X
Tap here to go to the mobile version of the site.

Support Forum

(Error code: sec_error_ocsp_unknown_cert)

Posted

Normally when getting certificate error you can always allow it but this time i'm not getting the extra options to allow it ... And manually allowing or creating a certificate in firefox is not working either...

Its a known website of mine and its perfectly safe.

Normally when getting certificate error you can always allow it but this time i'm not getting the extra options to allow it ... And manually allowing or creating a certificate in firefox is not working either... Its a known website of mine and its perfectly safe.

Chosen solution

Additional System Details

Installed Plug-ins

  • VLC media player Web Plugin 2.0.6
  • Shockwave Flash 11.8 r800
  • Google Update
  • The QuickTime Plugin allows you to view a wide variety of multimedia content in Web pages. For more information, visit the QuickTime Web site.
  • Next Generation Java Plug-in 10.25.2 for Mozilla browsers
  • NPRuntime Script Plug-in Library for Java(TM) Deploy
  • A component of your photo software powered by RocketLife
  • 5.1.20513.0
  • Adobe PDF Plug-In For Firefox and Netscape 10.1.7
  • Windows Activation Technologies Plugin for Mozilla
  • Adobe Shockwave for Director Netscape plug-in, version 11.6.6.636
  • Adobe Shockwave for Director Netscape plug-in, version 11.6.5.635
  • The plug-in allows you to open and edit files using Microsoft Office applications
  • Office Authorization plug-in for NPAPI browsers

Application

  • User Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:23.0) Gecko/20100101 Firefox/23.0

More Information

Chosen Solution

FIXED.

FIXED.
planck01 0 solutions 1 answers

I have the same problem. I got this error when I created a new SSL certificate for my personal website. It works fine in other browers, but not in Firefox.

I am wondering how you fixed this.

I have the same problem. I got this error when I created a new SSL certificate for my personal website. It works fine in other browers, but not in Firefox. I am wondering how you fixed this.
cor-el
  • Top 10 Contributor
  • Moderator
12751 solutions 117172 answers

Helpful Reply

Hi planck01

Could you please start a new thread instead of posting in an existing thread?


What kind of error do you get?

Make sure that you send all required intermediate certificates. Otherwise it only works if Firefox has stored the intermediate certificate from a previous visit to a web server that has send it.

You can check the OCSP setting:

  • Tools > Options > Advanced > Encryption: Certificates > Validation:
[X] "Use the Online Certificate Status Protocol (OCSP) to confirm the current validity of certificates" (security.OCSP.enabled)
[ ] "When an OCSP server connection fails, treat the certificate as invalid" (security.OCSP.require)
Hi planck01 Could you please start a new thread instead of posting in an existing thread? ----- What kind of error do you get? Make sure that you send all required intermediate certificates. Otherwise it only works if Firefox has stored the intermediate certificate from a previous visit to a web server that has send it. You can check the OCSP setting: *Tools > Options > Advanced > Encryption: Certificates > Validation: [X] "Use the Online Certificate Status Protocol (OCSP) to confirm the current validity of certificates" (security.OCSP.enabled) [ ] "When an OCSP server connection fails, treat the certificate as invalid" (security.OCSP.require)

Helpful Reply

I disabled OCSP :p

In mozilla advanced tab and certificates.

I disabled OCSP :p In mozilla advanced tab and certificates.
freddyb 0 solutions 1 answers

I had the same error and the CA which generated my certificate was just too slow to handle their part quick enough. The solution is, sadly, to wait for a few hours and then switch over to the new certificate. Other CAs might be faster, but this is probably the price I paid for choosing the one that gives out certs for free :)

I had the same error and the CA which generated my certificate was just too slow to handle their part quick enough. The solution is, sadly, to wait for a few hours and then switch over to the new certificate. Other CAs might be faster, but this is probably the price I paid for choosing the one that gives out certs for free :)