Forum Discussion

Prince's avatar
Prince
Icon for Altostratus rankAltostratus
Jan 31, 2016

LTM HA Disconnected Issue / Device Trust

Hello Experts,

 

I have two devices deployed in HA. Device01- Active Device02- Standby

 

Devices are of version 11.1.0

 

I see that Device02 which is in standby state, the Trust Status is showing as in SYNC.

 

On 02:

When i go to Main> Device Management> Device Trust> Local Domain

 

I see peer device certificate is added as Subordinate Non-Authority Devices.

 

On 01:

When i go to Main> Device Management> Device Trust> Local Domain

 

I see peer device certificate is added as Authority Devices.

 

I can do iqdump from 02 device to 01 device however the reverse is not working.

 

When doing iqdump from 01 to 02 getting below error:

 

iqdump 1.1.1.2[K1

12063:error:14094418:SSL routines:SSL3_READ_BYTES:tlsv1 alert unknown ca:s3_pkt.c:1102:SSL alert number 48

 

Before trying to reset the device trust I would like to find out the root cause of this issue.

 

Can someone please advise here ?

 

3 Replies

  • I'd recommend creating a case with F5 regarding this. Please post your findings if there are any!
  • Opening a ticket with support is not a bad idea, but I suspect this is because your second device is not a trusted device. The non authoritative device trusts the authoritative device, but the reverse is not true. If you add the non authoritative device as an authoritative device in the device trust, this error should go away.

     

  • Hi Chris, Unforunately the support contract has expired. So trying to find out what is the exact reason of this before even trying to reset the trust.