Error code: ssl_error_renegotiation_not_allowed

Post your questions about Web Server usage and Apache + PHP + MySQL/SQLite web applications.

Re: Error code: ssl_error_renegotiation_not_allowed

Postby schumaku » Thu Jun 23, 2011 3:17 pm

Dear Alex,

I'm impressed about QNAP efforts trying to proof the mandatory update of OpenSSL is not required. Afraid - your proof is outdated. On one hand, the default was indeed carried forward to the Firefox 4 release version - and is again in stable Mozilla Firefox 5.0 available for some days.

No more excuses - update OpenSSL in v3.5.0!

Advice: just try the way which Moogs mentioned about.


This is not a trick, this is not feasible for normal users - beyond it's torpedizing Mozillas serious security consideratins and remediation attempts.

Regards,
-Kurt.
User avatar
schumaku
Guru
 
Posts: 22317
Joined: Mon Jan 21, 2008 4:41 pm
Location: Kloten (Zurich), Switzerland -- Skype: schumaku
NAS Model: TS-x79 Pro

Re: Error code: ssl_error_renegotiation_not_allowed

Postby schumaku » Thu Jun 23, 2011 5:46 pm

FMI: https://wiki.mozilla.org/Security:Reneg ... _as_broken.

Threat: http://web.nvd.nist.gov/view/vuln/detai ... -2009-3555

Case closed - Update OpenSSL :shock: - hoever, I can't understand how this needs weeks and escalation up to the PM director and the CEO.
User avatar
schumaku
Guru
 
Posts: 22317
Joined: Mon Jan 21, 2008 4:41 pm
Location: Kloten (Zurich), Switzerland -- Skype: schumaku
NAS Model: TS-x79 Pro

Re: Error code: ssl_error_renegotiation_not_allowed

Postby AlexKe » Fri Jun 24, 2011 5:33 pm

Hi Folks,

We will fix the https connectin on virtual host on coming firmware version.
AlexKe
Experience counts
 
Posts: 1829
Joined: Wed Jan 06, 2010 2:49 pm
NAS Model: Not Selected

Re: Error code: ssl_error_renegotiation_not_allowed

Postby River Trent » Fri Jun 24, 2011 11:18 pm

Hurrah!
User avatar
River Trent
Getting the hang of things
 
Posts: 80
Joined: Wed Dec 02, 2009 10:24 pm
NAS Model: TS-419U

Re: Error code: ssl_error_renegotiation_not_allowed

Postby schumaku » Sun Jun 26, 2011 9:17 pm

QNAPAlex wrote:We will fix the https connectin on virtual host on coming firmware version.
Next v.3.5.0 Beta build to come in reasonable short time, or v3.x due by the end of the year 2011?
User avatar
schumaku
Guru
 
Posts: 22317
Joined: Mon Jan 21, 2008 4:41 pm
Location: Kloten (Zurich), Switzerland -- Skype: schumaku
NAS Model: TS-x79 Pro

Re: Error code: ssl_error_renegotiation_not_allowed

Postby River Trent » Wed Jul 20, 2011 8:55 pm

Still not fixed in firmware version: 3.4.4 Build 0718T.

Any idea when this will be fixed??
User avatar
River Trent
Getting the hang of things
 
Posts: 80
Joined: Wed Dec 02, 2009 10:24 pm
NAS Model: TS-419U

Re: Error code: ssl_error_renegotiation_not_allowed

Postby schumaku » Wed Jul 20, 2011 9:33 pm

Oh no.......... confirmed.

