Forum Discussion
Bhargav_9588
Nimbostratus
Oct 24, 2008handshake_failure
Hello,
After upgrading LTM to 9.3.1 we started noticing "handshake_failure" errors with java clients that are trying to connect to https://www.***.com/ (virtual server in LTM with Clien...
Bhargav_9588
Nimbostratus
Oct 24, 2008Thanks Aaron!
I have tried s_client and I see the following (handshake failure):
openssl s_client -connect www.xyz.com:443 -CAfile ../../IssuingCA.cer
CONNECTED(00000004)
depth=1 /emailAddress=email@xyz.com/C=**/ST=**/L=***/O=Corp./OU=Corporate/CN=Corp. CA
verify error:num=2:unable to get issuer certificate
issuer= /emailAddress=cisinfrastructure@aes.com/C=**/ST=**/L=***/O=The XYZ Corp./OU=Corporate/CN=Root CA
verify return:0
1618:error:140790E5:SSL routines:SSL23_WRITE:ssl handshake failure:s23_lib.c:226:
It works fine with no issues from browser. We started seeing issues with java clients after upgrading LTM.
I have not made success yet to decrypt tcpdump file using ssldump.
Thanks in advance.
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects
