Hello,

> Where is the web server?
> Is it internal or is it an external web server?

It was all `external servers.

> What does telnet web_server 443 and
> openssl s_client -connect web_server:443
> gives you?
>
> Have you tried sniffing the traffic to see what goes wrong?

I can't test right now because the configuration was rolled back from
the production environment.

> SSL should not be mattered by the firewalls, as long as
> they work the way you believe they work.
>
> Do you run any ssl proxy or http proxy somewhere?

There is an transaparent HTTP proxy on the OpenBSD servers but it
doesn't, of course, handle SSL.

Regards,

Reply via email to