this for functions which it implements to always fail with ENOSYS. Some functions are actually named something starting with __ and the normal name is an alias. */ + /usr/bin/sed --in-place=.backup '1{$!N;$!N};$!N;s/int x = 1;\nint y = 0;\nint z;\nint nan;/volatile int x = 1; volatile int y = 0; volatile int z, nan;/;P;D' ./configure + diff -u ./configure.backup ./configure + mv ./configure.backup ./configure + /usr/bin/sed --in-place=.backup 's#^lt_cv_sys_global_symbol_to_cdecl=.*#lt_cv_sys_global_symbol_to_cdecl="sed -n -e '\''s/^T .* \\(.*\\)$/extern int \\1();/p'\'' -e '\''s/^$symcode* .* \\(.*\\)$/extern char \\1;/p'\''"#' ./configure + diff -u ./configure.backup ./configure + mv ./configure.backup ./configure + '[' 1 = 1 ']' +++ dirname ./configure ++ find . -name config.guess -o -name config.sub + for i in $(find $(dirname ./configure) -name config.guess -o -name config.sub) ++ basename ./build-aux/config.sub + '[' -f /usr/lib/rpm/redhat/config.sub ']' + /usr/bin/rm -f ./build-aux/config.sub ++ basename ./build-aux/config.sub + /usr/bin/cp -fv /usr/lib/rpm/redhat/config.sub ./build-aux/config.sub '/usr/lib/rpm/redhat/config.sub' -> './build-aux/config.sub' + for i in $(find $(dirname ./configure) -name config.guess -o -name config.sub) ++ basename ./build-aux/config.guess + '[' -f /usr/lib/rpm/redhat/config.guess ']' + /usr/bin/rm -f ./build-aux/config.guess ++ basename ./build-aux/config.guess + /usr/bin/cp -fv /usr/lib/rpm/redhat/config.guess ./build-aux/config.guess '/usr/lib/rpm/redhat/config.guess' -> './build-aux/config.guess' + '[' 1 = 1 ']' + '[' x '!=' 'x-Wl,-z,now -specs=/usr/lib/rpm/redhat/redhat-hardened-ld' ']' ++ find . -name ltmain.sh + ./configure --build=riscv64-redhat-linux-gnu --host=riscv64-redhat-linux-gnu --program-prefix= --disable-dependency-tracking --prefix=/usr --exec-prefix=/usr --bindir=/usr/bin --sbindir=/usr/sbin --sysconfdir=/etc --datadir=/usr/share --includedir=/usr/include --libdir=/usr/lib64 --libexecdir=/usr/libexec --localstatedir=/var --sharedstatedir=/var/lib --mandir=/usr/share/man --infodir=/usr/share/info --without-pcl-lib --disable-rpath --enable-systemd --without-libwrap checking for riscv64-redhat-linux-gnu-pkg-config... /usr/bin/riscv64-redhat-linux-gnu-pkg-config checking pkg-config is at least version 0.9.0... yes checking for a BSD-compatible install... /usr/bin/install -c checking whether build environment is sane... yes checking for a thread-safe mkdir -p... /usr/bin/mkdir -p checking for gawk... gawk checking whether make sets $(MAKE)... yes checking whether make supports nested variables... yes checking whether make supports nested variables... (cached) yes checking for riscv64-redhat-linux-gnu-gcc... gcc checking whether the C compiler works... yes checking for C compiler default output file name... a.out checking for suffix of executables... checking whether we are cross compiling... no checking for suffix of object files... o checking whether we are using the GNU C compiler... yes checking whether gcc accepts -g... yes checking for gcc option to accept ISO C89... none needed checking whether gcc understands -c and -o together... yes checking whether make supports the include directive... yes (GNU style) checking dependency style of gcc... none checking how to run the C preprocessor... gcc -E checking for grep that handles long lines and -e... /usr/bin/grep checking for egrep... /usr/bin/grep -E checking for ANSI C header files... yes checking for sys/types.h... yes checking for sys/stat.h... yes checking for stdlib.h... yes checking for string.h... yes checking for memory.h... yes checking for strings.h... yes checking for inttypes.h... yes checking for stdint.h... yes checking for unistd.h... yes checking minix/config.h usability... no checking minix/config.h presence... no checking for minix/config.h... no checking whether it is safe to define __EXTENSIONS__... yes checking whether _XOPEN_SOURCE should be defined... no checking for Minix Amsterdam compiler... no checking for riscv64-redhat-linux-gnu-ar... no checking for riscv64-redhat-linux-gnu-lib... no checking for riscv64-redhat-linux-gnu-link... no checking for ar... ar checking the archiver (ar) interface... ar checking for riscv64-redhat-linux-gnu-ar... ar checking for riscv64-redhat-linux-gnu-ranlib... no checking for ranlib... ranlib checking for _LARGEFILE_SOURCE value needed for large files... no checking for special C compiler options needed for large files... no checking for _FILE_OFFSET_BITS value needed for large files... no checking for riscv64-redhat-linux-gnu-ar... (cached) ar checking the archiver (ar) interface... (cached) ar checking for a sed that does not truncate output... /usr/bin/sed checking for ctags... : checking for cscope... : checking for ronn... ronn checking whether to enable maintainer-specific portions of Makefiles... yes checking whether to build with code coverage support... no checking for sighandler_t... yes checking for sig_t... yes checking for __sighandler_t... yes checking for struct ucred... yes checking for struct iphdr.ihl... yes checking size of unsigned long... 8 checking whether byte ordering is bigendian... no checking for nettle >= 2.7... yes checking for gnutls >= 3.3.0... yes checking build system type... riscv64-redhat-linux-gnu checking host system type... riscv64-redhat-linux-gnu checking for ld used by gcc... /usr/bin/ld checking if the linker (/usr/bin/ld) is GNU ld... yes checking for shared library run path origin... done ./configure: line 8151: cd: /lib64/lp64d/../lib64/lp64d/: No such file or directory ./configure: line 8151: cd: /usr/lib64/lp64d/../lib64/lp64d/: No such file or directory checking for libprotobuf-c... yes checking for libev... yes checking how to link with libev... /usr/lib64/libev.so checking whether to enable broken in asan tests... yes checking for talloc... yes checking for libnl-route-3.0 >= 3.1... yes checking for libmaxminddb >= 1.0.0... yes checking for libreadline... yes checking how to link with libreadline... /usr/lib64/libreadline.so checking for liboath... yes checking for libc... yes checking how to link with libc... /usr/lib64/libc.so checking for pam library... yes checking for uid_wrapper, socket_wrapper... yes checking for pam_wrapper... no checking for nss_wrapper... no checking for radcli >= 1.2.5... yes checking whether the preprocessor supports include_next... yes checking whether system header files limit the line length... no checking for complete errno.h... yes checking whether stdin defaults to large file offsets... yes checking for pid_t... yes checking for mode_t... yes checking whether fseeko is declared... yes checking for fseeko... yes checking for _set_invalid_parameter_handler... no checking for getdelim... yes checking for __fsetlocking... yes checking for tcgetattr... yes checking for tcsetattr... yes checking for gettimeofday... yes checking for mprotect... yes checking for strdup... yes checking whether stat file-mode macros are broken... no checking for sys/stat.h... (cached) yes checking for stdio_ext.h... yes checking for termios.h... yes checking for sys/time.h... yes checking for sys/socket.h... yes checking for unistd.h... (cached) yes checking for sys/mman.h... yes checking for wchar.h... yes checking for stdint.h... (cached) yes checking for strings.h... (cached) yes checking for nlink_t... yes checking whether fchmodat is declared without a macro... yes checking whether fstat is declared without a macro... yes checking whether fstatat is declared without a macro... yes checking whether futimens is declared without a macro... yes checking whether lchmod is declared without a macro... yes checking whether lstat is declared without a macro... yes checking whether mkdirat is declared without a macro... yes checking whether mkfifo is declared without a macro... yes checking whether mkfifoat is declared without a macro... yes checking whether mknod is declared without a macro... yes checking whether mknodat is declared without a macro... yes checking whether stat is declared without a macro... yes checking whether utimensat is declared without a macro... yes checking whether getdelim is declared... yes checking whether getline is declared... yes checking whether getpass is declared... yes checking whether fflush_unlocked is declared... yes checking whether flockfile is declared... yes checking whether fputs_unlocked is declared... yes checking whether funlockfile is declared... yes checking whether putc_unlocked is declared... yes checking for C/C++ restrict keyword... __restrict checking for struct timeval... yes checking for wide-enough struct timeval.tv_sec member... yes checking whether gettimeofday is declared without a macro... yes checking whether malloc, realloc, calloc are POSIX compliant... yes checking for mmap... yes checking for MAP_ANONYMOUS... yes checking whether memchr works... yes checking whether memmem is declared... yes checking for memmem... yes checking whether memmem works... yes checking whether defines MIN and MAX... no checking whether defines MIN and MAX... yes checking for stdbool.h that conforms to C99... yes checking for _Bool... yes checking for wchar_t... yes checking for unsigned long long int... yes checking for long long int... yes checking whether stdint.h conforms to C99... yes checking for strcasestr... yes checking whether strcasestr works... yes checking whether strdup is declared... yes checking whether ffsl is declared without a macro... yes checking whether ffsll is declared without a macro... yes checking whether memmem is declared without a macro... yes checking whether mempcpy is declared without a macro... yes checking whether memrchr is declared without a macro... yes checking whether rawmemchr is declared without a macro... yes checking whether stpcpy is declared without a macro... yes checking whether stpncpy is declared without a macro... yes checking whether strchrnul is declared without a macro... yes checking whether strdup is declared without a macro... yes checking whether strncat is declared without a macro... yes checking whether strndup is declared without a macro... yes checking whether strnlen is declared without a macro... yes checking whether strpbrk is declared without a macro... yes checking whether strsep is declared without a macro... yes checking whether strcasestr is declared without a macro... yes checking whether strtok_r is declared without a macro... yes checking whether strerror_r is declared without a macro... yes checking whether strsignal is declared without a macro... yes checking whether strverscmp is declared without a macro... yes checking whether ffs is declared without a macro... yes checking whether strcasecmp is declared without a macro... yes checking whether strncasecmp is declared without a macro... yes checking for struct timespec in ... yes checking for fseeko... (cached) yes checking for working getdelim function... yes checking for getline... yes checking for working getline function... yes checking for getpass... yes checking whether gettimeofday clobbers localtime buffer... no checking for gettimeofday with POSIX signature... yes checking whether lseek detects pipes... yes checking whether memmem works in linear time... yes checking for memmem... (cached) yes checking whether memmem works... (cached) yes checking for ssize_t... yes checking for max_align_t... yes checking whether NULL can be used in arbitrary expressions... yes checking which flavor of printf attribute matches inttypes macros... system checking whether dprintf is declared without a macro... yes checking whether fpurge is declared without a macro... no checking whether fseeko is declared without a macro... yes checking whether ftello is declared without a macro... yes checking whether getdelim is declared without a macro... yes checking whether getline is declared without a macro... yes checking whether gets is declared without a macro... no checking whether pclose is declared without a macro... yes checking whether popen is declared without a macro... yes checking whether renameat is declared without a macro... yes checking whether snprintf is declared without a macro... yes checking whether tmpfile is declared without a macro... yes checking whether vdprintf is declared without a macro... yes checking whether vsnprintf is declared without a macro... yes checking whether _Exit is declared without a macro... yes checking whether atoll is declared without a macro... yes checking whether canonicalize_file_name is declared without a macro... yes checking whether getloadavg is declared without a macro... yes checking whether getsubopt is declared without a macro... yes checking whether grantpt is declared without a macro... yes checking whether initstate is declared without a macro... yes checking whether initstate_r is declared without a macro... yes checking whether mkdtemp is declared without a macro... yes checking whether mkostemp is declared without a macro... yes checking whether mkostemps is declared without a macro... yes checking whether mkstemp is declared without a macro... yes checking whether mkstemps is declared without a macro... yes checking whether posix_openpt is declared without a macro... yes checking whether ptsname is declared without a macro... yes checking whether ptsname_r is declared without a macro... yes checking whether random is declared without a macro... yes checking whether random_r is declared without a macro... yes