> I think the other end is on TLS 1.3 only, but my end only supports TLS 1.2 Well, if that's the setup, it's not going to work. It should be possible to setup a test case. We might be able to produce a better error message. What was the surrounding log info? (That stuff has fallen out of my cache.) -- These are my opinions. I hate spam.