no-sslv3/no-tlsv1x are ignored for bind '127.0.0.1:443'

Started by comozoi, August 23, 2021, 12:42:39 AM

Previous topic - Next topic
Hi,
I am running OPNSense 21.7.1 and using haproxy for SSL Offloading
After several upgrades to catch up to the latest version, I encounter the following problem:
- https public service under haproxy seems not to function
- I get the following error message in haproxy when testing the syntax

[WARNING] 234/013128 (31345) : Proxy 'https_in': no-sslv3/no-tlsv1x are ignored for bind '127.0.0.1:443' at [/usr/local/etc/haproxy.conf.staging:58]. Use only 'ssl-min-ver' and 'ssl-max-ver' to fix.
Warnings were found.
Configuration file is valid


Clearing up the no-sslv3/no-tlsv1x in the GUI seems not to solve the issue, the error message remains.
Any help/hints are appreicated.