Firefox does not support 4 kibibit ephemeral DH parameters

RESOLVED WORKSFORME

Status

()

Core
Security: PSM
RESOLVED WORKSFORME
6 years ago
3 years ago

People

(Reporter: Aaron Jones, Unassigned)

Tracking

8 Branch
x86
Linux
Points:
---

Firefox Tracking Flags

(Not tracked)

Details

(Reporter)

Description

6 years ago
User Agent: Mozilla/5.0 (X11; Linux i686 on x86_64; rv:7.0.1) Gecko/20100101 Firefox/7.0.1
Build ID: 20110928134238

Steps to reproduce:

Configured a TLSv1 server with a DHE-RSA ciphersuite and a 4096 bit ephemeral DH parameters file.


Actual results:

Secure Connection Failed
          An error occurred during a connection to <redacted>.
          Unable to generate public/private key pair.

(Error code: sec_error_keygen_fail)



Expected results:

The negotiation should have completed successfully: it works in Safari, links, wget, cURL, openssl s_client, etc.
Component: Security → Security: PSM
Product: Firefox → Core
QA Contact: firefox → psm
(Reporter)

Updated

6 years ago
Version: 7 Branch → 8 Branch
Depends on: 636802
Aaron, please re-open this if it isn't fixed now. It should have been fixed by bug 636802.
Status: UNCONFIRMED → RESOLVED
Last Resolved: 3 years ago
Resolution: --- → WORKSFORME
You need to log in before you can comment on or make changes to this bug.