DrayTek UK Users' Community Forum

Help, Advice and Solutions from DrayTek Users

HTTPS connection to Vigor 2620LN web interface

More
06 Dec 2024 15:40 #104281 by Mike
I have configured a Draytek Vigor 2620LN with firmware 3.9.9.1_BT.  I can access the web interface via HTTPS via Firefox.  I have tried to set up Icinga monitoring of the HTTPS server with the check_http plugin (yes, it checks HTTPS too!) but the following error is returned: "40E7B2C9C27F0000:error:0A000152:SSL routines:final_renegotiate:unsafe legacy renegotiation disabled:../ssl/statem/extensions.c:893:"  My understanding is that this is an error from OpenSSL and means that the server supports a SSL renegociation protocol that is unsafe.  I understand a revised version of the SSL renegociation was developed to mitigate this issue some time ago and also that OpenSSL can be configured to allow the connection.  Is there a way to configure the Vigor to disable the unsafe SSL renegociation?

Please Log in or Create an account to join the conversation.

Moderators: ChrisSami