checking whether realpath is declared without a macro... yes checking whether rpmatch is declared without a macro... yes checking whether secure_getenv is declared without a macro... yes checking whether setenv is declared without a macro... yes checking whether setstate is declared without a macro... yes checking whether setstate_r is declared without a macro... yes checking whether srandom is declared without a macro... yes checking whether srandom_r is declared without a macro... yes checking whether strtod is declared without a macro... yes checking whether strtoll is declared without a macro... yes checking whether strtoull is declared without a macro... yes checking whether unlockpt is declared without a macro... yes checking whether unsetenv is declared without a macro... yes checking for strcasecmp... yes checking for strncasecmp... yes checking whether strncasecmp is declared... (cached) yes checking whether strcasestr works in linear time... yes checking for strcasestr... (cached) yes checking whether strcasestr works... (cached) yes checking for nlink_t... (cached) yes checking whether fchmodat is declared without a macro... (cached) yes checking whether fstat is declared without a macro... (cached) yes checking whether fstatat is declared without a macro... (cached) yes checking whether futimens is declared without a macro... (cached) yes checking whether lchmod is declared without a macro... (cached) yes checking whether lstat is declared without a macro... (cached) yes checking whether mkdirat is declared without a macro... (cached) yes checking whether mkfifo is declared without a macro... (cached) yes checking whether mkfifoat is declared without a macro... (cached) yes checking whether mknod is declared without a macro... (cached) yes checking whether mknodat is declared without a macro... (cached) yes checking whether stat is declared without a macro... (cached) yes checking whether utimensat is declared without a macro... (cached) yes checking whether chdir is declared without a macro... yes checking whether chown is declared without a macro... yes checking whether dup is declared without a macro... yes checking whether dup2 is declared without a macro... yes checking whether dup3 is declared without a macro... yes checking whether environ is declared without a macro... yes checking whether euidaccess is declared without a macro... yes checking whether faccessat is declared without a macro... yes checking whether fchdir is declared without a macro... yes checking whether fchownat is declared without a macro... yes checking whether fdatasync is declared without a macro... yes checking whether fsync is declared without a macro... yes checking whether ftruncate is declared without a macro... yes checking whether getcwd is declared without a macro... yes checking whether getdomainname is declared without a macro... yes checking whether getdtablesize is declared without a macro... yes checking whether getgroups is declared without a macro... yes checking whether gethostname is declared without a macro... yes checking whether getlogin is declared without a macro... yes checking whether getlogin_r is declared without a macro... yes checking whether getpagesize is declared without a macro... yes checking whether getusershell is declared without a macro... yes checking whether setusershell is declared without a macro... yes checking whether endusershell is declared without a macro... yes checking whether group_member is declared without a macro... yes checking whether isatty is declared without a macro... yes checking whether lchown is declared without a macro... yes checking whether link is declared without a macro... yes checking whether linkat is declared without a macro... yes checking whether lseek is declared without a macro... yes checking whether pipe is declared without a macro... yes checking whether pipe2 is declared without a macro... yes checking whether pread is declared without a macro... yes checking whether pwrite is declared without a macro... yes checking whether readlink is declared without a macro... yes checking whether readlinkat is declared without a macro... yes checking whether rmdir is declared without a macro... yes checking whether sethostname is declared without a macro... yes checking whether sleep is declared without a macro... yes checking whether symlink is declared without a macro... yes checking whether symlinkat is declared without a macro... yes checking whether ttyname_r is declared without a macro... yes checking whether unlink is declared without a macro... yes checking whether unlinkat is declared without a macro... yes checking whether usleep is declared without a macro... yes checking net/if_tun.h usability... no checking net/if_tun.h presence... no checking for net/if_tun.h... no checking linux/if_tun.h usability... yes checking linux/if_tun.h presence... yes checking for linux/if_tun.h... yes checking netinet/in_systm.h usability... yes checking netinet/in_systm.h presence... yes checking for netinet/in_systm.h... yes checking crypt.h usability... yes checking crypt.h presence... yes checking for crypt.h... yes checking for libcrypt... yes checking how to link with libcrypt... /usr/lib64/libcrypt.so checking for libutil... yes checking how to link with libutil... /usr/lib64/libutil.a checking for struct sockaddr.sa_len... no checking for setproctitle... no checking for vasprintf... yes checking for clock_gettime... yes checking for isatty... yes checking for pselect... yes checking for ppoll... yes checking for getpeereid... no checking for sigaltstack... yes checking for strlcpy... no checking for posix_memalign... yes checking for malloc_trim... yes checking for strsep... yes checking for libseccomp... yes checking how to link with libseccomp... /usr/lib64/libseccomp.so checking for libsystemd... yes checking how to link with libsystemd... /usr/lib64/libsystemd.so checking for http_parser library... yes checking for liblz4... yes checking for krb5-gssapi... yes checking for libtasn1 >= 3.4... yes checking for working volatile... yes checking for an ANSI C-conforming const... yes checking for memset... yes checking for malloc... yes checking for free... yes checking for makecontext... yes checking for getcontext... yes checking for swapcontext... yes checking for sigaction... yes checking for longjmp... yes checking for setjmp... yes checking for sigaltstack... (cached) yes checking linux/net_tstamp.h usability... yes checking linux/net_tstamp.h presence... yes checking for linux/net_tstamp.h... yes checking for struct scm_timestamping... yes checking linux/netlink.h usability... yes checking linux/netlink.h presence... yes checking for linux/netlink.h... yes checking linux/rtnetlink.h usability... yes checking linux/rtnetlink.h presence... yes checking for linux/rtnetlink.h... yes checking linux/sock_diag.h usability... yes checking linux/sock_diag.h presence... yes checking for linux/sock_diag.h... yes checking linux/unix_diag.h usability... yes checking linux/unix_diag.h presence... yes checking for linux/unix_diag.h... yes checking for /proc/self/exe... yes checking that generated files are newer than configure... done configure: creating ./config.status config.status: creating Makefile config.status: creating src/version.inc config.status: creating src/Makefile config.status: creating doc/Makefile config.status: creating gl/Makefile config.status: creating tests/data/pam/ocserv config.status: creating tests/data/pam/nss-passwd config.status: creating tests/data/pam/nss-group config.status: creating tests/data/raddb/radiusd.conf config.status: creating tests/Makefile config.status: creating config.h config.status: executing depfiles commands configure: Summary of build options: version: 1.1.6 Host type: riscv64-redhat-linux-gnu Install prefix: /usr Compiler: gcc CFlags: -O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -fasynchronous-unwind-tables -fstack-clash-protection -Wall -Wno-strict-aliasing -Wextra -Wno-unused-parameter -Wno-sign-compare -Wno-missing-field-initializers -Wno-implicit-fallthrough -Wno-stringop-truncation CWrap testing: yes CWrap PAM testing: no CWrap NSS testing: no PAM auth backend: yes Radius auth backend: radcli GSSAPI auth backend: yes OIDC Auth backend: no Anyconnect compat: yes TCP wrappers: no namespaces: yes systemd: yes (socket activation) worker isolation: seccomp Compression: yes LZ4 compression: yes readline: yes libnl3: yes liboath: yes libgeoip: no libmaxminddb: yes glibc (sha2crypt): yes local talloc: no local protobuf-c: no local PCL library: yes local http-parser: no seccomp trap: no capture latency stats no + make -j4 make all-recursive make[1]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6' Making all in gl make[2]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6/gl' GEN arg-nonnull.h GEN c++defs.h GEN warn-on-use.h GEN sys/types.h GEN stdio.h GEN string.h GEN stdlib.h GEN strings.h GEN sys/stat.h GEN sys/time.h GEN time.h GEN unistd.h make all-recursive make[3]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6/gl' make[4]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6/gl' CC c-ctype.o CC c-strcasecmp.o CC c-strncasecmp.o CC unistd.o AR libgnu.a make[4]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6/gl' make[3]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6/gl' make[2]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6/gl' Making all in src make[2]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6/src' protoc-c --c_out=. --proto_path=. ipc.proto protoc-c --c_out=. --proto_path=. ctl.proto make all-am make[3]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6/src' CC ipc.pb-c.o CC ctl.pb-c.o CC common/hmac.o CC common/snapshot.o CC config.o CC config-kkdcp.o CC config-ports.o CC icmp-ping.o CC ip-lease.o CC ip-util.o CC isolate.o CC log.o In file included from log.c:29: ./worker.h:122:13: warning: 'ASN1_TYPE' macro is deprecated, use 'asn1_node' instead. 122 | extern ASN1_TYPE _kkdcp_pkix1_asn; | ^~~~~~~~~~~~~~~~~~~~~~ CC setproctitle.o CC str.o CC subconfig.o CC tlslib.o CC tun.o In file included from tlslib.c:44: ./worker.h:122:13: warning: 'ASN1_TYPE' macro is deprecated, use 'asn1_node' instead. 122 | extern ASN1_TYPE _kkdcp_pkix1_asn; | ^~~~~~~~~~~~~~~~~~~~~~ CC valid-hostname.o CC vasprintf.o CC lzs.o CC kkdcp_asn1_tab.o CC auth-unix.o CC main.o CC main-auth.o CC main-ban.o In file included from main.c:59: ./worker.h:122:13: warning: 'ASN1_TYPE' macro is deprecated, use 'asn1_node' instead. 122 | extern ASN1_TYPE _kkdcp_pkix1_asn; | ^~~~~~~~~~~~~~~~~~~~~~ main.c:75:13: warning: 'ASN1_ARRAY_TYPE' macro is deprecated, use 'asn1_static_node' instead. 75 | extern const ASN1_ARRAY_TYPE kkdcp_asn1_tab[]; | ^~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ main.c:76:13: warning: 'ASN1_TYPE' macro is deprecated, use 'asn1_node' instead. 76 | ASN1_TYPE _kkdcp_pkix1_asn = NULL; | ^~~~~~~~~~~~~~~~~~~~~~ CC main-ctl-unix.o CC main-proc.o CC main-sec-mod-cmd.o CC main-user.o CC main-worker-cmd.o CC proc-search.o CC route-add.o CC sec-mod.o CC sec-mod-auth.o CC sec-mod-cookies.o CC sec-mod-db.o CC sec-mod-resume.o CC sec-mod-sup-config.o CC common/sockdiag.o CC namespace.o CC common/ocserv_worker-hmac.o CC common/ocserv_worker-snapshot.o CC ocserv_worker-config.o CC ocserv_worker-config-kkdcp.o CC ocserv_worker-config-ports.o CC ocserv_worker-icmp-ping.o CC inih/ocserv_worker-ini.o CC ocserv_worker-ip-lease.o CC ocserv_worker-ip-util.o CC ocserv_worker-isolate.o CC ocserv_worker-log.o CC ocserv_worker-setproctitle.o In file included from log.c:29: ./worker.h:122:13: warning: 'ASN1_TYPE' macro is deprecated, use 'asn1_node' instead. 122 | extern ASN1_TYPE _kkdcp_pkix1_asn; | ^~~~~~~~~~~~~~~~~~~~~~ CC ocserv_worker-str.o CC ocserv_worker-subconfig.o CC sup-config/ocserv_worker-file.o CC sup-config/ocserv_worker-radius.o CC ocserv_worker-tlslib.o CC ocserv_worker-tun.o CC ocserv_worker-valid-hostname.o CC ocserv_worker-vasprintf.o In file included from tlslib.c:44: ./worker.h:122:13: warning: 'ASN1_TYPE' macro is deprecated, use 'asn1_node' instead. 122 | extern ASN1_TYPE _kkdcp_pkix1_asn; | ^~~~~~~~~~~~~~~~~~~~~~ CC ocserv_worker-lzs.o CC ocserv_worker-kkdcp_asn1_tab.o CC ocserv_worker-html.o CC ocserv_worker-worker.o In file included from worker.c:33: ./worker.h:122:13: warning: 'ASN1_TYPE' macro is deprecated, use 'asn1_node' instead. 122 | extern ASN1_TYPE _kkdcp_pkix1_asn; | ^~~~~~~~~~~~~~~~~~~~~~ worker.c:41:13: warning: 'ASN1_ARRAY_TYPE' macro is deprecated, use 'asn1_static_node' instead. 41 | extern const ASN1_ARRAY_TYPE kkdcp_asn1_tab[]; | ^~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ worker.c:42:13: warning: 'ASN1_TYPE' macro is deprecated, use 'asn1_node' instead. 42 | ASN1_TYPE _kkdcp_pkix1_asn = NULL; | ^~~~~~~~~~~~~~~~~~~~~~ CC ocserv_worker-worker-auth.o In file included from worker-auth.c:41: ./worker.h:122:13: warning: 'ASN1_TYPE' macro is deprecated, use 'asn1_node' instead. 122 | extern ASN1_TYPE _kkdcp_pkix1_asn; | ^~~~~~~~~~~~~~~~~~~~~~ CC ocserv_worker-worker-bandwidth.o CC ocserv_worker-worker-http.o CC ocserv_worker-worker-http-handlers.o In file included from worker-bandwidth.c:23: ./worker.h:122:13: warning: 'ASN1_TYPE' macro is deprecated, use 'asn1_node' instead. 122 | extern ASN1_TYPE _kkdcp_pkix1_asn; | ^~~~~~~~~~~~~~~~~~~~~~ CC ocserv_worker-worker-kkdcp.o In file included from worker-http.c:40: ./worker.h:122:13: warning: 'ASN1_TYPE' macro is deprecated, use 'asn1_node' instead. 