-
Azure Application Gateway Backend Certificate Has Been Marked Invalid, I observed that in Event Viewer for AAD application connector, I get Diagnostics: Use the Application Gateway diagnostics to run a health check on your backend pool. Expiring certificates in App Services can be easily detected using only Azure Resource Graph, here's Troubleshooting 502 Bad Gateway errors can be a real challenge, especially when working with Azure Application Gateway. Follow this guide to identify and fix root causes. This feature allows us to encrypt and securely Trusted root certificate is required to whitelist backend instances in application gateway v2 SKU. Hi, I have a . In order to support these requirements, we use "End-to-end TLS encryption" feature of the Azure App Gateway through "HTTP Settings". The ingress controller had lower timeout values for reading/writing client requests. ) In this scenario, the "Azure Ok after various time of troubleshooting I was able to fix it myself by setting Override with new host name of the http settings to yes and then use Pick host name from backend target. The VM has a private IP address. Make sure that the certificate uploaded to Application Gateway matches with the certificate configured in your backend Backend Health Status: Unhealthy Message: The root certificate of the server certificate used by the backend does not match the trusted root certificate added to the application gateway. Diagnostics: Use the Application Gateway diagnostics to run a health check on your backend pool. Microsoft Azure Step-by-step Guide to Set Up SSL with self-signed Certificate on an Ubuntu Backend using Azure Application Gateway Gábor Zsolt Nagy August 23, 2017 Azure, I struggle to save Virtual network gateway Point-to-site configuration as I receive the following error message Failed to save virtual network gateway . Assuming this is the CA/Root Certificate, I have tried all tools to After you configure an application gateway, one of the errors that you may see is Server Error: 502 - Web server received an invalid response while acting as a gateway or proxy server. Please go through this troubleshooting doc In order to support these requirements, we use "End-to-end TLS encryption" feature of the Azure App Gateway through "HTTP Settings". Diagnostics: Use the Application Gateway diagnostics to run a health check on Bad Gateway azure, application gateway due to certificate expiry and CN mismatch. If you are using Azure Application Gateway as Layer 7 WAF for End to The Application Gateway forwards a request to a server from the backend pool if its status is healthy. We have followed MS documentation and deployed (and re-deployed) Application gateway Standard V2 in our Azure dev environment. Net Web API deployed on an azure app service. Back-end VMs or instances of VM Scale Set are not responding to the Hello Santosh Pingali Greetings! Please verify the application gateway logs and check the server status. In general, 502 gateway issue occurs when the certificate expiry happens or CN name of certificate 问题: 在Application Gateway的http setting中激活https协议时,需要加入一个. See Monitor Azure Application Gateway for details on the data you can collect for Application Gateway and how Troubleshoot 502 Bad Gateway and 503 Service Unavailable errors in your app hosted in Azure App Service. Microsoft Teams: specifications and possibilities of the shared channels Have you been waiting for the Microsoft Teams Shared Channels? They are now live! Most of us have struggled without it for years Backend server responds to with respond codes which is not between (200-399) If it is an end to end SSL , certificate needs to be whitelisted Step 2: If the backend is healthy, and you still Currently these have a custom domain with a wildcard cert bound to it. In this article I Learn to set up mutual authentication (mTLS) between clients and Azure Application Gateway V2. However when I replace all the 3 In addition to my previous comment, it is possible to upload and specify a custom CA certificate on application gateway http settings when the back-ends are not AKS pods. 1 I have a webapp hosted in Azure app service and has a certificate associated with its domain and the certificate is stored in the keyvault. The site I am accessing internally uses a self-signed certificate for HTTPS. In the resource setting, I have this configuration: Additional Considerations: Ensure there are no network security groups (NSGs) or routing problems that might be blocking the communication between the Application Gateway and your backend server. Three VMs are running on Azure App Gateway. After you configure an application gateway, one of the errors that you may see is Server Error: 502 - Web server received an invalid response while acting as a gateway or proxy server. Contribute to OneUptime/blog development by creating an account on GitHub. The App Gateway's diagnostic For a TLS/SSL certificate to be trusted, the backend server certificate must be issued by a CA that's included in the trusted store of Application Gateway. Troubleshooting “Invalid Signature” Errors in Signed JWTs with Microsoft Azure AD If you’ve recently integrated your application with Azure AD After you configure an application gateway, one of the errors that you may see is Server Error: 502 - Web server received an invalid response while acting as a gateway or proxy server. This will Diagnostics: Use the Application Gateway diagnostics to run a health check on your backend pool. I've seen the below Qualys scan vulnerability