routines:ssl3_check_cert_and_algorithm:dh key too small
October 26, 2017 11:47PM
Hi,

I'm using Nginx as reverse proxy, recently upgraded the OpenSSL package on Nginx server, post that application is not working. Getting Bad Gateway and in the log I'm getting the below error. Can someone help me what would be the issue.


nginx version: nginx/1.12.0

openssl-1.0.2k-8.0.1.el7.x86_64

=========
SSL_do_handshake() failed (SSL: error:14082174:SSL routines:ssl3_check_cert_and_algorithm:dh key too small) while SSL handshaking to upstream
=========

Thanks,
SK
Re: routines:ssl3_check_cert_and_algorithm:dh key too small
August 15, 2018 08:16AM
I've run into this problem too, and I've done some tests that show it's related to either the server or the client's version of openssl, such as when both my client and server are: OpenSSL version 1.0.2g will trigger this problem, and if one of the clients and servers is not this version, it won't. So either OpenSSL version or nginx. Finally, I chose haproxy.
Sorry, only registered users may post in this forum.

Click here to login

Online Users

Guests: 173
Record Number of Users: 8 on April 13, 2023
Record Number of Guests: 421 on December 02, 2018
Powered by nginx      Powered by FreeBSD      PHP Powered      Powered by MariaDB      ipv6 ready