Zabbix Documentation 3.0

2.23.04.04.2 (current)In development:4.4 (devel)Unsupported:1.82.02.43.23.4

User Tools

Site Tools


manual:encryption:troubleshooting:connection_permission_problems

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revision Previous revision
Next revision
Previous revision
manual:encryption:troubleshooting:connection_permission_problems [2019/04/04 15:59]
andris [One side connects with PSK but other side uses LibreSSL, OpenSSL without PSK support or has been compiled without encryption support]
manual:encryption:troubleshooting:connection_permission_problems [2019/04/08 09:15]
martins-v formatting change
Line 58: Line 58:
 LibreSSL does not support PSK. LibreSSL does not support PSK.
  
-== In connecting-side log: ==+In connecting-side log:
   ...TCP successful, cannot establish TLS to [[192.168.1.2]:​10050]:​ SSL_connect() I/O error: [0] Success   ...TCP successful, cannot establish TLS to [[192.168.1.2]:​10050]:​ SSL_connect() I/O error: [0] Success
  
-== In accepting-side log: == +In accepting-side log: 
-   ​...failed to accept an incoming connection: from 192.168.1.2:​ support for PSK was not compiled in +  ...failed to accept an incoming connection: from 192.168.1.2:​ support for PSK was not compiled in 
-   ​ + 
-== In Zabbix frontend ​== +In Zabbix frontend: 
-    +  Get value from agent failed: TCP successful, cannot establish TLS to [[192.168.1.2]:​10050]:​ SSL_connect() I/O error: [0] Success 
-   ​Get value from agent failed: TCP successful, cannot establish TLS to [[192.168.1.2]:​10050]:​ SSL_connect() I/O error: [0] Success+ 
 +=== One side connects with PSK but other side uses OpenSSL with PSK support disabled === 
 + 
 +In connecting-side log: 
 +  ...TCP successful, cannot establish TLS to [[192.168.1.2]:​10050]:​ SSL_connect() set result code to SSL_ERROR_SSL:​ file ../​ssl/​record/​rec_layer_s3.c line 1536: error:​14094410:​SSL routines:​ssl3_read_bytes:​sslv3 alert handshake failure: SSL alert number 40: TLS read fatal alert "​handshake failure"​ 
 + 
 +In accepting-side log: 
 +  ...failed to accept an incoming connection: from 192.168.1.2:​ TLS handshake set result code to 1: file ssl/​statem/​statem_srvr.c line 1422: error:​1417A0C1:​SSL routines:​tls_post_process_client_hello:​no shared cipher: TLS write fatal alert "​handshake failure"​