proxy_ssl_verify error: 'upstream SSL certificate does not match "" while SSL handshaking to upstream', for CN/SAN 'matched' client & server certs ?

PGNet Dev at
Tue Jun 2 04:43:20 UTC 2020

On 6/1/20 8:42 AM, Maxim Dounin wrote:
>      proxy_ssl_server_name on;
> to see if it helps.  See
> for details.

enabling it _has_ an effect.


access to


-	502 Bad Gateway
+	421 Misdirected Request

> You may also try the following patch to provide somewhat better
> debug logging when checking upstream server SSL certificates:

I'll get this in place & see what i learn ...

More information about the nginx mailing list