trying to configure / access their router on their local LAN) > > So far the only work around is to exit the browser and then manually delete > the certificate There is no reason to improve security ? Comment 43 Brian Smith (:briansmith, :bsmith, use NEEDINFO?) 2010-12-28 10:18:51 PST IIRC, serial number uniqueness is used for revocation checking and for mitigate collision attacks against certs signed with weak hash It would be a very high-risk change, though.

Is your site's certificate one of those? Does anyone have reference to the "meeting" where this bug was introduced? The router certificate is not under *any* tab and still have this problem. In fact, for the vast majority of people who encounter this error, it will be due to dealing with a self-signed certificate or hardware device, and NOT due to a Skip

From the File menu, choose Export. Please Note: Click the [ ] image to expand the troubleshooting instructions for each step below. Comment 17 Matthias Versen [:Matti] 2009-02-20 04:02:03 PST Go to tools/options/Advanced/Encryption//view certificates and delete you router override in the servers Tab AND in in the Authorities Tab. In contrast, bug #404486 appears to be a UI issue in an old beta where the message "The certificate is not trusted because it is self signed" is displayed and no

If you double click the skull, it will create a temporary exception and reload the page. In case you don't want to go through the multi-click excercise to create a temporary workaround, you could use my "SSL Hazard Extension" from It will give you a skull Comment 67 jeff 2012-05-16 10:35:14 PDT (In reply to Andre Klapper from comment #65) > [Please don't put words in other people's mouths and stay technical. Also see bug 410622 comment 43 for a possible workaround, though please don't comment in that bug.

DO NOT hit ENTER yet! Instructions for Windows XP: Open Programs and Features by clicking the Start button. Ja Nein Schicken Sie uns Ihr Feedback. Content available under a Creative Commons license.

Face it, there are a ton of legacy devices out there - routers, access points, network drives, etc - that generate their own self-signed SSL certs. Please get a new certificate containing a unique serial number. | | (Error code: sec_error_reused_issuer_and_serial) | | The page you are trying to view cannot be shown because the authenticity of These have all the serial number "0" in the certificate :( Comment 58 Brook Harty 2012-04-09 10:06:55 PDT How about a simple "override" option for users using hardware with same serials. It's been 5 years.

Click Save. Follow the steps in the Wizard to choose a restore point. This article describes some of these error messages. So I'm > gussing that the "fundamental NSS design issue" was "designed" for version > 3.12.

DO NOT hit ENTER yet! Adding a comment alone isn't enough to get attention to it. Enter any administrator passwords (if prompted). At the very least there should be an about:config tweak to fix this for those of us who know what we are doing.

We do not guarantee that problems resulting from the incorrect use of Registry Editor can be solved. Please get a new certificate containing a unique serial number. (Error code: sec_error_reused_issuer_and_serial) " The iLO updates did not do anything to my test server. make what your want there 3. Comment 34 Paul Sladen 2010-01-03 17:58:32 PST Bug #312732 is mostly discussing lack of a workaround for this too.

Printer will not respond Insecure password warning in Firefox How to stay safe on the web Firefox does not work - Common fixes to get you back up and running firefoxman1462 If it is not possible, enter in this folder and delete these two files %APPDATA%\Mozilla\Firefox\Profiles\ cert_override.txt cert8.db Restart Firefox. As such Quick Tips have not been reviewed, validated or approved by Dell and should be used with appropriate caution. Please fix AGAIN!

This problem is also mentioned in the INTEGRATED DELL(TM) REMOTE ACCESS CONTROLLER 6 (iDRAC6) VERSION 1.80 Release Notes.  

Quick Tips content is self-published by the Dell Support Professionals who resolve Comment 70 Andreas van dem Helge 2012-05-16 12:20:49 PDT Jeff it that were to happen the developers would say "a fundamental security flaw would be reintroduced. As a last resort, I deleted the files cert8.db and cert_override.txt form the directory ~/.mozilla/firefox/[user_profile_dir]/ (Under Linux of course. Type "update" into the search box and hit ENTER.

The DHE cipher suites were disabled for a reason and re-enabling them will make you vulnerable for the Logjam attack. Why can't Firefox? A solution (on the vendors' parts) for fixing all this SSL brokenness would fix the serial number reuse issue too. Comment 118 shadus 2014-01-07 15:53:11 PST Standing problem on dell idrac6, I've been battling this for weeks finally gave up and went to IE for the dracs.

Over a VPN or local LAN SSL isn't really required but > it's there and sometimes forced. Thanks.] As written by Kai here before: "no simple solution possible, fundamental NSS design issue". Or do you think I'm wrong about that?