122 | extern ASN1_TYPE _kkdcp_pkix1_asn; | ^~~~~~~~~~~~~~~~~~~~~~ In file included from worker-kkdcp.c:28: ./worker.h:122:13: warning: 'ASN1_TYPE' macro is deprecated, use 'asn1_node' instead. 122 | extern ASN1_TYPE _kkdcp_pkix1_asn; | ^~~~~~~~~~~~~~~~~~~~~~ worker-kkdcp.c: In function 'der_decode': worker-kkdcp.c:37:20: warning: 'ASN1_TYPE' macro is deprecated, use 'asn1_node' instead. 37 | ASN1_TYPE c2 = NULL; | ^~~~~~~~~ worker-kkdcp.c: In function 'der_encode_inplace': worker-kkdcp.c:78:20: warning: 'ASN1_TYPE' macro is deprecated, use 'asn1_node' instead. 78 | ASN1_TYPE c2 = NULL; | ^~~~~~~~~ In file included from worker-http-handlers.c:38: ./worker.h:122:13: warning: 'ASN1_TYPE' macro is deprecated, use 'asn1_node' instead. 122 | extern ASN1_TYPE _kkdcp_pkix1_asn; | ^~~~~~~~~~~~~~~~~~~~~~ CC ocserv_worker-worker-misc.o CC ocserv_worker-worker-privs.o In file included from worker-misc.c:43: ./worker.h:122:13: warning: 'ASN1_TYPE' macro is deprecated, use 'asn1_node' instead. 122 | extern ASN1_TYPE _kkdcp_pkix1_asn; | ^~~~~~~~~~~~~~~~~~~~~~ In file included from worker-privs.c:21: ./worker.h:122:13: warning: 'ASN1_TYPE' macro is deprecated, use 'asn1_node' instead. 122 | extern ASN1_TYPE _kkdcp_pkix1_asn; | ^~~~~~~~~~~~~~~~~~~~~~ CC ocserv_worker-worker-proxyproto.o CC ocserv_worker-worker-resume.o CC ocserv_worker-worker-vpn.o In file included from worker-proxyproto.c:28: ./worker.h:122:13: warning: 'ASN1_TYPE' macro is deprecated, use 'asn1_node' instead. 122 | extern ASN1_TYPE _kkdcp_pkix1_asn; | ^~~~~~~~~~~~~~~~~~~~~~ In file included from worker-resume.c:37: ./worker.h:122:13: warning: 'ASN1_TYPE' macro is deprecated, use 'asn1_node' instead. 122 | extern ASN1_TYPE _kkdcp_pkix1_asn; | ^~~~~~~~~~~~~~~~~~~~~~ CC occtl/occtl-occtl.o In file included from worker-vpn.c:59: ./worker.h:122:13: warning: 'ASN1_TYPE' macro is deprecated, use 'asn1_node' instead. 122 | extern ASN1_TYPE _kkdcp_pkix1_asn; | ^~~~~~~~~~~~~~~~~~~~~~ CC occtl/occtl-pager.o CC occtl/occtl-time.o CC occtl/occtl-cache.o CC occtl/occtl-ip-cache.o CC occtl/occtl-nl.o CC occtl/occtl-print.o CC occtl/occtl-json.o CC occtl/occtl-hex.o CC occtl/occtl-unix.o CC occtl/occtl-session-cache.o CC occtl/occtl-maxmind.o CC common/libcommon_a-common.o CC common/libcommon_a-system.o CC common/libcommon_a-cloexec.o CC common/libcommon_a-base64-helper.o CC ccan/hash/libccan_a-hash.o CC ccan/htable/libccan_a-htable.o CC ccan/list/libccan_a-list.o AR libipc.a CC ocpasswd/ocpasswd-ocpasswd.o CC inih/ini.o CC sup-config/file.o CC sup-config/radius.o CC auth/common.o CC auth/gssapi.o CC auth/pam.o CC auth/plain.o CC auth/radius.o CC acct/radius.o CC acct/pam.o CC pcl/libpcl_a-pcl.o CC pcl/libpcl_a-pcl_version.o CC pcl/libpcl_a-pcl_private.o AR libcommon.a AR libccan.a CCLD ocpasswd/ocpasswd CCLD occtl/occtl AR libpcl.a CCLD ocserv CCLD ocserv-worker make[3]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6/src' make[2]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6/src' Making all in doc make[2]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6/doc' make[2]: Nothing to be done for 'all'. make[2]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6/doc' Making all in tests make[2]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6/tests' make[2]: Nothing to be done for 'all'. make[2]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6/tests' make[2]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6' make[2]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6' make[1]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6' + RPM_EC=0 ++ jobs -p + exit 0 Executing(%install): /bin/sh -e /var/tmp/rpm-tmp.986GoB + umask 022 + cd /builddir/build/BUILD + '[' /builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64 '!=' / ']' + rm -rf /builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64 ++ dirname /builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64 + mkdir -p /builddir/build/BUILDROOT + mkdir /builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64 + CFLAGS='-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -fasynchronous-unwind-tables -fstack-clash-protection' + export CFLAGS + CXXFLAGS='-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -fasynchronous-unwind-tables -fstack-clash-protection' + export CXXFLAGS + FFLAGS='-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -fasynchronous-unwind-tables -fstack-clash-protection -I/usr/lib64/gfortran/modules' + export FFLAGS + FCFLAGS='-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -fasynchronous-unwind-tables -fstack-clash-protection -I/usr/lib64/gfortran/modules' + export FCFLAGS + LDFLAGS='-Wl,-z,relro -Wl,--as-needed -Wl,-z,now -specs=/usr/lib/rpm/redhat/redhat-hardened-ld -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -Wl,--build-id=sha1 -specs=/usr/lib/rpm/redhat/redhat-package-notes' + export LDFLAGS + LT_SYS_LIBRARY_PATH=/usr/lib64: + export LT_SYS_LIBRARY_PATH + CC=gcc + export CC + CXX=g++ + export CXX + cd ocserv-1.1.6 + rm -rf /builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64 + cp -a /builddir/build/SOURCES/PACKAGE-LICENSING PACKAGE-LICENSING + mkdir -p /builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64//etc/pam.d/ + mkdir -p /builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64//etc/ocserv/ + install -p -m 644 /builddir/build/SOURCES/ocserv-pamd.conf /builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64//etc/pam.d/ocserv + install -p -m 644 /builddir/build/SOURCES/ocserv.conf /builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64//etc/ocserv/ + mkdir -p /builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64/var/lib/ocserv/ + install -p -m 644 doc/profile.xml /builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64/var/lib/ocserv/ + mkdir -p /builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64//usr/sbin + install -p -m 755 /builddir/build/SOURCES/ocserv-genkey /builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64//usr/sbin + mkdir -p /builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64//usr/bin + install -p -m 755 /builddir/build/SOURCES/ocserv-script /builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64//usr/bin + mkdir -p /builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64//usr/lib/systemd/system + install -p -m 644 /builddir/build/SOURCES/ocserv.service /builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64//usr/lib/systemd/system + /usr/bin/make install DESTDIR=/builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64 'INSTALL=/usr/bin/install -p' Making install in gl make[1]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6/gl' /usr/bin/make install-recursive make[2]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6/gl' make[3]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6/gl' make[4]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6/gl' make[4]: Nothing to be done for 'install-exec-am'. make[4]: Nothing to be done for 'install-data-am'. make[4]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6/gl' make[3]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6/gl' make[2]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6/gl' make[1]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6/gl' Making install in src make[1]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6/src' /usr/bin/make install-am make[2]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6/src' make[3]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6/src' /usr/bin/mkdir -p '/builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64/usr/bin' /usr/bin/install -p occtl/occtl ocpasswd/ocpasswd '/builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64/usr/bin' /usr/bin/mkdir -p '/builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64/usr/bin' /usr/bin/install -p ocserv-fw '/builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64/usr/bin' /usr/bin/mkdir -p '/builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64/usr/sbin' /usr/bin/install -p ocserv ocserv-worker '/builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64/usr/sbin' make[3]: Nothing to be done for 'install-data-am'. make[3]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6/src' make[2]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6/src' make[1]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6/src' Making install in doc make[1]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6/doc' make[2]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6/doc' make[2]: Nothing to be done for 'install-exec-am'. /usr/bin/mkdir -p '/builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64/usr/share/man/man8' /usr/bin/install -p -m 644 ocserv.8 ocpasswd.8 occtl.8 '/builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64/usr/share/man/man8' make[2]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6/doc' make[1]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6/doc' Making install in tests make[1]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6/tests' make[2]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6/tests' make[2]: Nothing to be done for 'install-exec-am'. make[2]: Nothing to be done for 'install-data-am'. make[2]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6/tests' make[1]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6/tests' make[1]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6' make[2]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6' make[2]: Nothing to be done for 'install-exec-am'. make[2]: Nothing to be done for 'install-data-am'. make[2]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6' make[1]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6' + /usr/bin/find-debuginfo -j4 --strict-build-id -m -i --build-id-seed 1.1.6-2.0.riscv64.fc37 --unique-debug-suffix -1.1.6-2.0.riscv64.fc37.riscv64 --unique-debug-src-base ocserv-1.1.6-2.0.riscv64.fc37.riscv64 --run-dwz --dwz-low-mem-die-limit 10000000 --dwz-max-die-limit 50000000 -S debugsourcefiles.list /builddir/build/BUILD/ocserv-1.1.6 extracting debug info from /builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64/usr/bin/ocpasswd extracting debug info from /builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64/usr/bin/occtl extracting debug info from /builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64/usr/sbin/ocserv extracting debug info from /builddir/build/BUILDROOT/ocserv-1.1.6-2.0.riscv64.fc37.riscv64/usr/sbin/ocserv-worker original debug info size: 7880kB, size after compression: 7228kB /usr/bin/sepdebugcrcfix: Updated 4 CRC32s, 0 CRC32s did match. 2525 blocks + /usr/lib/rpm/check-buildroot + /usr/lib/rpm/redhat/brp-ldconfig + /usr/lib/rpm/brp-compress + /usr/lib/rpm/redhat/brp-strip-lto /usr/bin/strip + /usr/lib/rpm/brp-strip-static-archive /usr/bin/strip + /usr/lib/rpm/check-rpaths + /usr/lib/rpm/redhat/brp-mangle-shebangs mangling shebang in /usr/bin/ocserv-script from /bin/sh to #!/usr/bin/sh mangling shebang in /usr/bin/ocserv-fw from /bin/sh to #!/usr/bin/sh mangling shebang in /usr/sbin/ocserv-genkey from /bin/sh to #!/usr/bin/sh + /usr/lib/rpm/brp-remove-la-files + /usr/lib/rpm/redhat/brp-python-bytecompile '' 1 0 + /usr/lib/rpm/redhat/brp-python-hardlink Executing(%check): /bin/sh -e /var/tmp/rpm-tmp.l4behY + umask 022 + cd /builddir/build/BUILD + CFLAGS='-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -fasynchronous-unwind-tables -fstack-clash-protection' + export CFLAGS + CXXFLAGS='-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -fasynchronous-unwind-tables -fstack-clash-protection' + export CXXFLAGS + FFLAGS='-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -fasynchronous-unwind-tables -fstack-clash-protection -I/usr/lib64/gfortran/modules' + export FFLAGS + FCFLAGS='-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -fasynchronous-unwind-tables -fstack-clash-protection -I/usr/lib64/gfortran/modules' + export FCFLAGS + LDFLAGS='-Wl,-z,relro -Wl,--as-needed -Wl,-z,now -specs=/usr/lib/rpm/redhat/redhat-hardened-ld -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -Wl,--build-id=sha1 -specs=/usr/lib/rpm/redhat/redhat-package-notes' + export LDFLAGS + LT_SYS_LIBRARY_PATH=/usr/lib64: + export LT_SYS_LIBRARY_PATH + CC=gcc + export CC + CXX=g++ + export CXX + cd ocserv-1.1.6 + make check -j4 VERBOSE=1 Making check in gl make[1]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6/gl' make check-recursive make[2]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6/gl' make[3]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6/gl' make[3]: Nothing to be done for 'check-am'. make[3]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6/gl' make[2]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6/gl' make[1]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6/gl' Making check in src make[1]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6/src' make check-am make[2]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6/src' make[2]: Nothing to be done for 'check-am'. make[2]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6/src' make[1]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6/src' Making check in doc make[1]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6/doc' make[1]: Nothing to be done for 'check'. make[1]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6/doc' Making check in tests make[1]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6/tests' make str-test str-test2 ipv4-prefix ipv6-prefix kkdcp-parsing json-escape ban-ips port-parsing human_addr valid-hostname url-escape html-escape cstp-recv proxyproto-v1 \ ocpasswd-test server-cert-ed25519 server-cert-rsa-pss haproxy-connect test-iroute test-multi-cookie test-pass-script test-cookie-timeout test-cookie-timeout-2 test-explicit-ip test-cookie-invalidation test-user-config test-append-routes test-ban multiple-routes json test-udp-listen-host test-max-same-1 test-script-multi-user apple-ios ipv6-iface test-namespace-listen disconnect-user disconnect-user2 ping-leases test-ban-local test-client-bypass-protocol ipv6-small-net radius-group radius-otp traffic lz4-compression lzs-compression aes256-cipher aes128-cipher oc-aes256-gcm-cipher oc-aes128-gcm-cipher test-config-per-group ac-aes128-gcm-cipher ac-aes256-gcm-cipher no-dtls-cipher psk-negotiate psk-negotiate-match test-multiple-client-ip radius radius-config test-pass test-pass-cert test-cert test-group-pass test-pass-group-cert test-pass-group-cert-no-pass test-sighup test-enc-key test-sighup-key-change test-get-cert test-san-cert test-gssapi test-pass-opt-cert test-cert-opt-pass test-gssapi-opt-pass test-gssapi-opt-cert haproxy-auth test-maintenance resumption test-group-name flowcontrol banner invalid-configs haproxy-proxyproto haproxy-proxyproto-v1 drain-server drain-server-fail test-otp-cert test-otp no-route-default no-route-group test-owasp-headers test-replay make[2]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6/tests' CC str-test.o CC str-test2.o CC ipv4-prefix.o CC ipv6-prefix.o CC kkdcp-parsing.o CC json-escape.o CC ban_ips-ban-ips.o CC port-parsing.o CC human_addr-human_addr.o CC valid-hostname.o CC url-escape.o CC html-escape.o CC cstp_recv-cstp-recv.o In file included from ../src/tlslib.c:44, from cstp-recv.c:37: ../src/worker.h:122:13: warning: 'ASN1_TYPE' macro is deprecated, use 'asn1_node' instead. 