OCSP Requests fail ungraceful when OCSP server not available




9 years ago
7 years ago


(Reporter: Wolfgang Braun, Unassigned)


Firefox Tracking Flags

(Not tracked)


(Whiteboard: [CLOSEME 2010-12-01])



9 years ago
User-Agent:       Mozilla/5.0 (X11; U; Linux x86_64; en-US; rv: Gecko/2009042523 Ubuntu/9.04 (jaunty) Firefox/3.0.10
Build Identifier: Mozilla/5.0 (X11; U; Linux x86_64; en-US; rv: Gecko/2009042523 Ubuntu/9.04 (jaunty) Firefox/3.0.10

When firefox is configured to confirm certificates by OCSP (which seems to be the default) and the OCSP server is unreachable, firefox displays a "Data Transfer Interrupted" screen without further explanation what the actual problem is.

We noticed the problem with firefox Mac/Win/Linux during a comodo.com outage.

Reproducible: Always

Steps to Reproduce:
1. configure firewall to block ocsp.comodoca.com. 
2.restart firefox
3. go to https://www.my-hammer.de/v3/registration.php?clickedInNavigationBar=1 (sorry, shameless plug)
Actual Results:  
"Data Transfer Interrupted" error screen

Expected Results:  
Get an explanation that it's not the site navigated to that isn't working. Get the info that the certificate cannot be validated because the OCSP is not reachable.
Maybe get the choice to ignore this error.

Comment 1

8 years ago
If it's an EV-certificate, bug 508633 might help (downgrade to no EV-certificate). Otherwise, it's a dupe of bug 334658.
Reporter, please retest with Firefox 3.6.12 or later in a fresh profile (http://support.mozilla.com/kb/Managing+profiles). Also update your plugins (flash, adobe reader, java, quicktime, silverlight, etc.) Go to the developer's website and download the latest version from there. If you no longer see this issue, please close this bug as RESOLVED, WORKSFORME. If you do see the bug, please post a comment.
Whiteboard: [CLOSEME 2010-12-01]
No reply, INCOMPLETE. Please retest with Firefox 3.6.12 or later and a new profile (http://support.mozilla.com/kb/Managing+profiles). If you continue to see this issue with the newest firefox and a new profile, then please comment on this bug.
Last Resolved: 7 years ago
Resolution: --- → INCOMPLETE
You need to log in before you can comment on or make changes to this bug.