Get the most out of your Centmin Mod LEMP stack
Become a Member

123.09beta01 install issues

Discussion in 'Install & Upgrades or Pre-Install Questions' started by jackton, Jan 22, 2017.

  1. jackton

    jackton Premium Member Premium Member

    13
    0
    1
    Sep 24, 2014
    Ratings:
    +1
    Local Time:
    9:43 PM
    1.6.2
    10.0.13
    Code:
    pdate ccache version... one time task                                                                                                                                                        
    download ccache 3.3.2                                                                                                                                                                        
    tar (child): ccache-3.3.2.tar.gz: Cannot open: No such file or directory                                                                                                                      
    tar (child): Error is not recoverable: exiting now                                                                                                                                            
    tar: Child returned status 2                                                                                                                                                                  
    tar: Error is not recoverable: exiting now                                                                                                                                                    
                                                                                                                                                                                                 
    update axel version... one time task                                                                                                                                                          
    --2017-01-22 16:56:19--  https://github.com/eribertomota/axel/archive/2.11.tar.gz                                                                                                            
    Resolving github.com (github.com)... 192.30.253.112, 192.30.253.113                                                                                                                          
    Connecting to github.com (github.com)|192.30.253.112|:443... connected.                                                                                                                      
    ERROR: cannot verify github.com's certificate, issued by ‘CN=DigiCert SHA2 Extended Validation Server CA,OU=www.digicert.com,O=DigiCert Inc,C=US’:                                        
      Unable to locally verify the issuer's authority.                                                                                                                                            
    To connect to github.com insecurely, use `--no-check-certificate'.                                                                                                                            
    Error: axel-2.11.tar.gz download failed.                                                                                                                                                      
    check Centmin Mod log for details at /root/centminlogs/                                                                                                                                      
    Aborting script...                                            


    up nginx
    Code:
    Download 1.12.34.2.tar.gz PSOL Library...                                                                                                                                                     
    --2017-01-22 17:00:08--  https://dl.google.com/dl/page-speed/psol/1.12.34.2-x64.tar.gz                                                                                                         
    Resolving dl.google.com (dl.google.com)... 203.208.48.36, 203.208.48.35, 203.208.48.41, ...                                                                                                   
    Connecting to dl.google.com (dl.google.com)|203.208.48.36|:443... connected.                                                                                                                   
    ERROR: cannot verify dl.google.com's certificate, issued by ‘CN=Google Internet Authority G2,O=Google Inc,C=US’:                                                                           
      Unable to locally verify the issuer's authority.                                                                                                                                             
    To connect to dl.google.com insecurely, use `--no-check-certificate'.                                                                                                                         
    Error: https://dl.google.com/dl/page-speed/psol/1.12.34.2-x64.tar.gz download failed.                                                                                                         
    check Centmin Mod log for details at /root/centminlogs/                                                                                                                                       
    Aborting script...                                                                                                                                                                             
    tar (child): 1.12.34.2-x64.tar.gz: Cannot open: No such file or directory                                                                                                                     
    tar (child): Error is not recoverable: exiting now                                                                                                                                             
    tar: Child returned status 2                                                                                                                                                                   
    tar: Error is not recoverable: exiting now                                                                                                                                                     
    Error: 1.12.34.2.tar.gz extraction failed.                                                                                                                                                     
    check Centmin Mod log for details at /root/centminlogs/                                                                                                                                       
    Aborting script...                                
     
  2. eva2000

    eva2000 Administrator Staff Member

    30,180
    6,786
    113
    May 24, 2014
    Brisbane, Australia
    Ratings:
    +10,139
    Local Time:
    9:43 PM
    Nginx 1.13.x
    MariaDB 5.5
    problem could be on github and googles end

    what output do you get for commands
    Code (Text):
    echo exit | openssl s_client -connect github.com:443
    

    Code (Text):
    echo exit | openssl s_client -connect dl.google.com:443
    

    Might want to use CODE tags for code How to use forum BBCODE code tags :)
     
  3. eva2000

    eva2000 Administrator Staff Member

    30,180
    6,786
    113
    May 24, 2014
    Brisbane, Australia
    Ratings:
    +10,139
    Local Time:
    9:43 PM
    Nginx 1.13.x
    MariaDB 5.5
    You'll need to post on the forums with the following info
    • Server or VPS details ? XEN, KVM, OpenVZ, VMWare or dedicated server ? OS ? CentOS 6.7 or 7.2 ? 32bit or 64bit ?
    • What version of Centmin Mod ? .07 stable or 08 stable or .09 beta01 or another branch version ?
    • Was it fresh install or upgrade ?
    • Method of install ? Via centmin.sh menu option 1, Git install or curl one liner install as outlined at centminmod.com/download.html ?
    • How long ago did you install Centmin Mod ?
    • There's numerous code changes, bug fixes over time, so ensure you have latest Centmin Mod code installed by upgrading your Centmin Mod code as instructed below.

    Troubleshooting Initial Install



    To troubleshoot initial installation, you need to check the initial install log at /root/centminlogs and instructions under Sharing logs and errors heading for using Pastebin.com or Gists to share a sanitised version of the contents of the initial install log. You can see full details at How to troubleshoot Centmin Mod initial install issues

    Example list /root/centminlogs files in date ascending order and grep for install.log
    Code (Text):
    ls -lahrt /root/centminlogs | grep install.log
    

    example output returns install log at /root/centminlogs/centminmod_1.2.3-eva2000.09.001_111016-112321_install.log
    Code (Text):
    ls -lahrt /root/centminlogs | grep install.log
    -rw-r--r--  1 root root 2.2M Oct 11 01:40 centminmod_1.2.3-eva2000.09.001_111016-112321_install.log
    

    in SSH use cat to ouput contents of /root/centminlogs/centminmod_1.2.3-eva2000.09.001_111016-112321_install.log. Clear your SSH client window/buffer so only output is the contents of the file
    Code (Text):
    cat /root/centminlogs/centminmod_1.2.3-eva2000.09.001_111016-112321_install.log
    

