[squid-users] Got [No Error] (TLS code: SQUID_ERR_SSL_HANDSHAKE)

Amos Jeffries squid3 at treenet.co.nz
Sun Mar 17 07:45:26 UTC 2019


On 17/03/19 8:22 pm, Itai Tieger wrote:
> This is the capture file: 
> sniff.cap
> <http://squid-web-proxy-cache.1019090.n4.nabble.com/file/t377689/sniff.cap>  
> I can't seem to understand what is the problem, what exactly is missing and
> how can I debug it myself? 

Your trace shows TCP stream #35 as the only one to that server IP
address. The handshake is successful in that stream.


> 
> I also get many 
>  32	2019/02/25 00:09:19 kid1| ERROR: negotiating TLS on FD 43:
> error:1416F086:SSL routines:tls_process_server_certificate:certificate
> verify failed (1/-1/0) 
> in the log, might be related... ?
> 

Possibly. The server certificate being invalid or otherwise unable to
verify would certainly be a handshake failure.

Amos


More information about the squid-users mailing list