122 | extern ASN1_TYPE _kkdcp_pkix1_asn; | ^~~~~~~~~~~~~~~~~~~~~~ ../src/tlslib.c:54:13: warning: 'tls_reload_ocsp' declared 'static' but never defined [-Wunused-function] 54 | static void tls_reload_ocsp(main_server_st* s, struct vhost_cfg_st *vhost); | ^~~~~~~~~~~~~~~ ../src/tlslib.c:644:13: warning: 'set_dh_params' defined but not used [-Wunused-function] 644 | static void set_dh_params(main_server_st* s, struct vhost_cfg_st *vhost) | ^~~~~~~~~~~~~ ../src/tlslib.c:578:13: warning: 'certificate_check' defined but not used [-Wunused-function] 578 | static void certificate_check(main_server_st *s, const char *vhostname, gnutls_pcert_st *pcert) | ^~~~~~~~~~~~~~~~~ ../src/tlslib.c:458:12: warning: 'verify_certificate_cb' defined but not used [-Wunused-function] 458 | static int verify_certificate_cb(gnutls_session_t session) | ^~~~~~~~~~~~~~~~~~~~~ ../src/tlslib.c:438:13: warning: 'tls_log_func' defined but not used [-Wunused-function] 438 | static void tls_log_func(int level, const char *str) | ^~~~~~~~~~~~ make[2]: Nothing to be done for 'ocpasswd-test'. make[2]: Nothing to be done for 'server-cert-ed25519'. make[2]: Nothing to be done for 'server-cert-rsa-pss'. make[2]: Nothing to be done for 'haproxy-connect'. make[2]: Nothing to be done for 'test-iroute'. make[2]: Nothing to be done for 'test-multi-cookie'. make[2]: Nothing to be done for 'test-pass-script'. make[2]: Nothing to be done for 'test-cookie-timeout'. make[2]: Nothing to be done for 'test-cookie-timeout-2'. make[2]: Nothing to be done for 'test-explicit-ip'. make[2]: Nothing to be done for 'test-cookie-invalidation'. make[2]: Nothing to be done for 'test-user-config'. make[2]: Nothing to be done for 'test-append-routes'. make[2]: Nothing to be done for 'test-ban'. make[2]: Nothing to be done for 'multiple-routes'. make[2]: Nothing to be done for 'json'. make[2]: Nothing to be done for 'test-udp-listen-host'. make[2]: Nothing to be done for 'test-max-same-1'. make[2]: Nothing to be done for 'test-script-multi-user'. make[2]: Nothing to be done for 'apple-ios'. make[2]: Nothing to be done for 'ipv6-iface'. make[2]: Nothing to be done for 'test-namespace-listen'. make[2]: Nothing to be done for 'disconnect-user'. make[2]: Nothing to be done for 'disconnect-user2'. make[2]: Nothing to be done for 'ping-leases'. make[2]: Nothing to be done for 'test-ban-local'. make[2]: Nothing to be done for 'test-client-bypass-protocol'. make[2]: Nothing to be done for 'ipv6-small-net'. make[2]: Nothing to be done for 'radius-group'. make[2]: Nothing to be done for 'radius-otp'. make[2]: Nothing to be done for 'traffic'. make[2]: Nothing to be done for 'lz4-compression'. make[2]: Nothing to be done for 'lzs-compression'. make[2]: Nothing to be done for 'aes256-cipher'. make[2]: Nothing to be done for 'aes128-cipher'. make[2]: Nothing to be done for 'oc-aes256-gcm-cipher'. make[2]: Nothing to be done for 'oc-aes128-gcm-cipher'. make[2]: Nothing to be done for 'test-config-per-group'. make[2]: Nothing to be done for 'ac-aes128-gcm-cipher'. make[2]: Nothing to be done for 'ac-aes256-gcm-cipher'. make[2]: Nothing to be done for 'no-dtls-cipher'. make[2]: Nothing to be done for 'psk-negotiate'. make[2]: Nothing to be done for 'psk-negotiate-match'. CC proxyproto-v1.o make[2]: Nothing to be done for 'test-multiple-client-ip'. make[2]: Nothing to be done for 'radius'. make[2]: Nothing to be done for 'radius-config'. make[2]: Nothing to be done for 'test-pass'. make[2]: Nothing to be done for 'test-pass-cert'. make[2]: Nothing to be done for 'test-cert'. make[2]: Nothing to be done for 'test-group-pass'. make[2]: Nothing to be done for 'test-pass-group-cert'. make[2]: Nothing to be done for 'test-pass-group-cert-no-pass'. make[2]: Nothing to be done for 'test-sighup'. make[2]: Nothing to be done for 'test-enc-key'. make[2]: Nothing to be done for 'test-sighup-key-change'. make[2]: Nothing to be done for 'test-get-cert'. make[2]: Nothing to be done for 'test-san-cert'. make[2]: Nothing to be done for 'test-gssapi'. make[2]: Nothing to be done for 'test-pass-opt-cert'. make[2]: Nothing to be done for 'test-cert-opt-pass'. make[2]: Nothing to be done for 'test-gssapi-opt-pass'. make[2]: Nothing to be done for 'test-gssapi-opt-cert'. make[2]: Nothing to be done for 'haproxy-auth'. make[2]: Nothing to be done for 'test-maintenance'. make[2]: Nothing to be done for 'resumption'. make[2]: Nothing to be done for 'test-group-name'. make[2]: Nothing to be done for 'flowcontrol'. make[2]: Nothing to be done for 'banner'. make[2]: Nothing to be done for 'invalid-configs'. make[2]: Nothing to be done for 'haproxy-proxyproto'. make[2]: Nothing to be done for 'haproxy-proxyproto-v1'. make[2]: Nothing to be done for 'drain-server'. make[2]: Nothing to be done for 'drain-server-fail'. make[2]: Nothing to be done for 'test-otp-cert'. make[2]: Nothing to be done for 'test-otp'. make[2]: Nothing to be done for 'no-route-default'. make[2]: Nothing to be done for 'no-route-group'. make[2]: Nothing to be done for 'test-owasp-headers'. make[2]: Nothing to be done for 'test-replay'. CCLD str-test CCLD str-test2 In file included from ../src/worker-proxyproto.c:28, from proxyproto-v1.c:36: ../src/worker.h:122:13: warning: 'ASN1_TYPE' macro is deprecated, use 'asn1_node' instead. 122 | extern ASN1_TYPE _kkdcp_pkix1_asn; | ^~~~~~~~~~~~~~~~~~~~~~ CCLD ipv4-prefix CCLD ipv6-prefix CCLD kkdcp-parsing CCLD json-escape CCLD ban-ips CCLD port-parsing CCLD human_addr CCLD valid-hostname CCLD url-escape CCLD html-escape CCLD cstp-recv CCLD proxyproto-v1 make[2]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6/tests' make check-TESTS make[2]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6/tests' make[3]: Entering directory '/builddir/build/BUILD/ocserv-1.1.6/tests' PASS: str-test2 PASS: str-test PASS: ipv6-prefix PASS: ipv4-prefix PASS: kkdcp-parsing PASS: port-parsing PASS: json-escape PASS: human_addr PASS: valid-hostname PASS: url-escape PASS: html-escape PASS: proxyproto-v1 PASS: ocpasswd-test PASS: cstp-recv SKIP: haproxy-connect SKIP: test-iroute SKIP: test-multi-cookie SKIP: test-pass-script SKIP: test-cookie-timeout SKIP: test-cookie-timeout-2 SKIP: test-explicit-ip SKIP: test-cookie-invalidation SKIP: test-user-config SKIP: test-append-routes SKIP: test-ban SKIP: multiple-routes SKIP: json SKIP: test-udp-listen-host SKIP: test-max-same-1 SKIP: test-script-multi-user SKIP: apple-ios SKIP: ipv6-iface SKIP: test-namespace-listen SKIP: disconnect-user SKIP: disconnect-user2 SKIP: ping-leases SKIP: test-ban-local SKIP: test-client-bypass-protocol SKIP: ipv6-small-net SKIP: radius-group SKIP: radius-otp SKIP: traffic SKIP: lz4-compression SKIP: lzs-compression SKIP: aes256-cipher SKIP: aes128-cipher SKIP: oc-aes256-gcm-cipher SKIP: oc-aes128-gcm-cipher SKIP: test-config-per-group SKIP: ac-aes128-gcm-cipher SKIP: ac-aes256-gcm-cipher SKIP: no-dtls-cipher SKIP: psk-negotiate SKIP: psk-negotiate-match FAIL: server-cert-ed25519 SKIP: test-multiple-client-ip SKIP: radius SKIP: radius-config FAIL: server-cert-rsa-pss FAIL: test-pass FAIL: test-cert PASS: test-pass-cert FAIL: test-group-pass FAIL: test-pass-group-cert FAIL: test-pass-group-cert-no-pass FAIL: test-sighup FAIL: test-enc-key FAIL: test-sighup-key-change SKIP: test-gssapi FAIL: test-get-cert FAIL: test-pass-opt-cert SKIP: test-gssapi-opt-pass SKIP: test-gssapi-opt-cert SKIP: haproxy-auth FAIL: test-cert-opt-pass FAIL: test-san-cert FAIL: test-maintenance FAIL: resumption FAIL: test-group-name PASS: invalid-configs SKIP: haproxy-proxyproto SKIP: haproxy-proxyproto-v1 FAIL: flowcontrol SKIP: drain-server-fail FAIL: drain-server FAIL: banner SKIP: no-route-default SKIP: no-route-group FAIL: test-otp-cert SKIP: test-replay FAIL: test-owasp-headers FAIL: test-otp PASS: ban-ips ======================================== ocserv 1.1.6: tests/test-suite.log ======================================== # TOTAL: 93 # PASS: 17 # SKIP: 53 # XFAIL: 0 # FAIL: 23 # XPASS: 0 # ERROR: 0 .. contents:: :depth: 2 FAIL: server-cert-ed25519 ========================= Testing server cert with ed25519... warning: skipping unknown option 'cookie-validity' Parsing plain auth method subconfig using legacy format note: vhost:default: setting 'plain' as primary authentication method note: setting 'file' as supplemental config option listening (TCP) on 0.0.0.0:37284... listening (TCP) on [::]:37284... listening (UDP) on 0.0.0.0:37284... listening (UDP) on [::]:37284... ocserv[33524]: main: Starting 1 instances of ocserv-sm ocserv[33524]: main: created sec-mod socket file (./ocserv-socket.a06e7946.0) ocserv[33524]: main: not using control unix socket ocserv[33524]: main: initialized ocserv 1.1.6 ocserv[33546]: sec-mod: reading supplemental config from files ocserv[33546]: sec-mod: loaded 1 keys ocserv[33546]: sec-mod: sec-mod initialized (socket: ./ocserv-socket.a06e7946.0) Connecting to obtain cookie... warning: skipping unknown option 'cookie-validity' Parsing plain auth method subconfig using legacy format note: vhost:default: setting 'plain' as primary authentication method note: setting 'file' as supplemental config option ocserv[33951]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (33951)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.33495.tmp - Function not implemented SSL connection failure: Error in the pull function. Failed to open HTTPS connection to 127.0.0.2 Failed to obtain WebVPN cookie ocserv[33524]: main:127.0.0.2:43921 worker terminated ocserv[33524]: main:127.0.0.2:43921 user disconnected (reason: unspecified, rx: 0, tx: 0) Failure: Could not receive cookie from server ocserv[33524]: main: termination request received; waiting for sessions to die FAIL server-cert-ed25519 (exit status: 1) FAIL: server-cert-rsa-pss ========================= Testing server cert with RSA-PSS... warning: skipping unknown option 'cookie-validity' Parsing plain auth method subconfig using legacy format note: vhost:default: setting 'plain' as primary authentication method note: setting 'file' as supplemental config option listening (TCP) on 0.0.0.0:2876... listening (TCP) on [::]:2876... listening (UDP) on 0.0.0.0:2876... listening (UDP) on [::]:2876... ocserv[33544]: main: Starting 1 instances of ocserv-sm ocserv[33544]: main: created sec-mod socket file (./ocserv-socket.be7c0e4c.0) ocserv[33544]: main: not using control unix socket ocserv[33544]: main: initialized ocserv 1.1.6 ocserv[33550]: sec-mod: reading supplemental config from files ocserv[33550]: sec-mod: loaded 1 keys ocserv[33550]: sec-mod: sec-mod initialized (socket: ./ocserv-socket.be7c0e4c.0) Connecting to obtain cookie... warning: skipping unknown option 'cookie-validity' Parsing plain auth method subconfig using legacy format note: vhost:default: setting 'plain' as primary authentication method ocserv[33550]: sec-mod: received request from pid 34005 and uid 991 ocserv[33550]: sec-mod: cmd [size=38] sm: sign hash note: setting 'file' as supplemental config option ocserv[34005]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34005)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.33526.tmp - Function not implemented SSL connection failure: Error in the pull function. Failed to open HTTPS connection to 127.0.0.2 Failed to obtain WebVPN cookie ocserv[33544]: main:127.0.0.2:43950 worker terminated ocserv[33544]: main:127.0.0.2:43950 user disconnected (reason: unspecified, rx: 0, tx: 0) Failure: Could not receive cookie from server FAIL server-cert-rsa-pss (exit status: 1) ocserv[33544]: main: termination request received; waiting for sessions to die SKIP: haproxy-connect ===================== which: no haproxy in (/usr/bin:/bin:/usr/sbin:/sbin:/usr/local/sbin:/usr/sbin) You need to run this script as root SKIP haproxy-connect (exit status: 77) SKIP: test-iroute ================= You need to run this script as root SKIP test-iroute (exit status: 77) SKIP: test-multi-cookie ======================= You need to run this script as root SKIP test-multi-cookie (exit status: 77) SKIP: test-pass-script ====================== You need to run this script as root SKIP test-pass-script (exit status: 77) SKIP: test-cookie-timeout ========================= You need to run this script as root SKIP test-cookie-timeout (exit status: 77) SKIP: test-cookie-timeout-2 =========================== You need to run this script as root SKIP test-cookie-timeout-2 (exit status: 77) SKIP: test-explicit-ip ====================== You need to run this script as root SKIP test-explicit-ip (exit status: 77) SKIP: test-cookie-invalidation ============================== You need to run this script as root SKIP test-cookie-invalidation (exit status: 77) SKIP: test-user-config ====================== You need to run this script as root SKIP test-user-config (exit status: 77) SKIP: test-append-routes ======================== You need to run this script as root SKIP test-append-routes (exit status: 77) SKIP: test-ban ============== You need to run this script as root SKIP test-ban (exit status: 77) SKIP: multiple-routes ===================== You need to run this script as root SKIP multiple-routes (exit status: 77) SKIP: json ========== You need to run this script as root SKIP json (exit status: 77) SKIP: test-udp-listen-host ========================== You need to run this script as root SKIP test-udp-listen-host (exit status: 77) SKIP: test-max-same-1 ===================== You need to run this script as root SKIP test-max-same-1 (exit status: 77) SKIP: test-script-multi-user ============================ You need to run this script as root SKIP test-script-multi-user (exit status: 77) SKIP: apple-ios =============== You need to run this script as root SKIP apple-ios (exit status: 77) SKIP: ipv6-iface ================ You need to run this script as root SKIP ipv6-iface (exit status: 77) SKIP: test-namespace-listen =========================== You need to run this script as root * Cleaning up... SKIP test-namespace-listen (exit status: 77) SKIP: disconnect-user ===================== You need to run this script as root SKIP disconnect-user (exit status: 77) SKIP: disconnect-user2 ====================== You need to run this script as root SKIP disconnect-user2 (exit status: 77) SKIP: ping-leases ================= You need to run this script as root SKIP ping-leases (exit status: 77) SKIP: test-ban-local ==================== You need to run this script as root SKIP test-ban-local (exit status: 77) SKIP: test-client-bypass-protocol ================================= You need to run this script as root SKIP test-client-bypass-protocol (exit status: 77) SKIP: ipv6-small-net ==================== You need to run this script as root SKIP ipv6-small-net (exit status: 77) SKIP: radius-group ================== which: no radiusd in (/usr/bin:/bin:/usr/sbin:/sbin:/usr/local/sbin:/usr/sbin) which: no freeradius in (/usr/bin:/bin:/usr/sbin:/sbin:/usr/local/sbin:/usr/sbin) You need to run this script as root SKIP radius-group (exit status: 77) SKIP: radius-otp ================ which: no radiusd in (/usr/bin:/bin:/usr/sbin:/sbin:/usr/local/sbin:/usr/sbin) which: no freeradius in (/usr/bin:/bin:/usr/sbin:/sbin:/usr/local/sbin:/usr/sbin) You need to run this script as root SKIP radius-otp (exit status: 77) SKIP: traffic ============= You need to run this script as root SKIP traffic (exit status: 77) SKIP: lz4-compression ===================== You need to run this script as root SKIP lz4-compression (exit status: 77) SKIP: lzs-compression ===================== You need to run this script as root SKIP lzs-compression (exit status: 77) SKIP: aes256-cipher =================== You need to run this script as root SKIP aes256-cipher (exit status: 77) SKIP: aes128-cipher =================== You need to run this script as root SKIP aes128-cipher (exit status: 77) SKIP: oc-aes256-gcm-cipher ========================== You need to run this script as root SKIP oc-aes256-gcm-cipher (exit status: 77) SKIP: oc-aes128-gcm-cipher ========================== You need to run this script as root SKIP oc-aes128-gcm-cipher (exit status: 77) SKIP: test-config-per-group =========================== You need to run this script as root SKIP test-config-per-group (exit status: 77) SKIP: ac-aes128-gcm-cipher ========================== SKIP ac-aes128-gcm-cipher (exit status: 77) SKIP: ac-aes256-gcm-cipher ========================== SKIP ac-aes256-gcm-cipher (exit status: 77) SKIP: no-dtls-cipher ==================== You need to run this script as root SKIP no-dtls-cipher (exit status: 77) SKIP: psk-negotiate =================== You need to run this script as root SKIP psk-negotiate (exit status: 77) SKIP: psk-negotiate-match ========================= You need to run this script as root SKIP psk-negotiate-match (exit status: 77) SKIP: test-multiple-client-ip ============================= You need to run this script as root SKIP test-multiple-client-ip (exit status: 77) SKIP: radius ============ which: no radiusd in (/usr/bin:/bin:/usr/sbin:/sbin:/usr/local/sbin:/usr/sbin) which: no freeradius in (/usr/bin:/bin:/usr/sbin:/sbin:/usr/local/sbin:/usr/sbin) You need to run this script as root SKIP radius (exit status: 77) SKIP: radius-config =================== which: no radiusd in (/usr/bin:/bin:/usr/sbin:/sbin:/usr/local/sbin:/usr/sbin) which: no freeradius in (/usr/bin:/bin:/usr/sbin:/sbin:/usr/local/sbin:/usr/sbin) You need to run this script as root SKIP radius-config (exit status: 77) FAIL: test-pass =============== Testing local backend with username-password... Parsing plain auth method subconfig using legacy format note: vhost:default: setting 'plain' as primary authentication method note: setting 'file' as supplemental config option listening (TCP) on 0.0.0.0:26001... listening (TCP) on [::]:26001... listening (UDP) on 0.0.0.0:26001... listening (UDP) on [::]:26001... ocserv[34025]: main: Starting 1 instances of ocserv-sm ocserv[34025]: main: created sec-mod socket file (./ocserv-socket.516fa19a.0) ocserv[34025]: main: not using control unix socket ocserv[34025]: main: initialized ocserv 1.1.6 ocserv[34042]: sec-mod: reading supplemental config from files ocserv[34042]: sec-mod: loaded 1 keys ocserv[34042]: sec-mod: sec-mod initialized (socket: ./ocserv-socket.516fa19a.0) Connecting to obtain cookie... Parsing plain auth method subconfig using legacy format note: vhost:default: setting 'plain' as primary authentication method ocserv[34042]: sec-mod: received request from pid 34105 and uid 991 ocserv[34042]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34105]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34105)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.33991.tmp - Function not implemented SSL connection failure: Error in the pull function. Failed to open HTTPS connection to 127.0.0.2 Failed to obtain WebVPN cookie ocserv[34025]: main:127.0.0.2:44094 worker terminated ocserv[34025]: main:127.0.0.2:44094 user disconnected (reason: unspecified, rx: 0, tx: 0) Failure: Could not receive cookie from server ocserv[34025]: main: termination request received; waiting for sessions to die FAIL test-pass (exit status: 1) FAIL: test-cert =============== Testing ocserv with certificates... warning: skipping unknown option 'cookie-validity' note: vhost:default: setting 'certificate' as primary authentication method note: setting 'file' as supplemental config option listening (TCP) on 0.0.0.0:37861... listening (TCP) on [::]:37861... listening (UDP) on 0.0.0.0:37861... listening (UDP) on [::]:37861... ocserv[34057]: main: Starting 1 instances of ocserv-sm ocserv[34057]: main: created sec-mod socket file (./ocserv-socket.48ed4aa1.0) ocserv[34057]: main: not using control unix socket ocserv[34057]: main: initialized ocserv 1.1.6 ocserv[34059]: sec-mod: reading supplemental config from files ocserv[34059]: sec-mod: loaded 1 keys ocserv[34059]: sec-mod: sec-mod initialized (socket: ./ocserv-socket.48ed4aa1.0) Connecting to obtain cookie (without certificate)... ocserv[34057]: main: Not applying ban to local IP: 127.0.0.2 warning: skipping unknown option 'cookie-validity' note: vhost:default: setting 'certificate' as primary authentication method ocserv[34059]: sec-mod: received request from pid 34131 and uid 991 ocserv[34059]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34131]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34131)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34039.tmp - Function not implemented ocserv[34057]: main:127.0.0.2:44112 worker terminated ocserv[34057]: main:127.0.0.2:44112 user disconnected (reason: unspecified, rx: 0, tx: 0) ok (failed as expected) Connecting to obtain cookie (with invalid certificate)... ocserv[34057]: main: Not applying ban to local IP: 127.0.0.2 warning: skipping unknown option 'cookie-validity' note: vhost:default: setting 'certificate' as primary authentication method ocserv[34059]: sec-mod: received request from pid 34139 and uid 991 ocserv[34059]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34139]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34139)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34039.tmp - Function not implemented ocserv[34057]: main:127.0.0.2:44138 worker terminated ocserv[34057]: main:127.0.0.2:44138 user disconnected (reason: unspecified, rx: 0, tx: 0) ok (failed as expected) Connecting to obtain cookie (with certificate)... ocserv[34057]: main: Not applying ban to local IP: 127.0.0.2 warning: skipping unknown option 'cookie-validity' note: vhost:default: setting 'certificate' as primary authentication method ocserv[34059]: sec-mod: received request from pid 34147 and uid 991 ocserv[34059]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34147]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34147)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34039.tmp - Function not implemented ocserv[34057]: main:127.0.0.2:44142 worker terminated ocserv[34057]: main:127.0.0.2:44142 user disconnected (reason: unspecified, rx: 0, tx: 0) Failure: Could not connect with certificate! ocserv[34057]: main: termination request received; waiting for sessions to die FAIL test-cert (exit status: 1) FAIL: test-group-pass ===================== Testing local backend with username-group-password... warning: skipping unknown option 'cookie-validity' Parsing plain auth method subconfig using legacy format note: vhost:default: setting 'plain' as primary authentication method note: setting 'file' as supplemental config option listening (TCP) on 0.0.0.0:4016... listening (TCP) on [::]:4016... listening (UDP) on 0.0.0.0:4016... listening (UDP) on [::]:4016... ocserv[34134]: main: Starting 1 instances of ocserv-sm ocserv[34134]: main: created sec-mod socket file (./ocserv-socket.5e3dc7e3.0) ocserv[34134]: main: not using control unix socket ocserv[34134]: main: initialized ocserv 1.1.6 ocserv[34136]: sec-mod: reading supplemental config from files ocserv[34136]: sec-mod: loaded 1 keys ocserv[34136]: sec-mod: sec-mod initialized (socket: ./ocserv-socket.5e3dc7e3.0) Connecting to obtain cookie... ocserv[34134]: main: Not applying ban to local IP: 127.0.0.2 warning: skipping unknown option 'cookie-validity' Parsing plain auth method subconfig using legacy format note: vhost:default: setting 'plain' as primary authentication method ocserv[34136]: sec-mod: received request from pid 34218 and uid 991 ocserv[34136]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34218]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34218)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34113.tmp - Function not implemented ocserv[34134]: main:127.0.0.2:44214 worker terminated ocserv[34134]: main:127.0.0.2:44214 user disconnected (reason: unspecified, rx: 0, tx: 0) Failure: Could not receive cookie from server FAIL test-group-pass (exit status: 1) ocserv[34134]: main: termination request received; waiting for sessions to die FAIL: test-pass-group-cert ========================== Testing local backend with username-password and certificate... warning: skipping unknown option 'cookie-validity' Parsing plain auth method subconfig using legacy format note: vhost:default: setting 'certificate+plain' as primary authentication method note: setting 'file' as supplemental config option listening (TCP) on 0.0.0.0:9069... listening (TCP) on [::]:9069... listening (UDP) on 0.0.0.0:9069... listening (UDP) on [::]:9069... ocserv[34182]: main: Starting 1 instances of ocserv-sm ocserv[34182]: main: created sec-mod socket file (./ocserv-socket.3d469cb4.0) ocserv[34182]: main: not using control unix socket ocserv[34182]: main: initialized ocserv 1.1.6 ocserv[34193]: sec-mod: reading supplemental config from files ocserv[34193]: sec-mod: loaded 1 keys ocserv[34193]: sec-mod: sec-mod initialized (socket: ./ocserv-socket.3d469cb4.0) Connecting to obtain cookie (without certificate)... ocserv[34182]: main: Not applying ban to local IP: 127.0.0.2 warning: skipping unknown option 'cookie-validity' Parsing plain auth method subconfig using legacy format note: vhost:default: setting 'certificate+plain' as primary authentication method ocserv[34193]: sec-mod: received request from pid 