    Then copy and paste into Pastebin.com or Gists entry. If your SSH window scroll buffer isn't that large to get the whole contents of the install log, you can download file manually and copy and paste contents. But makes sure it's sanitised version of the contents of the initial install log as outlined at How to troubleshoot Centmin Mod initial install issues
     
  4. jackton

    jackton Premium Member Premium Member

    13
    0
    1
    Sep 24, 2014
    Ratings:
    +1
    Local Time:
    9:43 PM
    1.6.2
    10.0.13
    echo exit | openssl s_client -connect github.com:443
    Code:
                                                                                                          
    CONNECTED(00000003)                                                                                                                                                                           
    depth=1 C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert SHA2 Extended Validation Server CA                                                                                     
    verify error:num=20:unable to get local issuer certificate                                                                                                                                     
    verify return:0                                                                                                                                                                               
    ---                                                                                                                                                                                           
    Certificate chain                                                                                                                                                                             
     0 s:/businessCategory=Private Organization/1.3.6.1.4.1.311.60.2.1.3=US/1.3.6.1.4.1.311.60.2.1.2=Delaware/serialNumber=5157550/street=88 Colin P Kelly, Jr Street/postalCode=94107/C=US/ST=Cali
    fornia/L=San Francisco/O=GitHub, Inc./CN=github.com                                                                                                                                           
       i:/C=US/O=DigiCert Inc/OU=www.digicert.com/CN=DigiCert SHA2 Extended Validation Server CA                                                                                                   
     1 s:/C=US/O=DigiCert Inc/OU=www.digicert.com/CN=DigiCert SHA2 Extended Validation Server CA                                                                                                   
       i:/C=US/O=DigiCert Inc/OU=www.digicert.com/CN=DigiCert High Assurance EV Root CA                                                                                                           
    ---                                                                                                                                                                                           
    Server certificate                                                                                                                                                                             
    -----BEGIN CERTIFICATE-----                                                                                                                                                                   
    MIIHeTCCBmGgAwIBAgIQC/20CQrXteZAwwsWyVKaJzANBgkqhkiG9w0BAQsFADB1                                                                                                                               
    MQswCQYDVQQGEwJVUzEVMBMGA1UEChMMRGlnaUNlcnQgSW5jMRkwFwYDVQQLExB3                                                                                                                               
    d3cuZGlnaWNlcnQuY29tMTQwMgYDVQQDEytEaWdpQ2VydCBTSEEyIEV4dGVuZGVk                                                                                                                               
    IFZhbGlkYXRpb24gU2VydmVyIENBMB4XDTE2MDMxMDAwMDAwMFoXDTE4MDUxNzEy                                                                                                                               
    MDAwMFowgf0xHTAbBgNVBA8MFFByaXZhdGUgT3JnYW5pemF0aW9uMRMwEQYLKwYB                                                                                                                               
    BAGCNzwCAQMTAlVTMRkwFwYLKwYBBAGCNzwCAQITCERlbGF3YXJlMRAwDgYDVQQF                                                                                                                               
    Ewc1MTU3NTUwMSQwIgYDVQQJExs4OCBDb2xpbiBQIEtlbGx5LCBKciBTdHJlZXQx                                                                                                                               
    DjAMBgNVBBETBTk0MTA3MQswCQYDVQQGEwJVUzETMBEGA1UECBMKQ2FsaWZvcm5p                                                                                                                               
    YTEWMBQGA1UEBxMNU2FuIEZyYW5jaXNjbzEVMBMGA1UEChMMR2l0SHViLCBJbmMu                                                                                                                               
    MRMwEQYDVQQDEwpnaXRodWIuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIB                                                                                                                               
    CgKCAQEA54hc8pZclxgcupjiA/F/OZGRwm/ZlucoQGTNTKmBEgNsrn/mxhngWmPw                                                                                                                               
    bAvUaLP//T79Jc+1WXMpxMiz9PK6yZRRFuIo0d2bx423NA6hOL2RTtbnfs+y0PFS                                                                                                                               
    /YTpQSelTuq+Fuwts5v6aAweNyMcYD0HBybkkdosFoDccBNzJ92Ac8I5EVDUc3Or                                                                                                                               
    /4jSyZwzxu9kdmBlBzeHMvsqdH8SX9mNahXtXxRpwZnBiUjw36PgN+s9GLWGrafd                                                                                                                               
    02T0ux9Yzd5ezkMxukqEAQ7AKIIijvaWPAJbK/52XLhIy2vpGNylyni/DQD18bBP                                                                                                                               
    T+ZG1uv0QQP9LuY/joO+FKDOTler4wIDAQABo4IDejCCA3YwHwYDVR0jBBgwFoAU                                                                                                                               
    PdNQpdagre7zSmAKZdMh1Pj41g8wHQYDVR0OBBYEFIhcSGcZzKB2WS0RecO+oqyH                                                                                                                               
    IidbMCUGA1UdEQQeMByCCmdpdGh1Yi5jb22CDnd3dy5naXRodWIuY29tMA4GA1Ud                                                                                                                               
    DwEB/wQEAwIFoDAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwdQYDVR0f                                                                                                                               
    BG4wbDA0oDKgMIYuaHR0cDovL2NybDMuZGlnaWNlcnQuY29tL3NoYTItZXYtc2Vy                                                                                                                               
    dmVyLWcxLmNybDA0oDKgMIYuaHR0cDovL2NybDQuZGlnaWNlcnQuY29tL3NoYTIt                                                                                                                               
    ZXYtc2VydmVyLWcxLmNybDBLBgNVHSAERDBCMDcGCWCGSAGG/WwCATAqMCgGCCsG                                                                                                                               
    AQUFBwIBFhxodHRwczovL3d3dy5kaWdpY2VydC5jb20vQ1BTMAcGBWeBDAEBMIGI                                                                                                                               
    BggrBgEFBQcBAQR8MHowJAYIKwYBBQUHMAGGGGh0dHA6Ly9vY3NwLmRpZ2ljZXJ0                                                                                                                               
    LmNvbTBSBggrBgEFBQcwAoZGaHR0cDovL2NhY2VydHMuZGlnaWNlcnQuY29tL0Rp                                                                                                                               
    Z2lDZXJ0U0hBMkV4dGVuZGVkVmFsaWRhdGlvblNlcnZlckNBLmNydDAMBgNVHRMB                                                                                                                               
    Af8EAjAAMIIBfwYKKwYBBAHWeQIEAgSCAW8EggFrAWkAdgCkuQmQtBhYFIe7E6LM                                                                                                                               
    Z3AKPDWYBPkb37jjd80OyA3cEAAAAVNhieoeAAAEAwBHMEUCIQCHHSEY/ROK2/sO                                                                                                                               
