Forum Discussion

Anzine321's avatar
Anzine321
Icon for Altocumulus rankAltocumulus
Mar 19, 2024

ssl handshake failed

Hi 

i have a problem ssl failed handshake, scenario for testing 100k workload but many connecton failed.

error on ltm 

SSL Handshake failed for TCP

Connection error: ssl_codec_rx:2299: alert(90) received alert

i am not sure is that related with ssl connection handle or limit, i checked license tps ssl unlimited

dump and only find rst from client

is there any step how to troubleshoot ist because some connection estabilished

 

 

  • You will need to investigate a little more.

    here is more about error messages:

    https://my.f5.com/manage/s/article/K29346112

    here is how to troubleshoot:

    https://my.f5.com/manage/s/article/K15292

     

    user_canceled:  This alert notifies the recipient that the sender is
          canceling the handshake for some reason unrelated to a protocol
          failure.  If a user cancels an operation after the handshake is
          complete, just closing the connection by sending a "close_notify"
          is more appropriate.  This alert SHOULD be followed by a
          "close_notify".  This alert generally has AlertLevel=warning.

    https://my.f5.com/manage/s/article/K72083508

     

     

    • Anzine321's avatar
      Anzine321
      Icon for Altocumulus rankAltocumulus

      Hi

      i cant see any log only rst and error code 

      sometime ssl handshake estabilish and with workload many session failed

      i am not sure is that related to handle ssl handshake with high traffic ?

  •  Do you have issues when there is high traffic? How is CPU,mem looking? Is there a large number of SSL sessions when you start to see issues? Compare  with  your platform capabilities, but I don't think you have that many SSL sessions.

    • Anzine321's avatar
      Anzine321
      Icon for Altocumulus rankAltocumulus

      cpu and memory up to 60%, opencase to f5 and no related to ssl handshake