34252 and uid 991 ocserv[34193]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34252]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34252)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34153.tmp - Function not implemented ocserv[34182]: main:127.0.0.2:44249 worker terminated ocserv[34182]: main:127.0.0.2:44249 user disconnected (reason: unspecified, rx: 0, tx: 0) ok Connecting to obtain cookie - group1 (with certificate)... ocserv[34182]: main: Not applying ban to local IP: 127.0.0.2 warning: skipping unknown option 'cookie-validity' Parsing plain auth method subconfig using legacy format note: vhost:default: setting 'certificate+plain' as primary authentication method ocserv[34193]: sec-mod: received request from pid 34264 and uid 991 ocserv[34193]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34264]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34264)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34153.tmp - Function not implemented ocserv[34182]: main:127.0.0.2:44262 worker terminated ocserv[34182]: main:127.0.0.2:44262 user disconnected (reason: unspecified, rx: 0, tx: 0) Failure: Could not connect with certificate! ocserv[34182]: main: termination request received; waiting for sessions to die FAIL test-pass-group-cert (exit status: 1) FAIL: test-pass-group-cert-no-pass ================================== Testing local backend with username-password and certificate... warning: skipping unknown option 'cookie-validity' note: vhost:default: setting 'certificate' as primary authentication method note: setting 'file' as supplemental config option listening (TCP) on 0.0.0.0:9918... listening (TCP) on [::]:9918... listening (UDP) on 0.0.0.0:9918... listening (UDP) on [::]:9918... ocserv[34191]: main: Starting 1 instances of ocserv-sm ocserv[34191]: main: created sec-mod socket file (./ocserv-socket.93413406.0) ocserv[34191]: main: not using control unix socket ocserv[34191]: main: initialized ocserv 1.1.6 ocserv[34197]: sec-mod: reading supplemental config from files ocserv[34197]: sec-mod: loaded 1 keys ocserv[34197]: sec-mod: sec-mod initialized (socket: ./ocserv-socket.93413406.0) Connecting to obtain cookie (without certificate)... ocserv[34191]: main: Not applying ban to local IP: 127.0.0.2 warning: skipping unknown option 'cookie-validity' note: vhost:default: setting 'certificate' as primary authentication method ocserv[34197]: sec-mod: received request from pid 34258 and uid 991 ocserv[34197]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34258]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34258)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34173.tmp - Function not implemented ocserv[34191]: main:127.0.0.2:44250 worker terminated ocserv[34191]: main:127.0.0.2:44250 user disconnected (reason: unspecified, rx: 0, tx: 0) ok Connecting to obtain cookie - group1 (with certificate)... ocserv[34191]: main: Not applying ban to local IP: 127.0.0.2 warning: skipping unknown option 'cookie-validity' note: vhost:default: setting 'certificate' as primary authentication method ocserv[34197]: sec-mod: received request from pid 34265 and uid 991 ocserv[34197]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34265]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34265)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34173.tmp - Function not implemented ocserv[34191]: main:127.0.0.2:44263 worker terminated ocserv[34191]: main:127.0.0.2:44263 user disconnected (reason: unspecified, rx: 0, tx: 0) Failure: Could not connect with certificate! ocserv[34191]: main: termination request received; waiting for sessions to die FAIL test-pass-group-cert-no-pass (exit status: 1) FAIL: test-sighup ================= Testing ocserv and SIGHUP behavior... warning: skipping unknown option 'cookie-validity' note: vhost:default: setting 'certificate' as primary authentication method note: setting 'file' as supplemental config option listening (TCP) on 0.0.0.0:11689... listening (TCP) on [::]:11689... listening (UDP) on 0.0.0.0:11689... listening (UDP) on [::]:11689... ocserv[34237]: main: Starting 1 instances of ocserv-sm ocserv[34237]: main: created sec-mod socket file (./ocserv-socket.50315012.0) ocserv[34237]: main: not using control unix socket ocserv[34237]: main: initialized ocserv 1.1.6 ocserv[34239]: sec-mod: reading supplemental config from files ocserv[34239]: sec-mod: loaded 1 keys ocserv[34239]: sec-mod: sec-mod initialized (socket: ./ocserv-socket.50315012.0) Connecting to obtain cookie (with certificate)... ocserv[34237]: main: Not applying ban to local IP: 127.0.0.2 warning: skipping unknown option 'cookie-validity' note: vhost:default: setting 'certificate' as primary authentication method ocserv[34239]: sec-mod: received request from pid 34325 and uid 991 ocserv[34239]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34325]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34325)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34223.tmp - Function not implemented ocserv[34237]: main:127.0.0.2:44321 worker terminated ocserv[34237]: main:127.0.0.2:44321 user disconnected (reason: unspecified, rx: 0, tx: 0) Failure: Could not connect with certificate! FAIL test-sighup (exit status: 1) ocserv[34237]: main: termination request received; waiting for sessions to die FAIL: test-enc-key ================== Testing local backend with encrypted PKCS #8 key file... warning: skipping unknown option 'cookie-validity' Parsing plain auth method subconfig using legacy format note: vhost:default: setting 'plain' as primary authentication method note: setting 'file' as supplemental config option listening (TCP) on 0.0.0.0:41340... listening (TCP) on [::]:41340... listening (UDP) on 0.0.0.0:41340... listening (UDP) on [::]:41340... ocserv[34290]: main: Starting 1 instances of ocserv-sm ocserv[34290]: main: created sec-mod socket file (./ocserv-socket.d7e7bca4.0) ocserv[34290]: main: not using control unix socket ocserv[34290]: main: initialized ocserv 1.1.6 ocserv[34310]: sec-mod: reading supplemental config from files ocserv[34310]: sec-mod: loaded 1 keys ocserv[34310]: sec-mod: sec-mod initialized (socket: ./ocserv-socket.d7e7bca4.0) Connecting to obtain cookie... ocserv[34290]: main: Not applying ban to local IP: 127.0.0.2 warning: skipping unknown option 'key-pin' warning: skipping unknown option 'cookie-validity' Parsing plain auth method subconfig using legacy format note: vhost:default: setting 'plain' as primary authentication method ocserv[34310]: sec-mod: received request from pid 34365 and uid 991 ocserv[34310]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34365]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34365)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34270.tmp - Function not implemented ocserv[34290]: main:127.0.0.2:44359 worker terminated ocserv[34290]: main:127.0.0.2:44359 user disconnected (reason: unspecified, rx: 0, tx: 0) Failure: Could not receive cookie from server ocserv[34290]: main: termination request received; waiting for sessions to die FAIL test-enc-key (exit status: 1) FAIL: test-sighup-key-change ============================ Testing ocserv and SIGHUP behavior on server key change... warning: skipping unknown option 'cookie-validity' note: vhost:default: setting 'certificate' as primary authentication method note: setting 'file' as supplemental config option listening (TCP) on 0.0.0.0:28082... listening (TCP) on [::]:28082... listening (UDP) on 0.0.0.0:28082... listening (UDP) on [::]:28082... ocserv[34311]: main: Starting 1 instances of ocserv-sm ocserv[34311]: main: created sec-mod socket file (./ocserv-socket.aef0d494.0) ocserv[34311]: main: not using control unix socket ocserv[34311]: main: initialized ocserv 1.1.6 ocserv[34316]: sec-mod: reading supplemental config from files ocserv[34316]: sec-mod: loaded 1 keys ocserv[34316]: sec-mod: sec-mod initialized (socket: ./ocserv-socket.aef0d494.0) Connecting to obtain cookie (with certificate)... ocserv[34311]: main: Not applying ban to local IP: 127.0.0.2 warning: skipping unknown option 'cookie-validity' note: vhost:default: setting 'certificate' as primary authentication method ocserv[34316]: sec-mod: received request from pid 34369 and uid 991 ocserv[34316]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34369]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34369)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34288.tmp - Function not implemented ocserv[34311]: main:127.0.0.2:44364 worker terminated ocserv[34311]: main:127.0.0.2:44364 user disconnected (reason: unspecified, rx: 0, tx: 0) Failure: Could not connect with certificate! ocserv[34311]: main: termination request received; waiting for sessions to die FAIL test-sighup-key-change (exit status: 1) FAIL: test-get-cert =================== Testing ocserv certificate GET handlers... warning: skipping unknown option 'cookie-validity' Parsing plain auth method subconfig using legacy format note: vhost:default: setting 'certificate+plain' as primary authentication method note: setting 'file' as supplemental config option listening (TCP) on 0.0.0.0:63992... listening (TCP) on [::]:63992... listening (UDP) on 0.0.0.0:63992... listening (UDP) on [::]:63992... ocserv[34344]: main: Starting 1 instances of ocserv-sm ocserv[34344]: main: created sec-mod socket file (./ocserv-socket.708040b1.0) ocserv[34344]: main: not using control unix socket ocserv[34344]: main: initialized ocserv 1.1.6 ocserv[34349]: sec-mod: reading supplemental config from files ocserv[34349]: sec-mod: loaded 1 keys ocserv[34349]: sec-mod: sec-mod initialized (socket: ./ocserv-socket.708040b1.0) Connecting to GET PEM certificate... ocserv[34344]: main: Not applying ban to local IP: 127.0.0.2 warning: skipping unknown option 'cookie-validity' Parsing plain auth method subconfig using legacy format note: vhost:default: setting 'certificate+plain' as primary authentication method ocserv[34349]: sec-mod: received request from pid 34421 and uid 991 ocserv[34349]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34421]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34421)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34330.tmp - Function not implemented ocserv[34344]: main:127.0.0.2:44420 worker terminated ocserv[34344]: main:127.0.0.2:44420 user disconnected (reason: unspecified, rx: 0, tx: 0) Failure: Could not get certificate! FAIL test-get-cert (exit status: 1) ocserv[34344]: main: termination request received; waiting for sessions to die FAIL: test-san-cert =================== Testing ocserv with certificates... warning: skipping unknown option 'cookie-validity' note: vhost:default: setting 'certificate' as primary authentication method note: setting 'file' as supplemental config option listening (TCP) on 0.0.0.0:3361... listening (TCP) on [::]:3361... listening (UDP) on 0.0.0.0:3361... listening (UDP) on [::]:3361... ocserv[34400]: main: Starting 1 instances of ocserv-sm ocserv[34400]: main: created sec-mod socket file (./ocserv-socket.2d657ab5.0) ocserv[34400]: main: not using control unix socket ocserv[34400]: main: initialized ocserv 1.1.6 ocserv[34415]: sec-mod: reading supplemental config from files ocserv[34415]: sec-mod: loaded 1 keys ocserv[34415]: sec-mod: sec-mod initialized (socket: ./ocserv-socket.2d657ab5.0) Connecting to obtain cookie (without certificate)... ocserv[34400]: main: Not applying ban to local IP: 127.0.0.2 warning: skipping unknown option 'cookie-validity' note: vhost:default: setting 'certificate' as primary authentication method ocserv[34415]: sec-mod: received request from pid 34464 and uid 991 ocserv[34415]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34464]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34464)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34374.tmp - Function not implemented ocserv[34400]: main:127.0.0.2:44460 worker terminated ocserv[34400]: main:127.0.0.2:44460 user disconnected (reason: unspecified, rx: 0, tx: 0) ok (failed as expected) Connecting to obtain cookie (with invalid certificate)... ocserv[34400]: main: Not applying ban to local IP: 127.0.0.2 warning: skipping unknown option 'cookie-validity' note: vhost:default: setting 'certificate' as primary authentication method ocserv[34415]: sec-mod: received request from pid 34477 and uid 991 ocserv[34415]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34477]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34477)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34374.tmp - Function not implemented ocserv[34400]: main:127.0.0.2:44470 worker terminated ocserv[34400]: main:127.0.0.2:44470 user disconnected (reason: unspecified, rx: 0, tx: 0) ok (failed as expected) Connecting to obtain cookie (with certificate - no SAN)... ocserv[34400]: main: Not applying ban to local IP: 127.0.0.2 warning: skipping unknown option 'cookie-validity' note: vhost:default: setting 'certificate' as primary authentication method ocserv[34415]: sec-mod: received request from pid 34522 and uid 991 ocserv[34415]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34522]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34522)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34374.tmp - Function not implemented ocserv[34400]: main:127.0.0.2:44508 worker terminated ocserv[34400]: main:127.0.0.2:44508 user disconnected (reason: unspecified, rx: 0, tx: 0) ok (failed as expected) Connecting to obtain cookie (with certificate - SAN)... ocserv[34400]: