This forum is closed to new posts and responses. Individual names altered for privacy purposes. The information contained in this website is provided for informational purposes only and should not be construed as a forum for customer support requests. Any customer support requests should be directed to the official HCL customer support channels below:

HCL Software Customer Support Portal for U.S. Federal Government clients
HCL Software Customer Support Portal


May 13, 2015, 2:55 PM
4 Posts

Web Connection Failing

  • Category: Administration
  • Platform: Windows
  • Release: 9.0.1
  • Role: Administrator
  • Tags:
  • Replies: 2

Recently we applied FixPack 3 IinterimFix 2 (HotFix 241)  to get full cipher support for the very latest SHA-2 / TLS1.2  SSL encryption to our Domino 9.01 servers.  Now, when we attempt to access them through the web via Firefox v38, this Connection Failed error:

Secure Connection Failed
An error occurred during a connection to www.somewebsite.biz. SSL peer rejected a handshake message for unacceptable content. (Error code: ssl_error_illegal_parameter_alert)
    The page you are trying to view cannot be shown because the authenticity of the received data could not be verified.
    Please contact the website owners to inform them of this problem.

The server log shows following message:

05/12/2015 03:09:43 PM  TLS/SSL connection xxx.xx.xx.xxx(xxx)-xxx.xxx.xx.xx(xxxx) failed with server certificate chain signature alogrithms NOT supported by client
05/12/2015 03:09:43 PM  TLS/SSL connection xxx.xx.xx.xxx(xxx)-xxx.xxx.xx.xx(xxxx)  failed with server certificate chain requiring support for SHA512

This is not happening with Chrome or Internet Explorer and was not happening to Firefox (and Safari) before the Hot Fix was applied.  There must be something wrong at our server end.  Any ideas?

Jul 31, 2015, 7:50 AM
1 Posts
Web Connection Failing me too!

Yesterdey I  applied FixPack 4 on  IBM domino 9.0.1,  Now, The server log shows following message:

[1540:000C-0610] 31/07/2015 09:37:54   TLS/SSL connection xxx.xx.xx.xxx(xxx)-xxx.xxx.xx.xx(xxxx)  failed with server certificate chain requiring support for SHA512 
[1540:000C-0610] 31/07/2015 09:37:55   TLS/SSL connection xxx.xx.xx.xxx(xxx)-xxx.xxx.xx.xx(xxxx)) failed with inappropriate_fallback

 

This problem, there wasn't in IBM domino 9.0.1 FP3 and my certificates is ok , It's SHA-512 and it isn't MD5

Why?


This forum is closed to new posts and responses. Individual names altered for privacy purposes. The information contained in this website is provided for informational purposes only and should not be construed as a forum for customer support requests. Any customer support requests should be directed to the official HCL customer support channels below:

HCL Software Customer Support Portal for U.S. Federal Government clients
HCL Software Customer Support Portal