This site will have limited functionality while we undergo maintenance to improve your experience. If an article doesn't solve your issue and you want to ask a question, we have our support community waiting to help you at @FirefoxSupport on Twitter and/r/firefox on Reddit.

Search Support

Avoid support scams. We will never ask you to call or text a phone number or share personal information. Please report suspicious activity using the “Report Abuse” option.

Learn More

How can I force re-prompting for client certificates?

  • 2 replies
  • 1 has this problem
  • 17 views
  • Last reply by dev0

more options

I am testing authentication with client certificates (self-made CA and certs/keys). Everything works correctly. However, if I do not choose the right certificate in the first try, or add client certificates after trying the secure website (and not getting access), I am not re-prompted with choosing client certificates, I get access denied. The only solution I have found so far is `refresh` firefox. Then I have to add my own certs again, which is somewhat tedious, but then I am asked again for client certs and it works. Is there a way to make Firefox "forget" that it got denied the previous time? Or force rep-prompting?

I am testing authentication with client certificates (self-made CA and certs/keys). Everything works correctly. However, if I do not choose the right certificate in the first try, or add client certificates after trying the secure website (and not getting access), I am not re-prompted with choosing client certificates, I get access denied. The only solution I have found so far is `refresh` firefox. Then I have to add my own certs again, which is somewhat tedious, but then I am asked again for client certs and it works. Is there a way to make Firefox "forget" that it got denied the previous time? Or force rep-prompting?

All Replies (2)

more options

Did you look at the certificate options in firefox and see if making changes there?

more options

Changing things there on't help. E.g. if I try the web-page without client ssl cert, I get access denied. Then I import my cert, and still get denied.