Ali cloud environments TLS / SSL handshake fails scene analysis

TLS / SSL handshake is a relatively complicated process, combined with the product, safety features such as Ali cloud environment, may make TLS / SSL handshake process more uncertainty of. This article summarizes the various handshake failed to scene.

A TLS / SSL handshake process

This article does not detail TLS / SSL basics related presentations can refer to the article . FIG 3 below describes three kinds of TLS / SSL handshake whole process.

Server authentication handshake completely (Full Handshake with Mutual Authentication)
This model is validated most of the Internet traffic using HTTPS. Certificate on the server, the client to verify that the server certificate through reliable.
ssl1

The full two-way authentication handshake (Full Handshake with Server Authentication)
that is required for client security authentication mode. In addition to the client to verify the server, the server to the client also needs to be verified, so you need two-way authentication. And the above steps compared to more customers

Guess you like

Origin yq.aliyun.com/articles/708243