Forum Discussion
johtte_168100
Nov 09, 2015Nimbostratus
ssl handshake failure with backend server
Hi, I am trying to SSL termination to backend server using client profile and server profile.
This is the server profile:
admin@(f5lab01-asm)(cfg-sync In Sync)(Active)(/Common)(tmos) list ...
Kevin_Stewart
Nov 11, 2015Employee
For what it's worth, the server is sending a FIN right after the client's ClientHello. That would never indicate that the server requires a client certificate as the CertificateRequest message is AFTER the server's ServerHello and Certificate messages. At most the reasons for the server not sending a ServerHello would be (in general order of precedence):
- No support for the client's preferred protocol version or list of supported ciphers
- A missing server name indicator (SNI) extension, if the server requires it
- Some unknown or incorrect TLS extension
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects