Cisco Bug: CSCus29775 - SSL: Sporadic TLS 1.2 connection errors on 5500-X platforms with DHE
Feb 13, 2018
- Cisco ASA 5500-X Series Firewalls
Known Affected Releases
Symptom: A TLS 1.2 connection may fail to complete successfully. When this happens ASA will display the 402123 (vpn-CRYPTO) sylog , show counters (PKP_ERRORS) and show ssl errors . If the SSL connection is retried, the session will be successful. Conditions: This can happen when using TLS 1.2 DHE ciphers.
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.
Bug Details Include
- Full Description (including symptoms, conditions and workarounds)
- Known Fixed Releases
- Related Community Discussions
- Number of Related Support Cases