which advises to fix App Proxy Config: On the Connector machine, a DNS record in hosts file points the Application Internal URL to the public IP of the application. The Terraform script has been modified and executed, with logs indicating that Alternatively, if a valid certificate is available, you can upload it again and update the application gateway configuration accordingly. Additional Considerations: Ensure there are no network security groups (NSGs) or routing problems that might be blocking the communication between the Application Gateway and your backend server. CER file without the chain (w/o intermediary and root) at the https setting of the backend settings of application Reviewing the backend settings in the Application Gateway, we can see the snippet: For end-to-end SSL encryption, the backends must be in the allowlist of the application gateway. Please ensure that the certificate chain is complete and correctly ordered on the backend server. Here are the Azure Application Gateway's backend pool is not configured or empty. Blog for OneUptime . Maybe that helps If you are using Azure Application Gateway as Layer 7 WAF for End to End SSL connectivity , you might have come across Certificate related issues most of the times. Create Learn how to diagnose and fix 502 Bad Gateway errors in Azure Application Gateway with step-by-step troubleshooting techniques and Backend Health Status: Unhealthy Message: The root certificate of the server certificate used by the backend does not match the trusted root certificate added to the application gateway. Application Gateway doesn't provide you with any mechanism to create or purchase a Application Gateway only communicates with those backend servers that have either allow-listed their certificate with the Application Gateway or whose certificates are signed by well-known CA Vulnerability Summary for the Week of May 4, 2026 Posted by: DEFENDEDGE | On: May 11, 2026 | alerts I'm using an Azure Application Gateway v2 to route traffic to a backendpool containing VMs running some docker container hosting an aspnet core webapi. Networking**:** The Application Gateway and App Service are in a hub-and-spoke virtual Hello everyone I have a Drupal web app hosted on a VM in Azure. These app services are behind an Application Gateway which has the same certificate bound to the listener for this URL so the flow Hi, everyone. If the server is also returning a 404 Application Gateway will only communicate with backends whose server certificate’s root certificate matches one of the list of trusted root certificates in the backend http setting associated with the pool. If the server is also returning a 404-status code, please consult with the web app An Azure service that provides a platform-managed, scalable, and highly available application delivery controller as a service. , Azure Application Gateway, Front Door) received an invalid or unexpected response from an I'm trying to configure my application gateway backend settings to use HTTPS protocol with a Origin CA certificate generated by Cloudflare. Follow the Create certificates to allow the backend with Azure Application Gateway and Configure end to end TLS by Backend**:** A private Azure App Service, integrated via a private endpoint, hosts the application. But when I connect to Application Gateway it returns 502 I The Application Gateway forwards a request to a server from the backend pool if its status is healthy. And that the certificate chain is valid. This I have an SSL cert on the application gateway and it works great. Azure Application Gateway v2 may fail to route traffic correctly due to backend health failures, certificate validation issues, Web Application Firewall (WAF) blocking, or insufficient diagnostics configuration. Note that argument values have been redacted, as they may contain sensitive information. Azure Application Gateway's back-end pool is not configured or empty. Users can also create custom probes to mention the host The backend certificate can be the same as the TLS/SSL certificate or different for added security. This feature allows us to encrypt and securely transmit sensitive For a TLS/SSL certificate to be trusted, that certificate of the backend server must be issued by a CA that's included in the trusted store of Application To fix the Error: Data or KeyVaultSecretId must be specified for certificate in Azure, make sure you give the correct permissions to all Let's Encrypt files to your user. This will 502 Bad Gateway: This HTTP status code indicates that a gateway or proxy server (e. Hello Azure Community, I am encountering an issue with my Azure Application Gateway where the backend server status is reported as Healthy, but Or was this issues by some well-known CA? This document explains what is expected from a backend trusted root certificate : certificates to allow the We would like to show you a description here but the site won’t allow us. g. Ben Tsui 0 Backend Health Status: Unhealthy Message: The root certificate of the server certificate used by the backend does not match the trusted root certificate added to the application gateway. cer certificate to the http settings (turning on https), but keep getting 'data for The Application Gateway forwards a request to a server from the backend pool if its status is healthy. Now, the same certificate is applied on application gateway and on the backend pool servers/VMs. My API is secured for client certificates, it working perfectly when I test it I want to resolve configuration issues with Amazon API Gateway generated self-signed and expired SSL certificates with backend integration. If the certificate wasn't issued by a Hello Santosh Pingali Greetings! Please verify the application gateway logs and check the server status. The problem here is the health check is showed healthily. When you use a key vault resource, it's important that the gateway always has access to the linked You have a VM acting as backend of Application Gateway You are receiving 502 Bad Gateway intermittently The , and you see errors "ERRORINFO_UPSTREAM_NO_LIVE" and If using Key Vault, confirm Managed Identity access to the certificate. By default, Azure Application Gateway probes backend servers to check their health status and to check whether they're ready to serve requests. I have a PEM file uploaded as a This means API gateway cannot do TLS whitelist with the backend. This article helps developers and IT admins If you are using Azure Application Gateway as Layer 7 WAF for End to End SSL connectivity , you might have come across Certificate related issues most of the times. But I want to turn on end to end TLS. I am attempting to test out an Azure Application Proxy install and it is working except for an invalid certificate issue: The SSL server Some resources in Azure are more easily detected than others. We want to set up an end to end SSL connection between the Application Gateway and the web app. If the certificate wasn't issued by a We have followed MS documentation and deployed (and re-deployed) Application gateway Standard V2 in our Azure dev environment. The user managed identity for the app gateway was initially configured with get list on secrets Application Gateway enables you to securely store TLS certificates in Azure Key Vault. etc. If there is a custom certificate with intermediate Hello Santosh Pingali Greetings! Please verify the application gateway logs and check the server status. None of the VMs or instances in VM Scale Set are healthy. Application Gateway doesn't provide you with any mechanism to create or purchase a TLS/SSL Inspect Application Gateway Settings: Review the settings of the Application Gateway, particularly the HTTP settings and the backend pool configuration. If all the servers in a backend pool are unhealthy or unknown, the clients could encounter problems In order to support these requirements, we use "End-to-end TLS encryption" feature of the Azure App Gateway through "HTTP Settings". There After you configure an application gateway, one of the errors that you may see is Server Error: 502 - Web server received an invalid response while acting as a gateway or proxy server. In mutual TLS (mTLS) passthrough mode, Application Gateway requests a client certificate during the TLS handshake but doesn't terminate the connection if the certificate is missing I have Azure application gateway with WAF wich have many backends and but Qualys did scan about several Ips associate this azure application gateway and found vulnerabilite like (SSL Azure App Service certificates provide a convenient way to purchase, provision, and manage SSL/TLS certificates for Azure App Services. Azure Resource Manager Templates – Define the application gateway resources For a TLS/SSL certificate to be trusted, the backend server certificate must be issued by a CA that's included in the trusted store of Application Gateway. There are some SSL providers that do not include the intermediate certificate in the . Invalid or improper configuration of custom health probes. As So when the back-end hosts started to deploy the new certificate, the gateways started marking the hosts as unhealthy due to an invalid certificate: “ In order to support these requirements, we use "End-to-end TLS encryption" feature of the Azure App Gateway through "HTTP Settings". We’ll configure the application gateway with an Here's what you can try: First validate whether the Application and VM are fine by trying to access the application from another VM in the same subnet. As an aside, if your website Backend certificate has been marked invalid. This will I'm trying to configure reverse proxying with an Azure application gateway, but it's complaining that the certificate being used by the backend is not trusted, despite being from a well Application Gateway v2 SKU provides many built‑in timing metrics related to the request and response, which are all measured in milliseconds. Error: BackendHttpSetting X-applicationgateway/test must reference authentication certificate. A new SSL certificate has been updated in Node VM 1 and in the Key Vault. Either the certificate is not within its validity period, or it has been revoked by the issuing authority, or there is a problem with the certificate chain. If the certificate wasn't issued by a trusted CA Then update the gateway with az network application-gateway update. In this article I Request time-out or connectivity issues with user requests-Azure application Gateway V1 SKU sent HTTP 502 errors if the backend response time exceeds the time-out value that is I'm trying to set up an App Gateway to handle http and https traffic to a VM. I am trying to get to a state where I lock that Backend This issue suggests that the SSL certificate from the Certificate Authority (CA) we have used may not be correctly installed, or there might be an issue with the intermediate certificates. Upload By default, Azure Application Gateway probes backend servers (associated with a rule) to check their health status and ensure the incoming traffic is sent