For more information regarding the security incident at F5, the actions we are taking to address it, and our ongoing efforts to protect our customers, click here.

Forum Discussion

OTS02's avatar
OTS02
Icon for Cirrus rankCirrus
Jul 23, 2015

monitor for adfs server (GTM)

I cannot create a https monitor for our adfs servers from the GTM. I have tried many different ciphers. Tried offering only the cipher used by my Firefox browser. Curl shows the TLS handshake soundly rejected. Packet captures and firewall logs suggest the same thing - TLS handshake a non-starter.

 

My monitor send-string is:

 

GET /adfs/ls/IdpInitiatedSignon.aspx HTTP/1.1\r\nHost: adfs.open-techs.com

 

looking for html title.

 

Any suggestions?

 

[root@DNS2:Active:Standalone] tmp curl -v2 https://adfs.open-techs.com/adfs/ls/IdpInitiatedSignon.aspx

 

  • About to connect() to adfs.open-techs.com port 443 (0)
  • Trying 12.178.113.8... connected
  • Connected to adfs.open-techs.com (12.178.113.8) port 443 (0)
  • successfully set certificate verify locations:
  • CAfile: /etc/pki/tls/certs/ca-bundle.crt CApath: none
  • SSLv2, Client hello (1):
  • Unknown SSL protocol error in connection to adfs.open-techs.com:443
  • Closing connection 0 curl: (35) Unknown SSL protocol error in connection to adfs.open-techs.com:443 [root@DNS2:Active:Standalone] tmp

15 Replies