Bug ID 1142393: Machine Tunnel does not send client certificate for DTLS handshake

Last Modified: Apr 28, 2025

Affected Product(s):
APM-Clients APM(all modules)

Known Affected Versions:
7.2.1.3, 7.2.1.4, 7.2.1.5, 7.2.2, 7.2.2.1, 7.2.2.2, 7.2.3, 7.2.3.1, 7.2.4, 7.2.4.2, 7.2.4.3, 7.2.4.4, 7.2.4.5, 7.2.4.6, 7.2.4.7, 7.2.4.8, 7.2.5

Opened: Aug 26, 2022

Severity: 3-Major

Symptoms

DTLS handshake failure and connection falls back to TLS You may see below logs in F5MachineTunnelService.log 1.EXCEPTION - SSL_connect() failed (ssl error, sys error) 2.try alternative channel

Impact

Unable to use Machine Tunnel with DTLS

Conditions

-- Client certificate authentication -- DTLS -- Machine Tunnel -- Client SSL profile configured with "require"

Workaround

Configure Client SSL profile with "request"

Fix Information

None

Behavior Change

Guides & references

K10134038: F5 Bug Tracker Filter Names and Tips