Re: [squid-users] Error Negotiating SSL Connection error

From: Henrik Nordstrom <henrik@dont-contact.us>
Date: Tue, 20 Mar 2007 12:49:32 +0100

fre 2007-03-09 klockan 07:37 -0500 skrev JSiergiej@pennsoftware.com:

> 2007/02/15 08:29:04 | fwdNegotiateSSL: Error negotiating SSL connection on
> FD 23: error:140940F6:SSL routines:SSL3_READ_BYTES:unknown alert type
> (1/-1/0)
> 2007/02/15 08:29:04 | TCP connection to 192.168.0.20/443 failed

This is an error in opening the SSL connection to the web server,
squid->webserver.

> cache_peer 192.168.0.20 parent 443 0 no-query originserver ssl name=opaccess.companyname.com

I think the best thing to do here is to inspect the traffic with
ssldump. You may need the certificate key of the web server to make
sense of the exchanged data..

> The numbers after FD (e.g. 23) changes to different numbers as the errors
> repeat themselves.

It's normal that the FD number changes when seeing this error. But you
should not get the error..

Regards
Henrik

Received on Tue Mar 20 2007 - 05:49:40 MDT

This archive was generated by hypermail pre-2.1.9 : Sat Mar 31 2007 - 13:00:02 MDT