HTTP 495 – SSL Certificate Error
(NGINX) The client presented an invalid SSL certificate during mutual TLS authentication.
Common use case
Surfaces in mutual TLS (mTLS) setups, e.g. internal service-to-service APIs, when a client presents an expired, untrusted, or malformed certificate.
History
An NGINX-specific extension for reporting client-certificate failures in mTLS configurations.
Did you know?
It only ever appears on servers configured to require client certificates - a setup far more common for internal APIs than public-facing websites.