openziti / ziti-tunnel-sdk-c

Apache License 2.0
43 stars 17 forks source link

segfault if INVALID_AUTH when disabled connections for external CA #221

Closed qrkourier closed 2 years ago

qrkourier commented 2 years ago

The controller has a setting to enable connections for all identities from an external CA. When this is disabled an enrolled identity using ziti-edge-tunnel 0.17.16 will encounter a segmentation fault.

Here's a screen recording

Here's a screenshot from the recording 2021-10-16_19-57 :

qrkourier commented 2 years ago

_usr_libexec_valgrind_memcheck-amd64-linux.0.crash.txt

This "crash" file was created by the core_pattern which was a pipe to apport before I temporarily changed it to a simple core file pattern.

qrkourier commented 2 years ago

Hello, I also captured this core file and I'm looking for a way to share it with you.

❯ file ~/Downloads/core-ziti-edge-tunne-11-0-0-907170-1634826374.txt
/home/kbingham/Downloads/core-ziti-edge-tunne-11-0-0-907170-1634826374.txt: ELF 64-bit LSB core file, x86-64, version 1 (SYSV), SVR4-style, from '../../bin/ziti-edge-tunnel_0.17.16 run --identity ./auto-created-02.json', real uid: 0, effective uid: 0, real gid: 0, effective gid: 0, execfn: '../../bin/ziti-edge-tunnel_0.17.16', platform: 'x86_64'