Forum Discussion

faizan123_23330's avatar
faizan123_23330
Icon for Nimbostratus rankNimbostratus
Aug 06, 2017

SSL Handshake failure between F5 and Back end Nginx server

Hi, We have load balanced the Nginx server through F5. Configured the Pool members and also create the VS.

 

The connection between the Client and F5 is HTTPS and The connection between the F5 and Server is also the HTTPs.

 

We have added the SSL certificate on the client and Server profiles.when we request the F5 we do not get any respond from the server.

 

When we seen the packet capture between the F5 and Server there is SSL handshake failure.

 

-> 7326.58908310.50.81.4610.50.81.71TLSv1.2240Client Hello

 

-> 7426.58936610.50.81.7110.50.81.46TCP156443→52469 [ACK] Seq=1 Ack=85 Win=14600 Len=0

 

-> 7526.58995210.50.81.7110.50.81.46TLSv1.2163Alert (Level: Fatal, Description: Handshake Failure)

 

What is the reason for that. Kindly help me in resolving the issue.

 

  • Snl's avatar
    Snl
    Icon for Cirrostratus rankCirrostratus

    please check you server ssl profile , there might be mismatch in TLS or cipher

     

    try to access the VS without any client and server ssl profile and see you are able to access if yes , then monitor the statistics of client and server ssl profile

     

    Good luck

     

  • Hello faizan,

     

    Which SSL server profile are you using ?

     

    Try to use the "insecure-ssl-cert" that will accept depreciated TLS version and ciphers

     

    Hope it helps

     

    Regards