Closed Bug 1031696 Opened 10 years ago Closed 10 years ago

OCSP Malformed Response Error when accessing Microsoft services (ie login.live.com): sec_error_ocsp_malformed_response

Categories

(Core :: Security: PSM, defect)

x86_64
Linux
defect
Not set
normal

Tracking

()

RESOLVED DUPLICATE of bug 1031022

People

(Reporter: Ricmacas, Unassigned)

Details

User Agent: Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:29.0) Gecko/20100101 Firefox/29.0 (Beta/Release)
Build ID: 20140428193838

Steps to reproduce:

Access https://login.live.com , or https://mail.live.com using Nightly.


Actual results:

Nightly will throw an error sec_error_ocsp_malformed_response .


Expected results:

Regular ocsp verification and access to the secure website.
(In reply to Ricardo Maçãs [:Ricmacas] from comment #0)
> User Agent: Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:29.0) Gecko/20100101
> Firefox/29.0 (Beta/Release)
> Build ID: 20140428193838
> 
> Steps to reproduce:
> 
> Access https://login.live.com , or https://mail.live.com using Nightly.
> 
> 
> Actual results:
> 
> Nightly will throw an error sec_error_ocsp_malformed_response .
> 
> 
> Expected results:
> 
> Regular ocsp verification and access to the secure website.

I'm sorry, that User Agent is not affected, this bug is happening in Nightly and I took an older Firefox version to confirm that it was indeed a problem from the browser side and not a server-side issue.
(In reply to Ricardo Maçãs [:Ricmacas] from comment #0)
> User Agent: Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:29.0) Gecko/20100101
> Firefox/29.0 (Beta/Release)
should be 
Mozilla/5.0 (X11; Linux x86_64; rv:33.0) Gecko/20100101 Firefox/33.0
I already fixed this regression and the fix should appear in the next Nightly build or so.

Thanks for the bug report. I appreciate the effort you put into making a good bug report and I hope you report more in the future.
Status: NEW → RESOLVED
Closed: 10 years ago
Component: Security → Security: PSM
Resolution: --- → DUPLICATE
Sorry Brian, I saw that bug but I didn't know "version 1" was explicitly encoded in this one, and I had no clue how to check for it. Thanks for taking care of this.
Thanks for that feedback Ricardo. I added "login.live.com" to the summary so that it will be easier for people to find.
You need to log in before you can comment on or make changes to this bug.