Not addessed in v23.5.0 Beta 1, too.
User avatar
schumaku
Guru
 
Posts: 22317
Joined: Mon Jan 21, 2008 4:41 pm
Location: Kloten (Zurich), Switzerland -- Skype: schumaku
NAS Model: TS-x79 Pro

Re: Error code: ssl_error_renegotiation_not_allowed

Postby River Trent » Tue Aug 16, 2011 5:59 pm

Still not working in firmware version: 3.5.0 Build 0815T
User avatar
River Trent
Getting the hang of things
 
Posts: 80
Joined: Wed Dec 02, 2009 10:24 pm
NAS Model: TS-419U

Re: Error code: ssl_error_renegotiation_not_allowed

Postby schumaku » Tue Aug 16, 2011 6:02 pm

Updating and testing OpenSSL takes more time


Hard, but we need to understand the new features and AFP/TimeMachine for Lion had higher priority.
User avatar
schumaku
Guru
 
Posts: 22317
Joined: Mon Jan 21, 2008 4:41 pm
Location: Kloten (Zurich), Switzerland -- Skype: schumaku
NAS Model: TS-x79 Pro

Re: Error code: ssl_error_renegotiation_not_allowed

Postby NocturnalFilth » Tue Aug 16, 2011 11:15 pm

I surely hope they will come with an updated version of openssl soon for QNAP, because it's currently causing a lot of frustration
Mark
NocturnalFilth
Getting the hang of things
 
Posts: 54
Joined: Mon Aug 01, 2011 5:24 am
NAS Model: TS-212

Re: Error code: ssl_error_renegotiation_not_allowed

Postby schumaku » Wed Aug 17, 2011 4:04 am

viewtopic.php?f=32&t=44618&p=217558#p206550

Status 24. June:

QNAPAlex wrote:Hi Folks,

We will fix the https connectin on virtual host on coming firmware version.


Failed.
User avatar
schumaku
Guru
 
Posts: 22317
Joined: Mon Jan 21, 2008 4:41 pm
Location: Kloten (Zurich), Switzerland -- Skype: schumaku
NAS Model: TS-x79 Pro

Re: Error code: ssl_error_renegotiation_not_allowed

Postby chaplin1 » Wed Nov 16, 2011 9:44 pm

Are people at QNAP taking this one seriously ? This ist a major Prio 1 Severity 1 issue. You cannot require the whole world to either change some parameters in their Firefox settings. The latest firmware still has not fixed this issue, we need at least an outlook and confirmation that it has made it on top of the list.
--
J.B.
chaplin1
New here
 
Posts: 9
Joined: Tue Nov 08, 2011 8:07 pm
Location: Germany
NAS Model: TS-x19P II

Re: Error code: ssl_error_renegotiation_not_allowed

Postby schumaku » Fri Nov 18, 2011 6:35 pm

QNAP seems to be conceenred about backwards browser compatibility. In my opinion, this is not an issue at all in the year 2011. All decent browsers available on still supported operating systems are supporting the SSL re-negotiation.
User avatar
schumaku
Guru
 
Posts: 22317
Joined: Mon Jan 21, 2008 4:41 pm
Location: Kloten (Zurich), Switzerland -- Skype: schumaku
NAS Model: TS-x79 Pro

Re: Error code: ssl_error_renegotiation_not_allowed

Postby River Trent » Thu Dec 01, 2011 5:26 pm

3.5.2 Build 1126T Still not addressed

Yawn!
User avatar
River Trent
Getting the hang of things
 
Posts: 80
Joined: Wed Dec 02, 2009 10:24 pm
NAS Model: TS-419U

Re: Error code: ssl_error_renegotiation_not_allowed

Postby grobylev » Fri Jan 06, 2012 5:56 pm

3.6.0 build 1228T (beta) neither...
but i'm not surprised... same story with php, mysql
QNAP TS-459Pro II 4x2TB in RAID5 3GB RAM | Trunking: IEEE 802.3ad on Cisco SLM2008 | protected by APC SMT1500I with AP9631
QPKGs: Optware, JRE, Python, CrashPlan, DropBox, Squid, Transmission | Router: Linksys E3000 | FW: DD-WRT v24-sp2 mega
User avatar
grobylev
Know my way around
 
Posts: 227
Joined: Fri Jul 22, 2011 2:19 am
Location: Budapest, Hungary
NAS Model: TS-459 Pro II

PreviousNext

Return to Web Server & Applications (Apache + PHP + MySQL / SQLite)

Who is online

Users browsing this forum: No registered users and 3 guests