    ljbKaNEcKWz6BxHJNPOtjSyuVnSn4QIgJ6RqvYbSX1vKLeX7vpnOfCAfS2Y8lB5R                                                                                                                               
    NMwk6us2QiAAdgBo9pj4H2SCvjqM7rkoHUz8cVFdZ5PURNEKZ6y7T0/7xAAAAVNh                                                                                                                               
    iennAAAEAwBHMEUCIQDZpd5S+3to8k7lcDeWBhiJASiYTk2rNAT26lVaM3xhWwIg                                                                                                                               
    NUqrkIODZpRg+khhp8ag65B8mu0p4JUAmkRDbiYnRvYAdwBWFAaaL9fC7NP14b1E                                                                                                                               
    sj7HRna5vJkRXMDvlJhV1onQ3QAAAVNhieqZAAAEAwBIMEYCIQDnm3WStlvE99GC                                                                                                                               
    izSx+UGtGmQk2WTokoPgo1hfiv8zIAIhAPrYeXrBgseA9jUWWoB4IvmcZtshjXso                                                                                                                               
    nT8MIG1u1zF8MA0GCSqGSIb3DQEBCwUAA4IBAQCLbNtkxuspqycq8h1EpbmAX0wM                                                                                                                               
    5DoW7hM/FVdz4LJ3Kmftyk1yd8j/PSxRrAQN2Mr/frKeK8NE1cMji32mJbBqpWtK                                                                                                                               
    /+wC+avPplBUbNpzP53cuTMF/QssxItPGNP5/OT9Aj1BxA/NofWZKh4ufV7cz3pY                                                                                                                               
    RDS4BF+EEFQ4l5GY+yp4WJA/xSvYsTHWeWxRD1/nl62/Rd9FN2NkacRVozCxRVle                                                                                                                               
    FrBHTFxqIP6kDnxiLElBrZngtY07ietaYZVLQN/ETyqLQftsf8TecwTklbjvm8NT                                                                                                                               
    JqbaIVifYwqwNN+4lRxS3F5lNlA/il12IOgbRioLI62o8G0DaEUQgHNf8vSG                                                                                                                                   
    -----END CERTIFICATE-----                                                                                                                                                                     
    subject=/businessCategory=Private Organization/1.3.6.1.4.1.311.60.2.1.3=US/1.3.6.1.4.1.311.60.2.1.2=Delaware/serialNumber=5157550/street=88 Colin P Kelly, Jr Street/postalCode=94107/C=US/ST=C
    alifornia/L=San Francisco/O=GitHub, Inc./CN=github.com                                                                                                                                         
    issuer=/C=US/O=DigiCert Inc/OU=www.digicert.com/CN=DigiCert SHA2 Extended Validation Server CA                                                                                                 
    ---                                                                                                                                                                                           
    No client certificate CA names sent                                                                                                                                                           
    Server Temp Key: ECDH, prime256v1, 256 bits                                                                                                                                                   
    ---                                                                                                                                                                                           
    SSL handshake has read 3642 bytes and written 373 bytes                                                                                                                                       
    ---                                                                                                                                                                                           
    New, TLSv1/SSLv3, Cipher is ECDHE-RSA-AES128-GCM-SHA256                                                                                                                                       
    Server public key is 2048 bit                                                                                                                                                                 
    Secure Renegotiation IS supported                                                                                                                                                             
    Compression: NONE                                                                                                                                                                             
    Expansion: NONE                                                                                                                                                                               
    SSL-Session:                                                                                                                                                                                   
        Protocol  : TLSv1.2                                                                                                                                                                       
        Cipher    : ECDHE-RSA-AES128-GCM-SHA256                                                                                                                                                   
        Session-ID: DE95F05FB663D0326A518A9856490154BA73A5CC14ABE0E2F6357235D997ACCD                                                                                                               
        Session-ID-ctx:                                                                                                                                                                           
        Master-Key: E32A222A9C8F15D49E498A6A75D2DCF8E897A3D5D9E7D8F023BA6B915E0D3CE2CC585959F1F835B51BB0A9E3221CB739                                                                               
        Key-Arg   : None                                                                                                                                                                           
        Krb5 Principal: None                                                                                                                                                                       
        PSK identity: None                                                                                                                                                                         
        PSK identity hint: None                                                                                                                                                                   
        Start Time: 1485077377                                                                                                                                                                     
        Timeout   : 300 (sec)                                                                                                                                                                     
        Verify return code: 20 (unable to get local issuer certificate)                                                                                                                           
    ---                                                                                                                                                                                           
    DONE                                                            
    Code:
     echo exit | openssl s_client -connect dl.google.com:443                                                                                                       
    CONNECTED(00000003)                                                                                                                                                                           
    depth=2 C = US, O = GeoTrust Inc., CN = GeoTrust Global CA                                                                                                                                     
    verify error:num=20:unable to get local issuer certificate                                                                                                                                     
    verify return:0                                                                                                                                                                               