main: Not applying ban to local IP: 127.0.0.2 warning: skipping unknown option 'cookie-validity' note: vhost:default: setting 'certificate' as primary authentication method ocserv[34415]: sec-mod: received request from pid 34538 and uid 991 ocserv[34415]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34538]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34538)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34374.tmp - Function not implemented ocserv[34400]: main:127.0.0.2:44534 worker terminated ocserv[34400]: main:127.0.0.2:44534 user disconnected (reason: unspecified, rx: 0, tx: 0) Failure: Failed to connect with certificate! ocserv[34400]: main: termination request received; waiting for sessions to die FAIL test-san-cert (exit status: 1) SKIP: test-gssapi ================= GSS NTLM SSP was not found SKIP test-gssapi (exit status: 77) FAIL: test-pass-opt-cert ======================== Testing local backend with username-password and optional certificate... warning: skipping unknown option 'cookie-validity' note: skipping 'pid-file' config option note: vhost:default: setting 'plain' as primary authentication method note: vhost:default: enabling 'certificate' as authentication method note: setting 'file' as supplemental config option listening (TCP) on 0.0.0.0:50346... listening (TCP) on [::]:50346... listening (UDP) on 0.0.0.0:50346... listening (UDP) on [::]:50346... ocserv[34417]: main: Starting 1 instances of ocserv-sm ocserv[34417]: main: created sec-mod socket file (./ocserv-socket.7917cf32.0) ocserv[34417]: main: not using control unix socket ocserv[34417]: main: initialized ocserv 1.1.6 ocserv[34419]: sec-mod: reading supplemental config from files ocserv[34419]: sec-mod: loaded 1 keys ocserv[34419]: sec-mod: sec-mod initialized (socket: ./ocserv-socket.7917cf32.0) Connecting to obtain cookie (user without certificate)... warning: skipping unknown option 'cookie-validity' note: skipping 'pid-file' config option note: vhost:default: setting 'plain' as primary authentication method note: vhost:default: enabling 'certificate' as authentication method ocserv[34419]: sec-mod: received request from pid 34468 and uid 991 ocserv[34419]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34468]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34468)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34399.tmp - Function not implemented ocserv[34417]: main:127.0.0.2:44463 worker terminated ocserv[34417]: main:127.0.0.2:44463 user disconnected (reason: unspecified, rx: 0, tx: 0) SSL connection failure: Error in the pull function. Failed to open HTTPS connection to 127.0.0.2 Failed to obtain WebVPN cookie Failure: Failed to connect with user without certificate! ocserv[34417]: main: termination request received; waiting for sessions to die FAIL test-pass-opt-cert (exit status: 1) FAIL: test-cert-opt-pass ======================== Testing local backend with certificate and optional username-password... warning: skipping unknown option 'cookie-validity' note: vhost:default: setting 'certificate' as primary authentication method note: vhost:default: enabling 'plain' as authentication method note: setting 'file' as supplemental config option listening (TCP) on 0.0.0.0:3965... listening (TCP) on [::]:3965... listening (UDP) on 0.0.0.0:3965... listening (UDP) on [::]:3965... ocserv[34447]: main: Starting 1 instances of ocserv-sm ocserv[34447]: main: created sec-mod socket file (./ocserv-socket.9d0f9f22.0) ocserv[34447]: main: not using control unix socket ocserv[34447]: main: initialized ocserv 1.1.6 ocserv[34449]: sec-mod: reading supplemental config from files ocserv[34449]: sec-mod: loaded 1 keys ocserv[34449]: sec-mod: sec-mod initialized (socket: ./ocserv-socket.9d0f9f22.0) Connecting to obtain cookie (user without certificate)... warning: skipping unknown option 'cookie-validity' note: vhost:default: setting 'certificate' as primary authentication method note: vhost:default: enabling 'plain' as authentication method ocserv[34449]: sec-mod: received request from pid 34537 and uid 991 ocserv[34449]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34537]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34537)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34432.tmp - Function not implemented ocserv[34447]: main:127.0.0.2:44531 worker terminated ocserv[34447]: main:127.0.0.2:44531 user disconnected (reason: unspecified, rx: 0, tx: 0) SSL connection failure: Error in the pull function. Failed to open HTTPS connection to 127.0.0.2 Failed to obtain WebVPN cookie Failure: Failed to connect with user without certificate! ocserv[34447]: main: termination request received; waiting for sessions to die FAIL test-cert-opt-pass (exit status: 1) SKIP: test-gssapi-opt-pass ========================== GSS NTLM SSP was not found SKIP test-gssapi-opt-pass (exit status: 77) SKIP: test-gssapi-opt-cert ========================== GSS NTLM SSP was not found SKIP test-gssapi-opt-cert (exit status: 77) SKIP: haproxy-auth ================== which: no haproxy in (/usr/bin:/bin:/usr/sbin:/sbin:/usr/local/sbin:/usr/sbin) no haproxy present SKIP haproxy-auth (exit status: 77) FAIL: test-maintenance ====================== Testing ocserv and SIGUSR2/forced maintenance behavior... warning: skipping unknown option 'cookie-validity' note: vhost:default: setting 'certificate' as primary authentication method note: setting 'file' as supplemental config option listening (TCP) on 0.0.0.0:37121... listening (TCP) on [::]:37121... listening (UDP) on 0.0.0.0:37121... listening (UDP) on [::]:37121... ocserv[34520]: main: Starting 1 instances of ocserv-sm ocserv[34520]: main: created sec-mod socket file (./ocserv-socket.3516c647.0) ocserv[34520]: main: not using control unix socket ocserv[34520]: main: initialized ocserv 1.1.6 ocserv[34524]: sec-mod: reading supplemental config from files ocserv[34524]: sec-mod: loaded 1 keys ocserv[34524]: sec-mod: sec-mod initialized (socket: ./ocserv-socket.3516c647.0) Connecting to obtain cookie (with certificate)... ocserv[34520]: main: Not applying ban to local IP: 127.0.0.2 warning: skipping unknown option 'cookie-validity' note: vhost:default: setting 'certificate' as primary authentication method ocserv[34524]: sec-mod: received request from pid 34609 and uid 991 ocserv[34524]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34609]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34609)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34504.tmp - Function not implemented ocserv[34520]: main:127.0.0.2:44605 worker terminated ocserv[34520]: main:127.0.0.2:44605 user disconnected (reason: unspecified, rx: 0, tx: 0) Failure: Could not connect with certificate! ocserv[34520]: main: termination request received; waiting for sessions to die FAIL test-maintenance (exit status: 1) FAIL: resumption ================ Testing ocserv session resumption... Parsing plain auth method subconfig using legacy format note: vhost:default: setting 'plain' as primary authentication method note: setting 'file' as supplemental config option listening (TCP) on 0.0.0.0:43800... listening (TCP) on [::]:43800... listening (UDP) on 0.0.0.0:43800... listening (UDP) on [::]:43800... ocserv[34568]: main: Starting 1 instances of ocserv-sm ocserv[34568]: main: created sec-mod socket file (./ocserv-socket.8f7a2329.0) ocserv[34568]: main: not using control unix socket ocserv[34568]: main: initialized ocserv 1.1.6 ocserv[34587]: sec-mod: reading supplemental config from files ocserv[34587]: sec-mod: loaded 1 keys ocserv[34587]: sec-mod: sec-mod initialized (socket: ./ocserv-socket.8f7a2329.0) Connecting to resume... Parsing plain auth method subconfig using legacy format note: vhost:default: setting 'plain' as primary authentication method ocserv[34587]: sec-mod: received request from pid 34643 and uid 991 ocserv[34587]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34643]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34643)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34547.tmp - Function not implemented ocserv[34568]: main:127.0.0.2:44642 worker terminated ocserv[34568]: main:127.0.0.2:44642 user disconnected (reason: unspecified, rx: 0, tx: 0) Processed 0 CA certificate(s). Resolving '127.0.0.2:43800'... Connecting to '127.0.0.2:43800'... - Certificate type: X.509 - Got a certificate list of 1 certificates. - Certificate[0] info: - subject `CN=localhost', issuer `CN=CA', serial 0x51d82ef0, RSA key 2432 bits, signed using RSA-SHA256, activated `2013-07-06 14:51:29 UTC', expires `2023-05-15 14:51:29 UTC', pin-sha256="xp3scfzy3rOQsv9NcOve/8YVVv+pHr4qNCXEXrNl5s8=" Public Key ID: sha1:a82547f68f44d6351bef6cacd1d7b96e84f9dfa3 sha256:c69dec71fcf2deb390b2ff4d70ebdeffc61556ffa91ebe2a3425c45eb365e6cf Public Key PIN: pin-sha256:xp3scfzy3rOQsv9NcOve/8YVVv+pHr4qNCXEXrNl5s8= - Status: The certificate is NOT trusted. The certificate issuer is unknown. The name in the certificate does not match the expected. *** PKI verification of server certificate failed... Failure: Could not connect to resume! ocserv[34568]: main: termination request received; waiting for sessions to die Processed 0 CA certificate(s). Resolving '127.0.0.2:43800'... Connecting to '127.0.0.2:43800'... - Certificate type: X.509 - Got a certificate list of 1 certificates. - Certificate[0] info: - subject `CN=localhost', issuer `CN=CA', serial 0x51d82ef0, RSA key 2432 bits, signed using RSA-SHA256, activated `2013-07-06 14:51:29 UTC', expires `2023-05-15 14:51:29 UTC', pin-sha256="xp3scfzy3rOQsv9NcOve/8YVVv+pHr4qNCXEXrNl5s8=" Public Key ID: sha1:a82547f68f44d6351bef6cacd1d7b96e84f9dfa3 sha256:c69dec71fcf2deb390b2ff4d70ebdeffc61556ffa91ebe2a3425c45eb365e6cf Public Key PIN: pin-sha256:xp3scfzy3rOQsv9NcOve/8YVVv+pHr4qNCXEXrNl5s8= - Status: The certificate is NOT trusted. The certificate issuer is unknown. The name in the certificate does not match the expected. *** PKI verification of server certificate failed... Failure: failed, session was not resumed * Cleaning up... FAIL resumption (exit status: 1) FAIL: test-group-name ===================== Testing whether group labels are translated to groups... Parsing plain auth method subconfig using legacy format note: vhost:default: setting 'plain' as primary authentication method note: setting 'file' as supplemental config option listening (TCP) on 0.0.0.0:62138... listening (TCP) on [::]:62138... listening (UDP) on 0.0.0.0:62138... listening (UDP) on [::]:62138... ocserv[34585]: main: Starting 1 instances of ocserv-sm ocserv[34585]: main: created sec-mod socket file (./ocserv-socket.421d0f6b.0) ocserv[34585]: main: not using control unix socket ocserv[34585]: main: initialized ocserv 1.1.6 ocserv[34588]: sec-mod: reading supplemental config from files ocserv[34588]: sec-mod: loaded 1 keys ocserv[34588]: sec-mod: sec-mod initialized (socket: ./ocserv-socket.421d0f6b.0) % Total % Received % Xferd Average Speed Time Time Time Current Dload Upload Total Spent Left Speed 0 0 0 0 0 0 0 0 --:--:-- --:--:-- --:--:-- 0ocserv[34585]: main: Not applying ban to local IP: 127.0.0.2 Parsing plain auth method subconfig using legacy format note: vhost:default: setting 'plain' as primary authentication method ocserv[34588]: sec-mod: received request from pid 34649 and uid 991 ocserv[34588]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34649]: worker: 127.0.0.2 accepted connection 0 0 0 0 0 0 0 0 --:--:-- --:--:-- --:--:-- 0SWRAP_ERROR[ocserv-worker (34649)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34565.tmp - Function not implemented 0 0 0 0 0 0 0 0 --:--:-- --:--:-- --:--:-- 0 curl: (35) error:0A000126:SSL routines::unexpected eof while reading ocserv[34585]: main:127.0.0.2:44646 worker terminated ocserv[34585]: main:127.0.0.2:44646 user disconnected (reason: unspecified, rx: 0, tx: 0) Unknown state () =================== * Cleaning up... ocserv[34585]: main: termination request received; waiting for sessions to die FAIL test-group-name (exit status: 1) FAIL: flowcontrol ================= Testing flow control... Parsing plain auth method subconfig using legacy format note: vhost:default: setting 'plain' as primary authentication method note: setting 'file' as supplemental config option listening (TCP) on 0.0.0.0:37294... listening (TCP) on [::]:37294... listening (UDP) on 0.0.0.0:37294... listening (UDP) on [::]:37294... ocserv[34630]: main: Starting 1 instances of ocserv-sm ocserv[34630]: main: created sec-mod socket file (./ocserv-socket.2183de2a.0) ocserv[34630]: main: not using control unix socket ocserv[34630]: main: initialized ocserv 1.1.6 ocserv[34638]: sec-mod: reading supplemental config from files ocserv[34638]: sec-mod: loaded 1 keys ocserv[34638]: sec-mod: sec-mod initialized (socket: ./ocserv-socket.2183de2a.0) Connecting to obtain cookie... ocserv[34630]: main: queue_length retval:0 rqueue:0 wqueue:1024 Parsing plain auth method subconfig using legacy format note: vhost:default: setting 'plain' as primary authentication method ocserv[34638]: sec-mod: received request from pid 34789 and uid 991 ocserv[34638]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34789]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34789)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34614.tmp - Function not implemented SSL connection failure: Error in the pull function. ocserv[34630]: main:127.0.0.2:44788 worker terminated ocserv[34630]: main:127.0.0.2:44788 user disconnected (reason: unspecified, rx: 0, tx: 0) Failed to