為了改善您的使用體驗,本網站正在進行維護,部分功能暫時無法使用。若本站的文件無法解決您的問題,想要向社群發問的話,請到 Twitter 上的 @FirefoxSupport 或 Reddit 上的 /r/firefox 發問,我們的社群成員將很快會回覆您的疑問。

搜尋 Mozilla 技術支援網站

防止技術支援詐騙。我們絕對不會要求您撥打電話或發送簡訊,或是提供個人資訊。請用「回報濫用」功能回報可疑的行為。

了解更多

Certificate error while accessing a site

more options

Hi, We are having certificate issues while accessing url https://rmsstage.resolvecloudbase.co.nz We verified that the certificates used by this url are valid and the same certificates are being used by https://rmsstaging.resolvecloudbase.co.nz and this site can be accessed without any issues.

One more thing: After accessing https://rmsstaging.resolvecloudbase.co.nz , when we access https://rmsstaging.resolvecloudbase.co.nz then there are no issues reported until we delete file cert9.db from the Profile Folder. Can you please advise what could be the issue. Thanks Praveen

Hi, We are having certificate issues while accessing url https://rmsstage.resolvecloudbase.co.nz We verified that the certificates used by this url are valid and the same certificates are being used by https://rmsstaging.resolvecloudbase.co.nz and this site can be accessed without any issues. One more thing: After accessing https://rmsstaging.resolvecloudbase.co.nz , when we access https://rmsstaging.resolvecloudbase.co.nz then there are no issues reported until we delete file cert9.db from the Profile Folder. Can you please advise what could be the issue. Thanks Praveen

所有回覆 (3)

more options

I had no problem with the links. What's your computer system and Firefox version?

Please explain the problem in detail. What happens? What is the exact error messages?

more options

Hi, the OS is Windows 10 and the firefox version is Firefox Quantum 66.0.5 (64 bit). I have attached the steps to replicate the issue. If we are using the same certificate for 2 sites, why does it gives warning for one site and works smoothly for the other. I have also attached the screenshots of the steps we are using to replicate the issue. Thanks

more options

Okay, I think what you have demonstrated is that one host is not sending the intermediate certificate(s) needed to complete the chain of trust between the site certificate and the root. However, when Firefox receives the intermediate certificate from the other host, it saves it in cert9.db and uses that to bridge gaps for any hosts that do not send it.

This test confirms the incomplete chain diagnosis: https://www.ssllabs.com/ssltest/analyze.html?d=rmsstage.resolvecloudbase.co.nz

It also says:

  • This server is vulnerable to the Return Of Bleichenbacher's Oracle Threat (ROBOT) vulnerability. Grade set to F.
  • This server is vulnerable to MITM attacks because it supports insecure renegotiation. Grade set to F.

So your configuration may need to be checked in a little more depth than simply adding the missing certificate file!

The other one has some issues as well:

https://www.ssllabs.com/ssltest/analyze.html?d=rmsstaging.resolvecloudbase.co.nz