[Kea-users] HTTP_CONNECTION_HANDSHAKE_FAILED TLS handshake

Oscar Carlsson oscar at spindel.tax
Wed Nov 24 12:14:49 UTC 2021


Veronique Lefebure <veronique.lefebure at cern.ch> writes:

> Hi,
>
> I am testing a high availibility setup for 2 KEA dhcp4 servers.
> I get these errors:
>
> 2021-11-24 11:33:41.962 DEBUG 
> [kea-ctrl-agent.http/8134.140201213065408] 
> HTTP_CONNECTION_HANDSHAKE_START start TLS handshake with 
> xx.xx.xx.252 with timeout 10
> 2021-11-24 11:33:42.963 INFO 
> [kea-ctrl-agent.http/8134.140201213065408] 
> HTTP_CONNECTION_HANDSHAKE_FAILED TLS handshake with xx.xx.xx.252 
> failed with wrong version number
> 2021-11-24 11:33:42.963 DEBUG 
> [kea-ctrl-agent.http/8134.140201213065408] HTTP_CONNECTION_STOP 
> stopping HTTP connection from xx.xx.xx.252
>
> Any idea how I can debug that ?
> Both servers are installed and configured the same way.
> And I see the same errors on both servers.
> Thanks,
> Veronique
>
> _______________________________________________
> ISC funds the development of this software with paid support 
> subscriptions. Contact us at https://www.isc.org/contact/ for 
> more information.
>
> To unsubscribe visit 
> https://lists.isc.org/mailman/listinfo/kea-users.
>
> Kea-users mailing list
> Kea-users at lists.isc.org
> https://lists.isc.org/mailman/listinfo/kea-users

Hi,

What happens when you try to connect manually (using curl et c) to 
the
address and port your respective control agent is listening to?

And judging by the documentation, there's no native support for 
TLS in
the control agent.  Why does the control agent try to connect 
using TLS?


Regards,
Oscar


More information about the Kea-users mailing list