<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="https://community.sophos.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>BUG - TLS engine error</title><link>https://community.sophos.com/sophos-xg-firewall/sfos-v18-early-access-program/f/feedback-and-issues/118041/bug---tls-engine-error</link><description>Hi folks, 
 I have been seeing this one appear randomly in the logs, 
 The affect is not obvious to me because the device is a security light controller which is consistently updating the remote portal. 
 
 
 Ian</description><dc:language>en-US</dc:language><generator>Telligent Community 12</generator><item><title>RE: BUG - TLS engine error</title><link>https://community.sophos.com/thread/427750?ContentTypeID=1</link><pubDate>Tue, 04 Feb 2020 20:55:27 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:8eabb261-260c-440a-8c89-7f40c2b2c692</guid><dc:creator>Michael Dunn</dc:creator><description>&lt;p&gt;Combination of:&lt;/p&gt;
&lt;p&gt;Might be fixed already.&lt;/p&gt;
&lt;p&gt;No real world impact.&lt;/p&gt;
&lt;p&gt;This might be perfectly normal.&lt;/p&gt;
&lt;p&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;As for the latter, the logs will show all sorts of weird behavior from clients that may show as failures but are perfectly normal.&lt;/p&gt;
&lt;p&gt;For example:&amp;nbsp; Download a pdf in a browser.&amp;nbsp; What you will see is the browser starts the download, see that it is a pdf, and then drops the connection.&amp;nbsp; It loads the pdf viewer plug-in and then the plug-in downloads the pdf.&amp;nbsp; If you look at the logs you see a failed download followed by a successful download.&amp;nbsp; Which is exactly correct.&amp;nbsp;&amp;nbsp;That is why we try not to start at the log file looking for problems, we try to start at the end user/app having a problem.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: BUG - TLS engine error</title><link>https://community.sophos.com/thread/427748?ContentTypeID=1</link><pubDate>Tue, 04 Feb 2020 20:31:36 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:2cd28025-b3dc-4c0e-a0b5-12bc03fa2163</guid><dc:creator>rfcat_vk</dc:creator><description>&lt;p&gt;Hi Michael,&lt;/p&gt;
&lt;p&gt;that is fine, I raised it and I suspect you have a wait and see what the v18GA fixes?&lt;/p&gt;
&lt;p&gt;Ian&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: BUG - TLS engine error</title><link>https://community.sophos.com/thread/427746?ContentTypeID=1</link><pubDate>Tue, 04 Feb 2020 20:18:14 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:184f9e71-a3b6-4240-b533-88a76e19528e</guid><dc:creator>Michael Dunn</dc:creator><description>&lt;p&gt;Since the second attempt succeeds, this could be an expected scenario where it does something like attempt a connection, drops it, and the does the real connection.&lt;/p&gt;
&lt;p&gt;I don&amp;#39;t think we need to investigate right now.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: BUG - TLS engine error</title><link>https://community.sophos.com/thread/427299?ContentTypeID=1</link><pubDate>Thu, 30 Jan 2020 21:25:29 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:6c8e869c-f430-4b28-8ebb-61a092449cfb</guid><dc:creator>rfcat_vk</dc:creator><description>&lt;p&gt;Hi Rob,&lt;/p&gt;
&lt;p&gt;the only details I have are in the screenshot I posted above, the device is an IoT which connects regularly to the internet server.&lt;/p&gt;
&lt;p&gt;I note at times it makes two attempts, one IP address fails with the error message and the next succeeds, but in this case it was the same server.&lt;/p&gt;
&lt;p&gt;Ian&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: BUG - TLS engine error</title><link>https://community.sophos.com/thread/427283?ContentTypeID=1</link><pubDate>Thu, 30 Jan 2020 18:02:03 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:3022b5ea-c98f-4770-a4cc-2e8cfdaadc69</guid><dc:creator>Rob Andrews</dc:creator><description>&lt;p&gt;That could be a different issue, unrelated to these messages.&amp;nbsp; Can you provide more details on the 2 attempts to connect.&amp;nbsp;&amp;nbsp;@Michael Dunn can you look at this please?&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: BUG - TLS engine error</title><link>https://community.sophos.com/thread/427179?ContentTypeID=1</link><pubDate>Wed, 29 Jan 2020 21:47:56 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:676733c9-373c-4519-b210-f491c13b74e0</guid><dc:creator>rfcat_vk</dc:creator><description>&lt;p&gt;Hi Rob,&lt;/p&gt;
&lt;p&gt;I thought that the messages might be an issue because it takes the device two attempts to connect.&lt;/p&gt;
&lt;p&gt;Ian&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: BUG - TLS engine error</title><link>https://community.sophos.com/thread/427153?ContentTypeID=1</link><pubDate>Wed, 29 Jan 2020 15:43:25 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:13dcddd8-bddb-4926-b8ca-8e7b87f3dbc9</guid><dc:creator>Rob Andrews</dc:creator><description>&lt;p&gt;Hi Ian,&lt;/p&gt;
&lt;p&gt;These are&amp;nbsp;internal debugging messages that have been surfaced in the logs with this text.&amp;nbsp; &amp;nbsp;Unfortunately, these have not yet been removed from the public EAP images but it will be addressed before GA.&amp;nbsp; There are few remaining known issues with SSL inspection but you can safely ignore the &amp;quot;internal engine error&amp;quot; messages for now.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;If you have issues with connectivity while using SSL decryption please let us know!&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item></channel></rss>