Refuse to establish TLS connection, ask some help , appreciate #6879
-
Prerequisites
Platform (OS and CPU architecture)Linux, AMD64 (aka x86_64) InstallationOther (please mention in the description) SetupOn one machine AdGuard Home versionmaster Action
Expected result
Actual resultAdditional information and/or screenshots |
Beta Was this translation helpful? Give feedback.
Replies: 11 comments 4 replies
-
my pcap (when browse access url: https://www.bxydoh.com.cn) |
Beta Was this translation helpful? Give feedback.
-
Are your root ca up to date? Have you added yours issuers ca to your system too? |
Beta Was this translation helpful? Give feedback.
-
you mean , add my tst adguardhome server 's certficate ca root crt into my local machine os ? |
Beta Was this translation helpful? Give feedback.
-
when my tst_adguardhome_server recv tls handleshake ---> client hello, then response RST and disconnect connection just use https://ip:port/#logs just ok .. mabe it's related to the domain name,,,or common name in server's cert |
Beta Was this translation helpful? Give feedback.
-
I mean your Domains certificate. Here is an easy way to setup a certificate:
How have you generated your certificate? Maybe i can think better into your problem. |
Beta Was this translation helpful? Give feedback.
-
Sounds like failed handshake, because public key is not known or not trusted and cannot decrypt or validate the certificate. |
Beta Was this translation helpful? Give feedback.
-
Maybe wrong .pem file selected in adguard home? |
Beta Was this translation helpful? Give feedback.
-
from vultr..
ssh audit works.. so we have valid 22/tcp.. 8< -- SNIP -- >8
working with lego.. @andylau004 https://github.com/go-acme/lego curl -v -I https://47.121.29.24 -k 8< -- SNIP -- >8
Can you generate self signed and load those.. Looks like the intermediate cert isn't there.. |
Beta Was this translation helpful? Give feedback.
-
Thats also my guess. Either wrong .pem or intermediate cert is not set in the sys ca storage |
Beta Was this translation helpful? Give feedback.
-
Let me move this to a discussion, as I guess it makes more sense. Thanks ! |
Beta Was this translation helpful? Give feedback.
Let me move this to a discussion, as I guess it makes more sense. Thanks !