Forum Discussion
LouisL-3_235765
Nimbostratus
Nov 26, 2015SSL Termiation with load balancer occassionally causing SSL handshake exception
We are trying to achieve SSL termination using the LTM. The incoming connection from the router is using SSL (TLSv1.2) with client authentication to a virtual server with just the client SSL profile....
Brad_Parker
Cirrus
Nov 27, 2015First, your subsequent connections will not try to resume the SSL session unless the client initiates as resumption by sending the session ID in the client Hello stating that it wants to resume the session. As for your error. Your client is the one terminating the handshake because of "Certificate Unknown". That is generally because of a chain issue. Ensure you are sending the proper chain certs to the client and then check that your client trusts the root of the chain you are sending.
- LouisL-3_235765Nov 27, 2015
Nimbostratus
Thanks for the information regarding the SSL session.The chain certs are correct and the client trusts the root of that chain, which is why it will work most of the time, it only gives us this error when the requests are sent in quick succession which is why this problem has baffled us.
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects