Forum Discussion
Load Balancing Puppet Masters...SSL Profiles
I am looking to setup load balancing infront of the Puppet Master servers. I am running 11.5.1 HF7. My customer wants me to pass the client certificate on the clientside as the client certificate on the serverside. I have been trying to play with ProxySSL, but I keep getting failed handshake connections.
Anyone have some suggestions to try?
Cipher c011:3 negotiated is not configured in profile /Common/foreman-puppetmaster-te.
Connection error: ssl_hs_pxy_scan:9211: unavailable suite (47)
Cipher c011:3 negotiated is not configured in profile /Common/foreman-puppetmaster-te.
Connection error: ssl_hs_pxy_scan:9515: unavailable suite (47)
SSL Handshake failed for TCP 10.244.36.11:49047 -> 10.244.1.96:8140
SSL Handshake failed for TCP 10.246.80.119:8140 -> 10.244.1.96:49047
4 Replies
- shaggy_121467
Cumulonimbus
From those messages it looks as if the client and server cipher suites may not be compatible.
The "recommendations" section has a few notes about ciphers - https://support.f5.com/kb/en-us/solutions/public/13000/300/sol13385.html
- Messe
Nimbostratus
I am going to work with my customer on that. My other question is am I heading in the right direction or is there a different simplier solution?
- shaggy
Nimbostratus
From those messages it looks as if the client and server cipher suites may not be compatible.
The "recommendations" section has a few notes about ciphers - https://support.f5.com/kb/en-us/solutions/public/13000/300/sol13385.html
- Messe
Nimbostratus
I am going to work with my customer on that. My other question is am I heading in the right direction or is there a different simplier solution?
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