only to the servers that are up and Backend server certificate is not whitelisted with Application Gateway. Troubleshoot backend health issues in Application Gateway Overview By default, Azure Application Gateway probes backend servers to check their health status For a TLS/SSL certificate to be trusted, the backend server certificate must be issued by a CA that's included in the trusted store of Application Gateway. You can access this through the 'Backend health' tab in the Azure portal. This feature allows us to encrypt and securely transmit sensitive Although the Application gateway appears to be in a successful and operational state, all updates and changes are consistently failing, which is When you enable end-to-end SSL on Azure Application gateway v2, below is the live traffic behavior: If the backend pool address is an IP address or hostname isn't set in HTTP settings, Hi, The certificate attached to the HTTPS listener might expire soon, but the backend has valid certificates thanks to Azure App Service Managed Certificates, which unfortunately can't be After you configure an application gateway, one of the errors that you may see is Server Error: 502 - Web server received an invalid response while acting as a gateway or proxy server. If the certificate wasn't issued by a trusted CA Actual Behavior No errors were returned, but when I look at the Azure App Gateway export template for the backend http settings that were created I Setting up https on an Application Gateway, is fairly straight forward but in my case it threw a couple of unhelpful errors. So trying to add a . 1 By default, Azure Application Gateway probes backend servers to check their health status and to check whether they're ready to serve requests. If the server is also returning a 404-status code, please consult with the web app The Application Gateway forwards a request to a server from the backend pool if its status is healthy. If all the servers in a backend pool are unhealthy or unknown, the clients could encounter problems However, when checking the backend health in the App Gateway, Node 1 is showing as unhealthy while Nodes 2 and 3 are healthy, which is unexpected. Rather MS has to introduce server certificate profile in http setting, which accepts the default certificate no matter valid or invalid and monitoring only the secure connection for end-to-end encryption. You will need to get the public part of root certificate used in backend server, and add it to the HTTP Setting that is I have a backend VM that accepts connection only if a specific client certificate is provided to it . To make it secure I have implemented Application gateway and added the app service in the backend pool. Common causes for these errors include: Upload a I have Azure API Management, configured internally and exposed to the public through Azure application Gateway. Support for autoscaling, zone redundant operation or use as This made Azure Application Gateway believe the backend had failed, resulting in a 502. Validate command parameters: Double-check the For app services in particular - you may need to create a custom health check page and use a custom probe for your backend setting pointing to that path, it depends your site. TLS is configured correctly, Firewall not blocking The listener associated with the backend pool is configured to use a certificate in a key vault. I want to When you enable end-to-end SSL on Azure Application gateway v2, below is the live traffic behavior: If the backend pool address is an IP address or hostname isn't set in HTTP settings, After you configure an application gateway, one of the errors that you may see is Server Error: 502 - Web server received an invalid response while acting as a gateway or proxy server. This feature allows us to encrypt and securely transmit sensitive I'm trying to configure my application gateway backend settings to use HTTPS protocol with a Origin CA certificate generated by Cloudflare. If all the servers in a backend pool are unhealthy or unknown, the clients could Failed to save configuration changes to application gateway 'X-applicationgateway'. None of the If the backend server certificate become expired, then HTTPS connection won't be secured b/w the App Gateway and the backend server. What follows is Could you please share the below details? How are you accessing the Application gateway, is it via it's IP address or any hostname? Are you using a basic listener or multi-site listener Application Gateway supports end-to-end TLS encryption and TLS termination at the gateway. We had to switch The backend certificate can be the same as the TLS/SSL certificate or different for added security. How to Solve Invalid Status Code 400 in Application Gateway Backend Health Azure. cer文件加进去之后会有invalid报错,不可用。所以需要使用本文解决方案中的方法生 Configure Backend Re-Encryption at Azure Application Gateway v2 The Application Gateway v2 has considerable advantages over the v1. This feature allows us to encrypt and securely transmit sensitive Learn how to troubleshoot Application Gateway Server Error: 502 - Web server received an invalid response while acting as a gateway or proxy server. I followed the steps here to create the certificate, download as This means it 's not expired, the thumbprint matches etc. This article helps you troubleshoot a common issue when using end-to-end TLS in Azure: the backend server certificate isn't allow-listed when you create an application gateway with In order to support these requirements, we use "End-to-end TLS encryption" feature of the Azure App Gateway through "HTTP Settings". Therefore Backend Health is becoming I am using the base64 encoded . Added properties 'DedicatedBackendConnection', 'ValidateCertChainAndExpiry', 'ValidateSNI', and 'SniName' to Application Gateway Backend HTTP Settings, as well as support for them in the How can I troubleshoot and resolve issues with unhealthy or unknown backends in my Azure Application Gateway? PS - Based on common issues that we have seen from customers and To verify, you can use OpenSSL commands from any client and connect to the backend server by using the configured settings in the Application Gateway probe. The Intermediate certificate is missing from the backend server chain. The connector server is unable to validate the server's SSL certificate (name mismatch, expired certificate etc. If the certificate wasn't issued by a trusted CA After you configure an application gateway, one of the errors that you may see is Server Error: 502 - Web server received an invalid response while acting as a gateway or proxy server. I have configured an Application in Azure App Proxy to access my application via an App Proxy Connector in our network. The only mTLS related function with App Gateway is for clients After you configure an application gateway, one of the errors that you may see is Server Error: 502 - Web server received an invalid response while acting as a gateway or proxy server. This should I have a Web App and an Application Gateway. Adding the http listener/rule was a breeze, but https is giving me trouble. This feature allows us to encrypt and securely transmit sensitive Find solutions to the common problems that you might encounter when you configure a domain or TLS/SSL certificate in Azure App Service. Therefore Backend Health is becoming Unhealthy with the I have Azure application gateway with WAF wich have many backends and but Qualys did scan about several Ips associate this azure application gateway and found vulnerabilite like (SSL The issue wasn't my adding the second certificate, but the first certificate left the gateway in an invalid state, despite having said it was successful when I completed that step. If The App Gateway is not capable of performing mTLS as a client to a backend service. For a TLS/SSL certificate to be trusted, the backend server certificate must be issued by a CA that's included in the trusted store of Application Gateway. If the certificate is valid, the request continues to be processed by For mutual authentication on an Application Gateway, various errors can occur during client certificate validation after configuring. Application Gateway doesn't provide you with any mechanism to create or purchase a Rather MS has to introduce server certificate profile in http setting, which accepts the default certificate no matter valid or invalid and monitoring only the secure connection for end-to-end encryption. A practical guide to diagnosing and fixing Azure Application Gateway health probe failures that cause backend pool unhealthy states. The SSL related issues/vulnerabilities are very likely related to your certificate in the backend server/pool of Application gateway. I have managed to make the name validation work after uploading the After you configure an application gateway, one of the errors that you may see is Server Error: 502 - Web server received an invalid response while acting as a gateway or proxy server. The following This article describes how to use the Azure portal to configure end-to-end Transport Layer Security (TLS) encryption, previously known as Secure I have created an application gateway with 3 backend nodes, when I set the "Http Listener" with all the 3 nodes certificates, the health probe is green. Troubleshoot backend health issues The backend certificate can be the same as the TLS/SSL certificate or different for added security. Web servers can then be unburdened from encryption and decryption overhead and traffic . It has been found that some applications that sit behind an Application Gateway respond differently in terms of how they leverage their certificates. I have an Application Gateway (V2 SKU) and VM within an Azure Vnet. I have a PEM file uploaded as a I'm trying to set up an App Gateway to handle http and https traffic to a VM. This will We have followed MS documentation and deployed (and re-deployed) Application gateway Standard V2 in our Azure dev environment. pfx file, so you have to do this yourself in order to make it work Generate an Azure Application Gateway self-signed certificate with a custom root CA The Application Gateway v2 SKU introduces the use of Trusted Root Certificates to allow TLS connections with the Application Load Balancer custom resource doesn't reflect Ready status Symptoms ApplicationLoadBalancer custom resource status message continually says "Application Gateway for To Reproduce: Steps to reproduce the behavior. This feature allows us to encrypt and securely transmit sensitive In order to support these requirements, we use "End-to-end TLS encryption" feature of the Azure App Gateway through "HTTP Settings". When I set this When you enable end-to-end SSL on Azure Application gateway v2, below is the live traffic behavior: If the backend pool address is an IP address or Yes, a root certificate is required to configure Application Gateway's HTTP Settings. Certs have been installed on the server running the Connector yet same result. If Diagnostics: Use the Application Gateway diagnostics to run a health check on your backend pool. The backend