Skip to main content
dzhao
New Member
April 10, 2019
Question

Debug virtual server with SSL offloading

  • April 10, 2019
  • 0 replies
  • 2205 views

We have a virtual server configured. It is working fine for most clients but we have strange issues with some old systems. Intermittently we are getting "500 (Internal Server Error) unexpected EOF before status line seen". I did a packet capture and I see successful TLS handshake. The client would send a data packet right after the handshake however after about a minute there would be a "TLS alert" message back from either the FortiGate or the web server.

We don't manage the web server. We are intercepting because we need to add the "HTTP X forwarded header". 

Is there a way to debug the connection? I am hoping to see the details about the TLS handshake and also the HTTP transaction on both sides. (The server side is also SSL/TLS). It will be even better if I can see the unencrypted packet/content of the transaction.

Thanks

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.