AnsweredAssumed Answered

The Qualys SSL check can't handle > SSLv3 handshake

Question asked by Palatinux on Apr 28, 2012
Latest reply on Dec 3, 2012 by Ivan Ristic

While testing our website https://www.fortresslinux.org, we got a "Assessment failed: Received fatal alert: handshake_failure".

 

It's obvious that your are using OpenSSL on your servers to test other https websites because it always tries to do a SSLv3 handshake by default. (Most) up-to-date browsers can negoiate with our https website though we have disabled SSLv3 support where possible.

 

We use our own modified and hardened versions of GNUTLS, OpenSSL, PolarSSL, NSS etc. on our servers. Is there any other way to test our website here?

Outcomes