    ---                                                                                                                                                                                           
    Certificate chain                                                                                                                                                                             
     0 s:/C=US/ST=California/L=Mountain View/O=Google Inc/CN=*.google.com                                                                                                                         
       i:/C=US/O=Google Inc/CN=Google Internet Authority G2                                                                                                                                       
     1 s:/C=US/O=Google Inc/CN=Google Internet Authority G2                                                                                                                                       
       i:/C=US/O=GeoTrust Inc./CN=GeoTrust Global CA                                                                                                                                               
     2 s:/C=US/O=GeoTrust Inc./CN=GeoTrust Global CA                                                                                                                                               
       i:/C=US/O=Equifax/OU=Equifax Secure Certificate Authority                                                                                                                                   
    ---                                                                                                                                                                                           
    Server certificate                                                                                                                                                                             
    -----BEGIN CERTIFICATE-----                                                                                                                                                                   
    MIIH4jCCBsqgAwIBAgIIEAIWC/LWzRAwDQYJKoZIhvcNAQELBQAwSTELMAkGA1UE                                                                                                                               
    BhMCVVMxEzARBgNVBAoTCkdvb2dsZSBJbmMxJTAjBgNVBAMTHEdvb2dsZSBJbnRl                                                                                                                               
    cm5ldCBBdXRob3JpdHkgRzIwHhcNMTcwMTExMDkxMjAzWhcNMTcwNDA1MDg1NjAw                                                                                                                               
    WjBmMQswCQYDVQQGEwJVUzETMBEGA1UECAwKQ2FsaWZvcm5pYTEWMBQGA1UEBwwN                                                                                                                               
    TW91bnRhaW4gVmlldzETMBEGA1UECgwKR29vZ2xlIEluYzEVMBMGA1UEAwwMKi5n                                                                                                                               
    b29nbGUuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwMFgpVX+                                                                                                                               
    MJDWfEnnqT5R4gaTz3synDBaT4c3rdRAJWG/vskh4ER13T2+3O6XLcr9BC+HfBQG                                                                                                                               
    qwniWNALkQIJvKZNItjD5ZvQXtHtk4H/Gd0OkSICT3ycvEXsM5qF8RyWKnPWnOFV                                                                                                                               
    mFPuNaIL+7lFNNrSmsWaqe6mdqFDfYrFAGSrS/bB8KeSmuDtT337iBFKMN7XpTym                                                                                                                               
    wpdAlks8/V1241g3d+IQ4ChGmFdNyYe2dDmLcWfOLdvR7hvCZBoRuuoWEUtouLgG                                                                                                                               
    yT5PJ5oZVGzJtoX77nCKtVtiRRJLnzN8zuzKI71toLlA8EF5RfarwkBfPfMtGjuE                                                                                                                               
    1RIpeGINpZyCdwIDAQABo4IErzCCBKswHQYDVR0lBBYwFAYIKwYBBQUHAwEGCCsG                                                                                                                               
    AQUFBwMCMIIDewYDVR0RBIIDcjCCA26CDCouZ29vZ2xlLmNvbYINKi5hbmRyb2lk                                                                                                                               
    LmNvbYIWKi5hcHBlbmdpbmUuZ29vZ2xlLmNvbYISKi5jbG91ZC5nb29nbGUuY29t                                                                                                                               
    gg4qLmdjcC5ndnQyLmNvbYIWKi5nb29nbGUtYW5hbHl0aWNzLmNvbYILKi5nb29n                                                                                                                               
    bGUuY2GCCyouZ29vZ2xlLmNsgg4qLmdvb2dsZS5jby5pboIOKi5nb29nbGUuY28u                                                                                                                               
    anCCDiouZ29vZ2xlLmNvLnVrgg8qLmdvb2dsZS5jb20uYXKCDyouZ29vZ2xlLmNv                                                                                                                               
    bS5hdYIPKi5nb29nbGUuY29tLmJygg8qLmdvb2dsZS5jb20uY2+CDyouZ29vZ2xl                                                                                                                               
    LmNvbS5teIIPKi5nb29nbGUuY29tLnRygg8qLmdvb2dsZS5jb20udm6CCyouZ29v                                                                                                                               
    Z2xlLmRlggsqLmdvb2dsZS5lc4ILKi5nb29nbGUuZnKCCyouZ29vZ2xlLmh1ggsq                                                                                                                               
    Lmdvb2dsZS5pdIILKi5nb29nbGUubmyCCyouZ29vZ2xlLnBsggsqLmdvb2dsZS5w                                                                                                                               
    dIISKi5nb29nbGVhZGFwaXMuY29tgg8qLmdvb2dsZWFwaXMuY26CFCouZ29vZ2xl                                                                                                                               
    Y29tbWVyY2UuY29tghEqLmdvb2dsZXZpZGVvLmNvbYIMKi5nc3RhdGljLmNugg0q                                                                                                                               
    LmdzdGF0aWMuY29tggoqLmd2dDEuY29tggoqLmd2dDIuY29tghQqLm1ldHJpYy5n                                                                                                                               
    c3RhdGljLmNvbYIMKi51cmNoaW4uY29tghAqLnVybC5nb29nbGUuY29tghYqLnlv                                                                                                                               
    dXR1YmUtbm9jb29raWUuY29tgg0qLnlvdXR1YmUuY29tghYqLnlvdXR1YmVlZHVj                                                                                                                               
    YXRpb24uY29tggsqLnl0aW1nLmNvbYIaYW5kcm9pZC5jbGllbnRzLmdvb2dsZS5j                                                                                                                               
    b22CC2FuZHJvaWQuY29tghtkZXZlbG9wZXIuYW5kcm9pZC5nb29nbGUuY26CBGcu                                                                                                                               
    Y2+CBmdvby5nbIIUZ29vZ2xlLWFuYWx5dGljcy5jb22CCmdvb2dsZS5jb22CEmdv                                                                                                                               
    b2dsZWNvbW1lcmNlLmNvbYIKdXJjaGluLmNvbYIKd3d3Lmdvby5nbIIIeW91dHUu                                                                                                                               
    YmWCC3lvdXR1YmUuY29tghR5b3V0dWJlZWR1Y2F0aW9uLmNvbTBoBggrBgEFBQcB                                                                                                                               
    AQRcMFowKwYIKwYBBQUHMAKGH2h0dHA6Ly9wa2kuZ29vZ2xlLmNvbS9HSUFHMi5j                                                                                                                               
    cnQwKwYIKwYBBQUHMAGGH2h0dHA6Ly9jbGllbnRzMS5nb29nbGUuY29tL29jc3Aw                                                                                                                               
    HQYDVR0OBBYEFGy8NwQpJ7D3GgNnRknk+bPUm9YgMAwGA1UdEwEB/wQCMAAwHwYD                                                                                                                               
    VR0jBBgwFoAUSt0GFhu89mi1dvWBtrtiGrpagS8wIQYDVR0gBBowGDAMBgorBgEE                                                                                                                               