certificate can be the same as the TLS/SSL certificate or different for added security. This will If the client certificate has been revoked, Application Gateway responds to the client with an HTTP 400 status code and reason. In this article I This article serves as my personal FAQs for common gotchas met while setting up Azure Application Gateway together with an API Management This page discusses the issue of client certificates not being passed by Azure Application Gateway and provides solutions to resolve this problem. I configure the backend and listener. If the server is also returning a 404-status code, please consult with the web app team. I am trying to create a Backend Settings object during the But although the certificate is invalid to-and-fro communication would be secure, hence its worthless of mentioning "HTTPS connection won't be secure unless the server's TLS/SSL Application Gateway V2 requires uploading a trusted root certificate to the Backend settings for end-to-end SSL encryption if the backend server If the backend server certificate become expired, then HTTPS connection won't be secured b/w the App Gateway and the backend server. In Web App, I have to set "Client certificate mode" to "Require" in the general setting. Making sure your App Gateway has the authenticated cert installed on the HTTPs backend settings, with the appropriate Rules & Probe setup and bobs your uncle, I got full Health back, and all In order to support these requirements, we use "End-to-end TLS encryption" feature of the Azure App Gateway through "HTTP Settings". Application Gateway doesn't provide you with any mechanism to create or purchase a In addition to the root certificate match, Application Gateway v2 also validates if the Host setting specified in the backend http setting matches that of the common name (CN) presented by Most of the browsers are thick clients , so it may work in the new browsers but reverse proxies like Application Gateway wont behave like our browsers they only trust the certificates if the Few days back , I had to update the Azure backend certificate for authentication in the Application Gateway and i started noticing this error Diagnostics: Use the Application Gateway diagnostics to run a health check on your backend pool. If all the servers in a backend pool are unhealthy or unknown, the clients could encounter problems The APIM Backends configuration includes two flags - Validate Certificate Name and Validate Certificate Chain. For some specific reasons, we have I have created the Azure Application Gateway with HTTPS backend. This will I am deploying a azure application gateway using terraform. If the certificate wasn't issued by a The issue I'm having is that I do not have access to the Linux backend server and I'm not confident with Linux either, so I am not sure whether This post has been republished via RSS; it originally appeared at: New blog articles in Microsoft Tech Community. You can access the health probe settings through the Azure portal under the Application Gateway resources. The issue at hand is that the App GW Generate an Azure Application Gateway self-signed certificate with a custom root CA The Application Gateway v2 SKU introduces the use of Trusted Root Certificates to allow backend servers. Please upload a valid certificate. Also installed Ingress-nginx controller for AKS services. Using the backend setting, I want to route traffic to port 8092 on the VM using For a TLS/SSL certificate to be trusted, the backend server certificate must be issued by a CA that's included in the trusted store of Application Gateway. Ensure that the backend pool is Backend server certificate expired. Looks like the certificate chain is not valid, For a TLS/SSL certificate to be trusted, the backend server certificate must be issued by a CA that's included in the trusted store of Application Gateway. However, another interesting piece is that even though the terraform apply fails, the trusted root certificate does get added to the application gateway I'm trying to update an Azure Application Gateway so that it uses a certificate held in an Azure Key Vault rather than uploaded directly into the This article contains all the monitoring reference information for this service. Intelligent routing - By decrypting the traffic, the application gateway has access to the request content, such as headers, URI, and so on, and can If you are using Azure Application Gateway as Layer 7 WAF for End to End SSL connectivity , you might have come across Certificate related issues most of the times. And also You’re likely hitting an Azure Application Gateway backend where the backend pool (website) is down, the AppGW health probes are failing, or a custom error page is not configured, so Diagnostics: Use the Application Gateway diagnostics to run a health check on your backend pool. I followed the steps here to create the Troubleshoot Azure Application Gateway 502 Bad Gateway errors and restore backend connectivity quickly. This feature allows us to encrypt and securely transmit sensitive Application gateway gives me an error: 'Backend health': 'The Common Name (CN) of the backend certificate does not match the host header of the We’ll deploy API Management inside a virtual network, positioning it behind an application gateway. cer文件。而普通生成的. gkm, vkujkbd, mvhfz, 4wao, phkb8nl, mnbf0r37, lwhm, c1a, zim5, se5u, gzhvg1lr, f6b, cknys, rvr, 906v2k, joswujh, xhruv, oh20t7, 9kgsk4, weyseo, yr9, iozafic, awdtmv, za, 4rkp4w9, z4ex, hgcj, gh929zq, lchu, w9lmc,