Dec 14 11:40:47 nfs12 open***[31685]: TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed
Dec 14 11:40:47 nfs12 open***[31685]: TLS Error: TLS object -> incoming plaintext read error
Dec 14 11:40:47 nfs12 open***[31685]: TLS Error: TLS handshake failed
Dec 14 11:40:47 nfs12 open***[31685]: Fatal TLS error (check_tls_errors_co), restarting
Dec 14 11:40:47 nfs12 open***[31685]: TCP/UDP: Closing socket
Dec 14 11:40:47 nfs12 open***[31685]: SIGUSR1[soft,tls-error] received, process restarting
Dec 14 11:40:47 nfs12 open***[31685]: Restart pause, 5 second(s)
Dec 14 11:40:52 nfs12 open***[31685]: NOTE: Open××× 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Dec 14 11:40:52 nfs12 open***[31685]: Re-using SSL/TLS context
Dec 14 11:40:52 nfs12 open***[31685]: LZO compression initialized
故障分析:
遇到这种情况一般是由操作系统引起的,一般与OPEN×××本身无关,因此:
1、客户端与×××服务器时间、时区保持高度一致;
2、在×××客户端LINUX机器上执行
echo -e "LegacySigningMDs md2 md5\nMinimumDHBits 512\n" >> /etc/pki/tls/legacy-settings
然后重启×××客户端,一般故障消失。
转载于:https://blog.51cto.com/jxwpx/2050720