    AdZ5AgUBMAgGBmeBDAECAjAwBgNVHR8EKTAnMCWgI6Ahhh9odHRwOi8vcGtpLmdv                                                                                                                               
    b2dsZS5jb20vR0lBRzIuY3JsMA0GCSqGSIb3DQEBCwUAA4IBAQAH/kDx+mG+CV89                                                                                                                               
    hreGAq604Uc4WrxK5EGDAjurysZZVry9ZiEYcaKz8Dvn4HUcCLXRUmnpdpmr3sYq                                                                                                                               
    LqaYVM27ilK1sgfxgZSp1Tc5id2PIS+zhQC7XBZLjfmMU6QejWVNTAUW3JPuBKKW                                                                                                                               
    zTIAAepNAycI7XvAg4T9r1yWGOZSrcoRhKC7W04BCqbYSGBrN3CJqpWcmKzE054Q                                                                                                                               
    BvRjoAjjB69T/enyW9PLny5P5NLW5VICn98d19GNS13LZ8wxdvLwqRwzKb388GX+                                                                                                                               
    S047tf3BH/TOuXFijyldvpGR09vbUj7ueV8lhMJLwRl97eLd6XUasQY/QetPiknL                                                                                                                               
    TxMCtsyY                                                                                                                                                                                       
    -----END CERTIFICATE-----                                                                                                                                                                     
    subject=/C=US/ST=California/L=Mountain View/O=Google Inc/CN=*.google.com                                                                                                                       
    issuer=/C=US/O=Google Inc/CN=Google Internet Authority G2                                                                                                                                     
    ---                                                                                                                                                                                           
    No client certificate CA names sent                                                                                                                                                           
    Server Temp Key: ECDH, prime256v1, 256 bits                                                                                                                                                   
    ---                                                                                                                                                                                           
    SSL handshake has read 4593 bytes and written 373 bytes                                                                                                                                       
    ---                                                                                                                                                                                           
    New, TLSv1/SSLv3, Cipher is ECDHE-RSA-AES128-GCM-SHA256                                                                                                                                       
    Server public key is 2048 bit                                                                                                                                                                 
    Secure Renegotiation IS supported                                                                                                                                                             
    Compression: NONE                                                                                                                                                                             
    Expansion: NONE                                                                                                                                                                               
    SSL-Session:                                                                                                                                                                                   
        Protocol  : TLSv1.2                                                                                                                                                                       
        Cipher    : ECDHE-RSA-AES128-GCM-SHA256                                                                                                                                                   
        Session-ID: 519333A068690CBAF02FCCC3F117543934CEE4C844E144175C4A1BD029126510                                                                                                               
        Session-ID-ctx:                                                                                                                                                                           
        Master-Key: CAFC85FBC2204A3F6BA3A3F0DE80EDBF7758F053038F08C468087FD0093BF9C4E218448448C0871F1C4923245B019213                                                                               
        Key-Arg   : None                                                                                                                                                                           
        Krb5 Principal: None                                                                                                                                                                       
        PSK identity: None                                                                                                                                                                         
        PSK identity hint: None                                                                                                                                                                   
        TLS session ticket lifetime hint: 100800 (seconds)                                                                                                                                         
        TLS session ticket:                                                                                                                                                                       
        0000 - 1e bb 00 19 80 5b f2 a7-cb f7 56 1b 08 a3 23 9c   .....[....V...#.                                                                                                                 
        0010 - 23 60 0a 81 61 46 80 21-3f 0e f8 76 5a 05 08 22   #`..aF.!?..vZ.."                                                                                                                 
        0020 - 60 1f b5 1a 52 e3 1c 15-35 a6 b1 27 96 a7 b8 59   `...R...5..'...Y                                                                                                                 
        0030 - 9f 7c 1f 7b 7e e7 18 5f-3c 8f 86 be 3b 5f cf 2a   .|.{~.._<...;_.*                                                                                                                 
        0040 - 1f c8 1e 0d 58 b3 ed 12-c8 14 7d 16 41 ef 0a bd   ....X.....}.A...                                                                                                                 
        0050 - ae fb ae 42 51 34 10 c8-47 64 03 d2 30 30 03 69   ...BQ4..Gd..00.i                                                                                                                 
        0060 - 04 a4 06 3b 06 b3 ce e2-02 c2 27 da c9 fa ea d0   ...;......'.....                                                                                                                 
        0070 - 72 55 dc 13 74 f3 e9 2c-d0 e6 80 1c 83 67 2a 92   rU..t..,.....g*.                                                                                                                 
        0080 - d6 fc e7 ef 3f 61 e5 1d-34 1c c5 de f7 0a de 96   ....?a..4.......                                                                                                                 
        0090 - 44 71 e5 3f 4b 87 80 28-7e cf 0a a8 81 a3 bd 94   Dq.?K..(~.......                                                                                                                 
        00a0 - 02 25 be 5f                                       .%._                                                                                                                             
                                                                                                                                                                                                  
