We're calling on all EU-based Mozillians with iOS or iPadOS devices to help us monitor Apple’s new browser choice screens. Join the effort to hold Big Tech to account!

Mozilla Destek’te Ara

Destek dolandırıcılığından kaçının. Mozilla sizden asla bir telefon numarasını aramanızı, mesaj göndermenizi veya kişisel bilgilerinizi paylaşmanızı istemez. Şüpheli durumları “Kötüye kullanım bildir” seçeneğini kullanarak bildirebilirsiniz.

Daha Fazlasını Öğren

I am getting sec_error_extension_value_invalid - how do I fix this?

  • 3 yanıt
  • 44 kişi bu sorunu yaşıyor
  • 1 gösterim
  • Son yanıtı yazan: cor-el

more options

Hi I recently installed an IBM IPS device which allows you to inspect SSL traffic. The way it does this is a sort of man in the middle and this means you need to download a certificate from the device and import it into your browsers. The process is detailed here for various browsers: http://www-01.ibm.com/support/docview.wss?uid=swg27039297.

Now this works for IE and Chrome and up until a recent update Firefox. I now get the error sec_error_extension_value_invalid.

Any idea on how to resolve this?

Hi I recently installed an IBM IPS device which allows you to inspect SSL traffic. The way it does this is a sort of man in the middle and this means you need to download a certificate from the device and import it into your browsers. The process is detailed here for various browsers: http://www-01.ibm.com/support/docview.wss?uid=swg27039297. Now this works for IE and Chrome and up until a recent update Firefox. I now get the error sec_error_extension_value_invalid. Any idea on how to resolve this?

Seçilen çözüm

Very helpful. It looks as though the CA issued by the device (XGS 4100) doesn't conform. Remediation is to lower the version of Firefox back to 28.0 which is the last version listed in the support matrix.

Bu yanıtı konu içinde okuyun 👍 1

Tüm Yanıtlar (3)

more options
more options

Seçilen çözüm

Very helpful. It looks as though the CA issued by the device (XGS 4100) doesn't conform. Remediation is to lower the version of Firefox back to 28.0 which is the last version listed in the support matrix.

more options

It is possible to disable this new feature by disabling libPKIX support, but of course this is not recommended for security and vulnerability reasons.

  • about:config page: security.use_mozillapkix_verification = false