This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

RED15 does not connect anymore to UTM after update to 9.701-6 - Cannot do SSL handshake

Hello,

i am frustrated. Since 4. Februar, after i updated the SG115 UTM to 9.701-6 the connection to a remote RED15 is not working.

Error from the RED Live Log in the UTM:
...
2020:03:17-09:22:35 fw red_server[32740]: SELF: Cannot do SSL handshake on socket accept from '185.153.199.118': SSL accept attempt failed with unknown error error:140760FC:SSL routines:SSL23_GET_CLIENT_HELLO:unknown protocol
2020:03:17-10:12:28 fw red_server[31463]: SELF: (Re-)loading device configurations
...
 
Sophos send me 2 times a replacement RED15, but this did not help.
The method to deleted the RED15 connection and reconfigure it from gound does not help.
 
Update UTM to 9.702-1 did not help.
 
I have the indiction that Sophos has a lot of customers with this SSL Problem, but can not find the reason for the bug.
For me the conclusion is that UTM-RED15 is not a professional VPN solution anymore.
If it works its so easy and simple to setp and use.
But what is the alternative?
 
But with this problem, not the second time after a UTM Firmware update it makes me headache and it costs us money now.
The Homeoffice worker needs to becasue she has 2 kids and they can not go to scjhool anymore.
 
 
Anyone here with the same SSL Problem and an idea for a solution or alternative solution which is easy to use?
 
Regards, Reinhold
 


This thread was automatically locked due to age.
Parents
  • Hallo Reinhold,

    This is not a common problem today.  You really should insist that Sophos Support escalate this immediately.  It's probably too late now for you to get a German engineer today, but you should be able to get the case escalated now in preparation for tomorrow.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Reply
  • Hallo Reinhold,

    This is not a common problem today.  You really should insist that Sophos Support escalate this immediately.  It's probably too late now for you to get a German engineer today, but you should be able to get the case escalated now in preparation for tomorrow.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Children
No Data