Incorrect SSL error message when DNS name entry is equal to an IP address

NEW
Unassigned

Status

()

Core
Security: PSM
P3
normal
3 years ago
2 months ago

People

(Reporter: mwobensmith, Unassigned)

Tracking

(Depends on: 1 bug)

36 Branch
Points:
---

Firefox Tracking Flags

(Not tracked)

Details

(Whiteboard: [psm-backlog])

In Fx36:

https://162.13.98.182/

 162.13.98.182 uses an invalid security certificate.
 The certificate is only valid for 162.13.98.182
 (Error code: ssl_error_bad_cert_domain)

According to David Keeler, this is expected behavior, as the subject alt names extension has the (invalid) sole entry of "DNS Name: 162.13.98.182" instead of "IP Address". However, the error reporting code does not take the IP address case into account and could be improved.
(Reporter)

Updated

3 years ago
Depends on: 1024781
See Also: → bug 1024781
Whiteboard: [psm-backlog]
Priority: -- → P3
You need to log in before you can comment on or make changes to this bug.