Skip to content

Add descriptive error messages to Envoy access logs for common TLS errors #11017

@duderino

Description

@duderino

Three high level cases:

TLS server handshake failure (cannot differentiate what part failed, certificate or protocol or version)

mTLS client fail (failed to validate server certificate, etc)

general TLS fail. Server side we can't generate access logs - it never hits HTTP filter.

Metadata

Metadata

Type

No type

Projects

No projects

Milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions