Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XG Firewall v18 Logmein Dropped due to TLS engine error: INTERNAL_CRYPTO_ERROR[260]

For anybody troubleshooting Logmein connections:

 

With SSL/TLS inspection enabled I could not use Logmein Remote Desktop

After inspecting the Log viewer there was this error "Red Lock" SSL/TLS inspection

I checked the Control center -> SSL/TLS connections 

Click on Fix errors

There was an IP Address (Logmein server) 95.172.70.188

Click on IP and select on bottom "Exclude from decryption"

That solved my problem and now I can connect to Logmein Desktops

 

There is maybe a bug in [SSL/TLS inspection rules] because I am unable to "Reset usage count"

 

Log viewer error:

SSL/TLS inspection
messageid="19006"
log_type="SSL"
log_component="SSL"
log_subtype="Error"
severity="Information"
user=""
src_ip="1.2.3.4"
dst_ip="95.172.70.188"
user_group=""
src_country="R1"
dst_country="GBR"
src_port="50190"
dst_port="443"
app_name=""
app_id="0"
category="IPAddress"
category_id="83"
con_id="1532574592"
rule_id="3"
profile_id="1"
rule_name="Exclusions by website or category 1"
profile_name="Maximum compatibility"
bitmask="Valid"
key_type="KEY_TYPE__RSA"
fingerprint="d5:8f:d4:9d:59:9a:d0:3e:95:65:b9:ac:15:a1:28:29:f5:8e:e7:b4"
resumed="1"
cert_chain_served="TRUE"
cipher_suite="TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384"
sni="95.172.70.188"
tls_version="TLS1.2"
reason="Dropped due to TLS engine error: INTERNAL_CRYPTO_ERROR[260]"
exception=""
message=""



This thread was automatically locked due to age.
Parents Reply Children
No Data