Forum Discussion
LTM HA Disconnected Issue / Device Trust
Hello Experts,
I have two devices deployed in HA. Device01- Active Device02- Standby
Devices are of version 11.1.0
I see that Device02 which is in standby state, the Trust Status is showing as in SYNC.
On 02:
When i go to Main> Device Management> Device Trust> Local Domain
I see peer device certificate is added as Subordinate Non-Authority Devices.
On 01:
When i go to Main> Device Management> Device Trust> Local Domain
I see peer device certificate is added as Authority Devices.
I can do iqdump from 02 device to 01 device however the reverse is not working.
When doing iqdump from 01 to 02 getting below error:
iqdump 1.1.1.2[K1
12063:error:14094418:SSL routines:SSL3_READ_BYTES:tlsv1 alert unknown ca:s3_pkt.c:1102:SSL alert number 48
Before trying to reset the device trust I would like to find out the root cause of this issue.
Can someone please advise here ?
3 Replies
- I'd recommend creating a case with F5 regarding this. Please post your findings if there are any!
- Chris_Grant
Employee
Opening a ticket with support is not a bad idea, but I suspect this is because your second device is not a trusted device. The non authoritative device trusts the authoritative device, but the reverse is not true. If you add the non authoritative device as an authoritative device in the device trust, this error should go away.
- Prince
Altostratus
Hi Chris, Unforunately the support contract has expired. So trying to find out what is the exact reason of this before even trying to reset the trust.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com