        Start Time: 1485077441                                                                                                                                                                     
        Timeout   : 300 (sec)                                                                                                                                                                     
        Verify return code: 20 (unable to get local issuer certificate)                                                                                                                           
    ---                                                                                                                                                                                           
    DONE                                               
     
  5. jackton

    jackton Premium Member Premium Member

    13
    0
    1
    Sep 24, 2014
    Ratings:
    +1
    Local Time:
    9:43 PM
    1.6.2
    10.0.13
  6. eva2000

    eva2000 Administrator Staff Member

    30,180
    6,786
    113
    May 24, 2014
    Brisbane, Australia
    Ratings:
    +10,139
    Local Time:
    9:43 PM
    Nginx 1.13.x
    MariaDB 5.5
    every download on your server results in 'Unable to locally verify the issuer's authority.' so something is probably wrong with server's ca-certs

    what os you using? specific version i.e. centos 6.7 or 6.8 or 7.2 or 7.3 ?

    how did you install 123.09beta01 ? via curl install command below ?
    Code (Text):
    yum -y update; curl -O https://centminmod.com/betainstaller.sh && chmod 0700 betainstaller.sh && bash betainstaller.sh
    
     
  7. jackton

    jackton Premium Member Premium Member

    13
    0
    1
    Sep 24, 2014
    Ratings:
    +1
    Local Time:
    9:43 PM
    1.6.2
    10.0.13
    Centos7

    git install

    curl https error......
    Code:
    curl https://yahoo.com
    curl: (77) error setting certificate verify locations:
      CAfile: /etc/pki/tls/certs/ca-bundle.crt
      CApath: none
    
     
  8. eva2000

    eva2000 Administrator Staff Member

    30,180
    6,786
    113
    May 24, 2014
    Brisbane, Australia
    Ratings:
    +10,139
    Local Time:
    9:43 PM
    Nginx 1.13.x
    MariaDB 5.5
    output for
    Code (Text):
    yum -y update ca-certificates
    yum list ca-certificates -q
    

    Code (Text):
    yum info ca-certificates -q
    rpm -ql ca-certificates
    

    Code (Text):
    curl -V
    ldd $(which curl)
    

    Code (Text):
    ls -lah /etc/pki/tls/certs
     
  9. jackton

    jackton Premium Member Premium Member

    13
    0
    1
    Sep 24, 2014
    Ratings:
    +1
    Local Time:
    9:43 PM
    1.6.2
    10.0.13
    Code:
    yum -y update ca-certificates                                                                                                                                         
    
    Loaded plugins: langpacks, priorities                                                                                                                                                         
    
    267 packages excluded due to repository priority protections                                                                                                                                 
    
    No packages marked for update
    
    yum list ca-certificates -q                                                                                                                                           
    
    Installed Packages                                                                                                                                                                           
    
    ca-certificates.noarch                                                                          2015.2.6-73.el7     
    
     yum info ca-certificates -q                                                                                                                                           
    
    Installed Packages                                                                                                                                                                           
    
    Name        : ca-certificates                                                                                                                                                                 
    
    Arch        : noarch                                                                                                                                                                         
    
    Version     : 2015.2.6                                                                                                                                                                       
    
    Release     : 73.el7                                                                                                                                                                         
    
    Size        : 1.1 M                                                                                                                                                                           
    
    Repo        : installed                                                                                                                                                                       
    
    From repo   : base                                                                                                                                                                           
    
    Summary     : The Mozilla CA root certificate bundle                                                                                                                                         
    
    URL         : http://www.mozilla.org/                                                                                                                                                         
    
    License     : Public Domain                                                                                                                                                                   
    
    Description : This package contains the set of CA certificates chosen by the                                                                                                                 
    
                : Mozilla Foundation for use with the Internet PKI.
    
    rpm -ql ca-certificates                                                                                                                                               
    
    /etc/pki/ca-trust                                                                                                                                                                             
    
    /etc/pki/ca-trust/README                                                                                                                                                                     
    
    /etc/pki/ca-trust/ca-legacy.conf                                                                                                                                                             
    
    /etc/pki/ca-trust/extracted                                                                                                                                                                   
    
    /etc/pki/ca-trust/extracted/README                                                                                                                                                           
    
    /etc/pki/ca-trust/extracted/java                                                                                                                                                             
    
    /etc/pki/ca-trust/extracted/java/README                                                                                                                                                       
    
    /etc/pki/ca-trust/extracted/java/cacerts                                                                                                                                                     
    
    /etc/pki/ca-trust/extracted/openssl                                                                                                                                                           
    
    /etc/pki/ca-trust/extracted/openssl/README                                                                                                                                                   
    
    /etc/pki/ca-trust/extracted/openssl/ca-bundle.trust.crt                                                                                                                                       
    
    /etc/pki/ca-trust/extracted/pem                                                                                                                                                               
    
    /etc/pki/ca-trust/extracted/pem/README                                                                                                                                                       
    
    /etc/pki/ca-trust/extracted/pem/email-ca-bundle.pem                                                                                                                                           
    
    /etc/pki/ca-trust/extracted/pem/objsign-ca-bundle.pem                                                                                                                                         
    
    /etc/pki/ca-trust/extracted/pem/tls-ca-bundle.pem                                                                                                                                             
    
    /etc/pki/ca-trust/source                                                                                                                                                                     
    
    /etc/pki/ca-trust/source/README                                                                                                                                                               
    
    /etc/pki/ca-trust/source/anchors                                                                                                                                                             
    
    /etc/pki/ca-trust/source/blacklist                                                                                                                                                           
    
    /etc/pki/ca-trust/source/ca-bundle.legacy.crt                                                                                                                                                 
    
    /etc/pki/java                                                                                                                                                                                 
    
    /etc/pki/java/cacerts                                                                                                                                                                         
    
    /etc/pki/tls                                                                                                                                                                                 
    
    /etc/pki/tls/cert.pem                                                                                                                                                                         
    
    /etc/pki/tls/certs                                                                                                                                                                           
    
    /etc/pki/tls/certs/ca-bundle.crt                                                                                                                                                             
    
    /etc/pki/tls/certs/ca-bundle.trust.crt                                                                                                                                                       
    
    /etc/ssl                                                                                                                                                                                     
    
    /etc/ssl/certs                                                                                                                                                                               
    
    /usr/bin/ca-legacy                                                                                                                                                                           
    
    /usr/bin/update-ca-trust                                                                                                                                                                     
    
    /usr/share/doc/ca-certificates-2015.2.6/README                                                                                                                                               
    
    /usr/share/man/man8/ca-legacy.8.gz                                                                                                                                                           
    
    /usr/share/man/man8/update-ca-trust.8.gz                                                                                                                                                     
    
    /usr/share/pki                                                                                                                                                                               
    
    /usr/share/pki/ca-trust-legacy                                                                                                                                                               
    
    /usr/share/pki/ca-trust-legacy/ca-bundle.legacy.default.crt                                                                                                                                   
    
    /usr/share/pki/ca-trust-legacy/ca-bundle.legacy.disable.crt                                                                                                                                   
    
    /usr/share/pki/ca-trust-source                                                                                                                                                               
    
    /usr/share/pki/ca-trust-source/README                                                                                                                                                         
    
    /usr/share/pki/ca-trust-source/anchors                                                                                                                                                       
    
    /usr/share/pki/ca-trust-source/blacklist                                                                                                                                                     
    
    /usr/share/pki/ca-trust-source/ca-bundle.neutral-trust.crt                                                                                                                                   
    
    /usr/share/pki/ca-trust-source/ca-bundle.supplement.p11-kit                                                                                                                                   
    
    /usr/share/pki/ca-trust-source/ca-bundle.trust.crt     
    
    
    curl -V                                                                                                                                                               
    
    curl 7.42.1 (x86_64-unknown-linux-gnu) libcurl/7.42.1 OpenSSL/1.0.1e zlib/1.2.7 libidn/1.28                                                                                                   
    
