Gathering detailed information for ssl errors in the event log

Solution

Overview

It can be useful to increase the verbosity of ssl errors in the proxy SG event log, since by default the proxy does not include URL, user agent and client details in the ssl error entries.

Cause
Resolution

The following CPL code allows more info to be gathered, to help with identifying problematic website or clients for ssl troubleshooting:

Add these lines in local policy under Configuration -> Policy -> Policy Files -> Install Local File from "Text Editor":

<exception>

exception.id=ssl_failed action.ssl_log(yes)

define action ssl_log

log_message("SSL error or failure occurred at URL: $(url) with User-agent: $(request.header.User-Agent) from client-IP: $(c-ip)")

end

Workaround
Additional Information
Bug Number
InQuira Doc IdKB4674
Attachment

Article Feedback

Did this Article solve your issue?
Additional Comments:
 
Previous MonthNext Month
SunMonTueWedThuFriSat