open HTTPS connection to 127.0.0.2 Failed to obtain WebVPN cookie Failure: Could not receive cookie from server ocserv[34630]: main: termination request received; waiting for sessions to die FAIL flowcontrol (exit status: 1) FAIL: banner ============ Testing banner printing... Parsing plain auth method subconfig using legacy format note: vhost:default: setting 'plain' as primary authentication method note: setting 'file' as supplemental config option listening (TCP) on 0.0.0.0:52062... listening (TCP) on [::]:52062... listening (UDP) on 0.0.0.0:52062... listening (UDP) on [::]:52062... ocserv[34677]: main: Starting 1 instances of ocserv-sm ocserv[34677]: main: created sec-mod socket file (./ocserv-socket.60055432.0) ocserv[34677]: main: not using control unix socket ocserv[34677]: main: initialized ocserv 1.1.6 ocserv[34683]: sec-mod: reading supplemental config from files ocserv[34683]: sec-mod: loaded 1 keys ocserv[34683]: sec-mod: sec-mod initialized (socket: ./ocserv-socket.60055432.0) Connecting to obtain cookie... Parsing plain auth method subconfig using legacy format note: vhost:default: setting 'plain' as primary authentication method ocserv[34683]: sec-mod: received request from pid 34868 and uid 991 ocserv[34683]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34868]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34868)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34658.tmp - Function not implemented ocserv[34677]: main:127.0.0.2:44851 worker terminated ocserv[34677]: main:127.0.0.2:44851 user disconnected (reason: unspecified, rx: 0, tx: 0) Failure: Could not receive cookie from server * Cleaning up... ocserv[34677]: main: termination request received; waiting for sessions to die FAIL banner (exit status: 1) SKIP: haproxy-proxyproto ======================== which: no haproxy in (/usr/bin:/bin:/usr/sbin:/sbin:/usr/local/sbin:/usr/sbin) You need to run this script as root SKIP haproxy-proxyproto (exit status: 77) SKIP: haproxy-proxyproto-v1 =========================== which: no haproxy in (/usr/bin:/bin:/usr/sbin:/sbin:/usr/local/sbin:/usr/sbin) You need to run this script as root SKIP haproxy-proxyproto-v1 (exit status: 77) FAIL: drain-server ================== Testing local backend with username-password... Parsing plain auth method subconfig using legacy format note: vhost:default: setting 'plain' as primary authentication method note: setting 'file' as supplemental config option listening (TCP) on 0.0.0.0:10980... listening (TCP) on [::]:10980... listening (UDP) on 0.0.0.0:10980... listening (UDP) on [::]:10980... ocserv[34777]: main: Starting 1 instances of ocserv-sm ocserv[34777]: main: created sec-mod socket file (./ocserv-socket.765d7b32.0) ocserv[34777]: main: not using control unix socket ocserv[34777]: main: initialized ocserv 1.1.6 ocserv[34778]: sec-mod: reading supplemental config from files ocserv[34778]: sec-mod: loaded 1 keys ocserv[34778]: sec-mod: sec-mod initialized (socket: ./ocserv-socket.765d7b32.0) Connecting to obtain cookie... Parsing plain auth method subconfig using legacy format note: vhost:default: setting 'plain' as primary authentication method ocserv[34778]: sec-mod: received request from pid 34838 and uid 991 ocserv[34778]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34838]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34838)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34761.tmp - Function not implemented SSL connection failure: Error in the pull function. ocserv[34777]: main:127.0.0.2:44837 worker terminated ocserv[34777]: main:127.0.0.2:44837 user disconnected (reason: unspecified, rx: 0, tx: 0) Failed to open HTTPS connection to 127.0.0.2 Failed to obtain WebVPN cookie Failure: Could not receive cookie from server ocserv[34777]: main: termination request received; stopping new connections ocserv[34777]: main: termination request received; waiting 10000 ms FAIL drain-server (exit status: 1) ocserv[34777]: main: termination request received; waiting for sessions to die SKIP: drain-server-fail ======================= You need to run this script as root SKIP drain-server-fail (exit status: 77) FAIL: test-otp-cert =================== Testing local backend with username-password-otp and certificate... warning: skipping unknown option 'cookie-validity' note: vhost:default: setting 'certificate+plain' as primary authentication method note: setting 'file' as supplemental config option listening (TCP) on 0.0.0.0:33296... listening (TCP) on [::]:33296... listening (UDP) on 0.0.0.0:33296... listening (UDP) on [::]:33296... ocserv[34821]: main: Starting 1 instances of ocserv-sm ocserv[34821]: main: created sec-mod socket file (./ocserv-socket.c6ecff77.0) ocserv[34821]: main: not using control unix socket ocserv[34821]: main: initialized ocserv 1.1.6 ocserv[34823]: sec-mod: reading supplemental config from files ocserv[34823]: sec-mod: loaded 1 keys ocserv[34823]: sec-mod: sec-mod initialized (socket: ./ocserv-socket.c6ecff77.0) Connecting to obtain cookie (without certificate)... warning: skipping unknown option 'cookie-validity' note: vhost:default: setting 'certificate+plain' as primary authentication method ocserv[34823]: sec-mod: received request from pid 34924 and uid 991 ocserv[34823]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34924]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34924)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34802.tmp - Function not implemented ocserv[34821]: main:127.0.0.2:44922 worker terminated ocserv[34821]: main:127.0.0.2:44922 user disconnected (reason: unspecified, rx: 0, tx: 0) ok Connecting to obtain cookie (with incorrect certificate)... warning: skipping unknown option 'cookie-validity' note: vhost:default: setting 'certificate+plain' as primary authentication method ocserv[34823]: sec-mod: received request from pid 34929 and uid 991 ocserv[34823]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34929]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34929)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34802.tmp - Function not implemented ocserv[34821]: main:127.0.0.2:44928 worker terminated ocserv[34821]: main:127.0.0.2:44928 user disconnected (reason: unspecified, rx: 0, tx: 0) ok Connecting to obtain cookie (with certificate)... warning: skipping unknown option 'cookie-validity' note: vhost:default: setting 'certificate+plain' as primary authentication method ocserv[34823]: sec-mod: received request from pid 34940 and uid 991 ocserv[34823]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34940]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34940)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34802.tmp - Function not implemented ocserv[34821]: main:127.0.0.2:44936 worker terminated ocserv[34821]: main:127.0.0.2:44936 user disconnected (reason: unspecified, rx: 0, tx: 0) Failure: Could not connect with certificate! FAIL test-otp-cert (exit status: 1) ocserv[34821]: main: termination request received; waiting for sessions to die FAIL: test-otp ============== Testing local backend with username-password-otp and certificate... warning: skipping unknown option 'cookie-validity' note: vhost:default: setting 'plain' as primary authentication method note: setting 'file' as supplemental config option listening (TCP) on 0.0.0.0:11095... listening (TCP) on [::]:11095... listening (UDP) on 0.0.0.0:11095... listening (UDP) on [::]:11095... ocserv[34871]: main: Starting 1 instances of ocserv-sm ocserv[34871]: main: created sec-mod socket file (./ocserv-socket.bf8bad13.0) ocserv[34871]: main: not using control unix socket ocserv[34871]: main: initialized ocserv 1.1.6 ocserv[34875]: sec-mod: reading supplemental config from files ocserv[34875]: sec-mod: loaded 1 keys ocserv[34875]: sec-mod: sec-mod initialized (socket: ./ocserv-socket.bf8bad13.0) Connecting with wrong username... warning: skipping unknown option 'cookie-validity' note: vhost:default: setting 'plain' as primary authentication method ocserv[34875]: sec-mod: received request from pid 34962 and uid 991 ocserv[34875]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34962]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34962)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34846.tmp - Function not implemented ocserv[34871]: main:127.0.0.2:44961 worker terminated ocserv[34871]: main:127.0.0.2:44961 user disconnected (reason: unspecified, rx: 0, tx: 0) ok Connecting with wrong OTP... warning: skipping unknown option 'cookie-validity' note: vhost:default: setting 'plain' as primary authentication method ocserv[34875]: sec-mod: received request from pid 34968 and uid 991 ocserv[34875]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34968]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34968)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34846.tmp - Function not implemented ocserv[34871]: main:127.0.0.2:44966 worker terminated ocserv[34871]: main:127.0.0.2:44966 user disconnected (reason: unspecified, rx: 0, tx: 0) ok Connecting with correct password and OTP... warning: skipping unknown option 'cookie-validity' note: vhost:default: setting 'plain' as primary authentication method ocserv[34875]: sec-mod: received request from pid 34974 and uid 991 ocserv[34875]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34974]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34974)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34846.tmp - Function not implemented ocserv[34871]: main:127.0.0.2:44973 worker terminated ocserv[34871]: main:127.0.0.2:44973 user disconnected (reason: unspecified, rx: 0, tx: 0) Failure: Could not connect with OTP! ocserv[34871]: main: termination request received; waiting for sessions to die FAIL test-otp (exit status: 1) SKIP: no-route-default ====================== You need to run this script as root SKIP no-route-default (exit status: 77) SKIP: no-route-group ==================== You need to run this script as root SKIP no-route-group (exit status: 77) FAIL: test-owasp-headers ======================== Testing ocserv owasp headers... warning: skipping unknown option 'cookie-validity' Parsing plain auth method subconfig using legacy format note: vhost:default: setting 'certificate+plain' as primary authentication method note: setting 'file' as supplemental config option listening (TCP) on 0.0.0.0:51614... listening (TCP) on [::]:51614... listening (UDP) on 0.0.0.0:51614... listening (UDP) on [::]:51614... ocserv[34917]: main: Starting 1 instances of ocserv-sm ocserv[34917]: main: created sec-mod socket file (./ocserv-socket.2ed6d5be.0) ocserv[34917]: main: not using control unix socket ocserv[34917]: main: initialized ocserv 1.1.6 ocserv[34923]: sec-mod: reading supplemental config from files ocserv[34923]: sec-mod: loaded 1 keys ocserv[34923]: sec-mod: sec-mod initialized (socket: ./ocserv-socket.2ed6d5be.0) Testing / ... ocserv[34917]: main: Not applying ban to local IP: 127.0.0.2 warning: skipping unknown option 'cookie-validity' Parsing plain auth method subconfig using legacy format note: vhost:default: setting 'certificate+plain' as primary authentication method ocserv[34923]: sec-mod: received request from pid 34969 and uid 991 ocserv[34923]: sec-mod: cmd [size=57] sm: sign note: setting 'file' as supplemental config option ocserv[34969]: worker: 127.0.0.2 accepted connection SWRAP_ERROR[ocserv-worker (34969)] - socket_wrapper_dir: Unable to resolve socket_wrapper dir path: ./tmp/sockwrap.34903.tmp - Function not implemented ocserv[34917]: main:127.0.0.2:44967 worker terminated ocserv[34917]: main:127.0.0.2:44967 user disconnected (reason: unspecified, rx: 0, tx: 0) Failure: Missing HTTP header (Strict-Transport-Security) FAIL test-owasp-headers (exit status: 1) ocserv[34917]: main: termination request received; waiting for sessions to die SKIP: test-replay ================= You need to run this script as root SKIP test-replay (exit status: 77) ============================================================================ Testsuite summary for ocserv 1.1.6 ============================================================================ # TOTAL: 93 # PASS: 17 # SKIP: 53 # XFAIL: 0 # FAIL: 23 # XPASS: 0 # ERROR: 0 ============================================================================ See tests/test-suite.log Please report to openconnect-devel@lists.infradead.org ============================================================================ make[3]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6/tests' make[2]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6/tests' make[1]: Leaving directory '/builddir/build/BUILD/ocserv-1.1.6/tests' RPM build errors: make[3]: *** [Makefile:1648: test-suite.log] Error 1 make[2]: *** [Makefile:1756: check-TESTS] Error 2 make[1]: *** [Makefile:2515: check-am] Error 2 make: *** [Makefile:1057: check-recursive] Error 1 error: Bad exit status from /var/tmp/rpm-tmp.l4behY (%check) Bad exit status from /var/tmp/rpm-tmp.l4behY (%check) Child return code was: 1 EXCEPTION: [Error()] Traceback (most recent call last): File "/usr/lib/python3.9/site-packages/mockbuild/trace_decorator.py", line 93, in trace result = func(*args, **kw) File "/usr/lib/python3.9/site-packages/mockbuild/util.py", line 600, in do_with_status raise exception.Error("Command failed: \n # %s\n%s" % (command, output), child.returncode) mockbuild.exception.Error: Command failed: # bash --login -c /usr/bin/rpmbuild -bb --target riscv64 --nodeps /builddir/build/SPECS/ocserv.spec