cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
804
Views
3
Helpful
2
Replies

Problem with SSL on ACE

cisco_lite
Level 1
Level 1

The self-signed certificate on ACE was working perfectly fine. I removed it for some reason. And then put it back after few days. Now the https is not working.

On Firefox, following error is returned

SSL received a record that exceeded the maximum permissible length.

ssl_error_rx_record_too_long

And on Ethereal (both IE and FireFox), I can see 'SSL Continuation Data' sent back by the ACE with HTTP/1.1 400 Bad Request message saying the request contains invalid syntax.

Please assist. Thank you.

2 Replies 2

Gilles Dufour
Cisco Employee
Cisco Employee

There is a known defect that was fixed in A2(1.3) and A3(2.1)

CSCsu74351: SSL Client Sends Bad Record MAC fatal alert due to TCP .

Description:

Sometimes Firefox reports ssl_error_bad_mac_read or ssl_error_rx_record_too_long and partially loads a page. Internet Explorer will also fail to load the page but will not report the error.

Gilles.

The issue is resolved. Wrong configuration.