    Protocols: dict file ftp ftps gopher http https imap imaps ldap ldaps pop3 pop3s rtsp smb smbs smtp smtps telnet tftp                                                                         
    
    Features: IDN IPv6 Largefile NTLM NTLM_WB SSL libz UnixSockets
     
    
    ldd $(which curl)                                                                                                                                                     
    
            linux-vdso.so.1 =>  (0x00007ffdc67fb000)                                                                                                                                             
    
            libcurl.so.4 => /usr/local/lib/libcurl.so.4 (0x00007fd891646000)                                                                                                                     
    
            libssl.so.10 => /lib64/libssl.so.10 (0x00007fd8913c8000)                                                                                                                             
    
            libcrypto.so.10 => /lib64/libcrypto.so.10 (0x00007fd890fde000)                                                                                                                       
    
            libz.so.1 => /lib64/libz.so.1 (0x00007fd890dc8000)                                                                                                                                   
    
            libc.so.6 => /lib64/libc.so.6 (0x00007fd890a06000)                                                                                                                                   
    
            libidn.so.11 => /lib64/libidn.so.11 (0x00007fd8907d3000)                                                                                                                             
    
            liblber-2.4.so.2 => /lib64/liblber-2.4.so.2 (0x00007fd8905c4000)                                                                                                                     
    
            libldap-2.4.so.2 => /lib64/libldap-2.4.so.2 (0x00007fd890370000)                                                                                                                     
    
            libgssapi_krb5.so.2 => /lib64/libgssapi_krb5.so.2 (0x00007fd890122000)                                                                                                               
    
            libkrb5.so.3 => /lib64/libkrb5.so.3 (0x00007fd88fe3b000)                                                                                                                             
    
            libcom_err.so.2 => /lib64/libcom_err.so.2 (0x00007fd88fc36000)                                                                                                                       
    
            libk5crypto.so.3 => /lib64/libk5crypto.so.3 (0x00007fd88fa04000)                                                                                                                     
    
            libdl.so.2 => /lib64/libdl.so.2 (0x00007fd88f800000)                                                                                                                                 
    
            /lib64/ld-linux-x86-64.so.2 (0x00007fd8918ab000)                                                                                                                                     
    
            libresolv.so.2 => /lib64/libresolv.so.2 (0x00007fd88f5e5000)                                                                                                                         
    
            libsasl2.so.3 => /lib64/libsasl2.so.3 (0x00007fd88f3c8000)                                                                                                                           
    
            libssl3.so => /lib64/libssl3.so (0x00007fd88f185000)                                                                                                                                 
    
            libsmime3.so => /lib64/libsmime3.so (0x00007fd88ef5d000)                                                                                                                             
    
            libnss3.so => /lib64/libnss3.so (0x00007fd88ec37000)                                                                                                                                 
    
            libnssutil3.so => /lib64/libnssutil3.so (0x00007fd88ea0b000)                                                                                                                         
    
            libplds4.so => /lib64/libplds4.so (0x00007fd88e806000)                                                                                                                               
    
            libplc4.so => /lib64/libplc4.so (0x00007fd88e601000)                                                                                                                                 
    
            libnspr4.so => /lib64/libnspr4.so (0x00007fd88e3c3000)                                                                                                                               
    
            libpthread.so.0 => /lib64/libpthread.so.0 (0x00007fd88e1a6000)                                                                                                                       
    
            libkrb5support.so.0 => /lib64/libkrb5support.so.0 (0x00007fd88df97000)                                                                                                               
    
            libkeyutils.so.1 => /lib64/libkeyutils.so.1 (0x00007fd88dd93000)                                                                                                                     
    
            libcrypt.so.1 => /lib64/libcrypt.so.1 (0x00007fd88db5b000)                                                                                                                           
    
            librt.so.1 => /lib64/librt.so.1 (0x00007fd88d953000)                                                                                                                                 
    
            libselinux.so.1 => /lib64/libselinux.so.1 (0x00007fd88d72b000)                                                                                                                       
    
            libfreebl3.so => /lib64/libfreebl3.so (0x00007fd88d528000)                                                                                                                           
    
            libpcre.so.1 => /usr/local/lib/libpcre.so.1 (0x00007fd88d2b9000)           
    
    ls -lah /etc/pki/tls/certs                                                                                                                                             
    
    total 20K                                                                                                                                                                                     
    
    drwxr-xr-x. 2 root root 4.0K Dec 21 21:16 .                                                                                                                                                   
    
    drwxr-xr-x. 5 root root 4.0K Dec 21 21:16 ..                                                                                                                                                 
    
    lrwxrwxrwx  1 root root   49 Dec 21 21:16 ca-bundle.crt -> /etc/pki/ca-trust/extracted/pem/tls-ca-bundle.pem                                                                                 
    
    lrwxrwxrwx  1 root root   55 Dec 21 21:16 ca-bundle.trust.crt -> /etc/pki/ca-trust/extracted/openssl/ca-bundle.trust.crt                                                                       
    
