Closed Bug 405399 Opened 17 years ago Closed 17 years ago

Can't create exception for server cert with inadequate key usage

Categories

(Core :: Security: PSM, defect)

x86
Windows XP
defect
Not set
normal

Tracking

()

RESOLVED DUPLICATE of bug 407523

People

(Reporter: nelson, Assigned: KaiE)

References

()

Details

https://www.ultimatix.net/ uses a server cert that is valid only for signing
(that is, for signature verification).  But it attempts to negotiate a 
cipher suite that uses RSA for key transport (that is, for key "wrapping",
or key encryption) rather than for signing.  NSS properly refuses to wrap
a key with a public key that is only for signature verification, and reports
an error that says that:  SEC_ERROR_INADEQUATE_KEY_USAGE

If you go into the Certificate Manager and try to add a security exception
for that certificate, you cannot do so.  When you enter the URL into the 
location text box and click the "Get Certificate" button, you get an error
dialog that reads:

    An error occurred during a connection to www.ultimatix.net:443.
    Certificate key usage inadequate for attempted operation.
    (Error code: sec_error_inadequate_key_usage)
                               [ OK ]

Clicking OK causes the operation to fail, rather than successfully importing
the cert.

It's not clear to me why PSM displays that dialog instead of importing the 
cert.  The handshake is expected to fail, but the cert has been fetched 
(and therefor can be displayed and stored), or else this diagnostic could 
not be given.
Someone filed a duplicate of this bug. :-/
Status: NEW → RESOLVED
Closed: 17 years ago
Resolution: --- → DUPLICATE
Here you can get more info by contact them http://www.tcsultimatix.net/tcs-ultimatix-helpdesk-number-email-helpline/
Hey man just open this website and get all details about tcs ultimatix http://www.tcsultimatixhelp.com/tcs-ultimatix-touch-app-mobile-helpdesk-number-for-employees-ultimatix-net-portal/
thanks
You need to log in before you can comment on or make changes to this bug.