    -rw-r--r--  1 root root    0 Jan 22 11:31 cacert.pem                                                                                                                                         
    
    -rwxr-xr-x  1 root root  610 Nov  6 11:48 make-dummy-cert                                                                                                                                     
    
    -rw-r--r--  1 root root 2.4K Nov  6 11:48 Makefile                                                                                                                                           
    
    -rwxr-xr-x  1 root root  829 Nov  6 11:48 renew-dummy-cert
     
  10. eva2000

    eva2000 Administrator Staff Member

    30,180
    6,786
    113
    May 24, 2014
    Brisbane, Australia
    Ratings:
    +10,139
    Local Time:
    9:43 PM
    Nginx 1.13.x
    MariaDB 5.5
    you using custom version of curl right ? how are you installing curl 7.42.1 ?

    centos 7 is curl 7.29 and latest custom curl is 7.52.1 curl - Changes

    when are you installing custom curl version before or after initial centmin mod install ? if you don't use custom curl and do fresh initial install does it work ?

    centos 7 default curl
    Code (Text):
    curl -V
    curl 7.29.0 (x86_64-redhat-linux-gnu) libcurl/7.29.0 NSS/3.21 Basic ECC zlib/1.2.7 libidn/1.28 libssh2/1.4.3
    Protocols: dict file ftp ftps gopher http https imap imaps ldap ldaps pop3 pop3s rtsp scp sftp smtp smtps telnet tftp
    Features: AsynchDNS GSS-Negotiate IDN IPv6 Largefile NTLM NTLM_WB SSL libz unix-sockets 


    centmin mod 123.09beta01 installed addons/customcurl.sh
    Code (Text):
    curl -V
    curl 7.52.1 (x86_64-redhat-linux-gnu) libcurl/7.52.1 NSS/3.21 Basic ECC zlib/1.2.7 libpsl/0.7.0 (+libicu/50.1.2) libssh2/1.8.0 nghttp2/1.7.1
    Protocols: dict file ftp ftps gopher http https imap imaps ldap ldaps pop3 pop3s rtsp scp sftp smb smbs smtp smtps telnet tftp
    Features: AsynchDNS IPv6 Largefile GSS-API Kerberos SPNEGO NTLM NTLM_WB SSL libz HTTP2 UnixSockets HTTPS-proxy Metalink PSL 


    Code (Text):
    ldd $(which curl)    
            linux-vdso.so.1 =>  (0x00007ffd6a572000)
            libcurl.so.4 => /lib64/libcurl.so.4 (0x00007fad49c1f000)
            libmetalink.so.3 => /lib64/libmetalink.so.3 (0x00007fad49a0f000)
            libssl3.so => /lib64/libssl3.so (0x00007fad497cb000)
            libsmime3.so => /lib64/libsmime3.so (0x00007fad495a4000)
            libnss3.so => /lib64/libnss3.so (0x00007fad4927e000)
            libnssutil3.so => /lib64/libnssutil3.so (0x00007fad49051000)
            libplds4.so => /lib64/libplds4.so (0x00007fad48e4d000)
            libplc4.so => /lib64/libplc4.so (0x00007fad48c48000)
            libnspr4.so => /lib64/libnspr4.so (0x00007fad48a09000)
            libpthread.so.0 => /lib64/libpthread.so.0 (0x00007fad487ed000)
            libdl.so.2 => /lib64/libdl.so.2 (0x00007fad485e9000)
            libz.so.1 => /lib64/libz.so.1 (0x00007fad483d2000)
            libc.so.6 => /lib64/libc.so.6 (0x00007fad48011000)
            libnghttp2.so.14 => /lib64/libnghttp2.so.14 (0x00007fad47def000)
            libssh2.so.1 => /lib64/libssh2.so.1 (0x00007fad47bc1000)
            libpsl.so.0 => /lib64/libpsl.so.0 (0x00007fad47949000)
            libgssapi_krb5.so.2 => /lib64/libgssapi_krb5.so.2 (0x00007fad476fb000)
            libkrb5.so.3 => /lib64/libkrb5.so.3 (0x00007fad47413000)
            libk5crypto.so.3 => /lib64/libk5crypto.so.3 (0x00007fad471e1000)
            libcom_err.so.2 => /lib64/libcom_err.so.2 (0x00007fad46fdd000)
            liblber-2.4.so.2 => /lib64/liblber-2.4.so.2 (0x00007fad46dcd000)
            libldap-2.4.so.2 => /lib64/libldap-2.4.so.2 (0x00007fad46b7a000)
            libexpat.so.1 => /lib64/libexpat.so.1 (0x00007fad46950000)
            librt.so.1 => /lib64/librt.so.1 (0x00007fad46747000)
            /lib64/ld-linux-x86-64.so.2 (0x00007fad49eae000)
            libssl.so.10 => /lib64/libssl.so.10 (0x00007fad464d9000)
            libcrypto.so.10 => /lib64/libcrypto.so.10 (0x00007fad460ee000)
            libicuuc.so.50 => /lib64/libicuuc.so.50 (0x00007fad45d75000)
            libicudata.so.50 => /lib64/libicudata.so.50 (0x00007fad447a1000)
            libkrb5support.so.0 => /lib64/libkrb5support.so.0 (0x00007fad44591000)
            libkeyutils.so.1 => /lib64/libkeyutils.so.1 (0x00007fad4438d000)
            libresolv.so.2 => /lib64/libresolv.so.2 (0x00007fad44173000)
            libsasl2.so.3 => /lib64/libsasl2.so.3 (0x00007fad43f55000)
            libstdc++.so.6 => /lib64/libstdc++.so.6 (0x00007fad43c4c000)
            libm.so.6 => /lib64/libm.so.6 (0x00007fad43949000)
            libgcc_s.so.1 => /lib64/libgcc_s.so.1 (0x00007fad43733000)
            libselinux.so.1 => /lib64/libselinux.so.1 (0x00007fad4350c000)
            libcrypt.so.1 => /lib64/libcrypt.so.1 (0x00007fad432d4000)
            libpcre.so.1 => /usr/local/lib/libpcre.so.1 (0x00007fad43065000)
            libfreebl3.so => /lib64/libfreebl3.so (0x00007fad42e62000)


    what else are you modifying before initial centmin mod install if anything ?

    so

    seems like problem could be related to your custom curl 7.42.1 version installed ?
     
    Last edited: Feb 4, 2017