Issue metadata
Sign in to add a comment
|
NET::ERR_CERT_COMMON_NAME_INVALID self signed certificate
Reported by
tajrij.k...@gmail.com,
Mar 16 2017
|
||||||||||||||||||||||
Issue descriptionUserAgent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_5) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/59.0.3042.4 Safari/537.36 Example URL: https://dl.kaskus.dev ( local domain ) Steps to reproduce the problem: 1. Create self signed certificate for your local domain that pointing to local server / 127.0.0.1 ). add it to keychain and set "always trust" 2. try to load https://dl.kaskus.dev What is the expected behavior? Secure connection / green secure on address bar will show. it works fine with Google chrome stable release Version 57.0.2987.98 (64-bit) ( showing secure connection / green secure ). What went wrong? Canary gives Not Secured Flag on address bar with following error : Your connection is not private Attackers might be trying to steal your information from dl.kaskus.dev (for example, passwords, messages, or credit cards). NET::ERR_CERT_COMMON_NAME_INVALID Did this work before? N/A Chrome version: 59.0.3042.4 Channel: canary OS Version: OS X 10.10.5 Flash Version:
,
Mar 16 2017
Your certificate needs a subjectAltName.
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
84:78:13:2a:88:1d:9b:fb
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=ID, ST=Jakarta, L=Jakarta, O=Kaskus, OU=IT, CN=dl.kaskus.dev/emailAddress=kibi@kaskusnetworks.com
Validity
Not Before: Feb 8 03:27:41 2017 GMT
Not After : Feb 8 03:27:41 2018 GMT
Subject: C=ID, ST=Jakarta, L=Jakarta, O=Kaskus, OU=IT, CN=dl.kaskus.dev/emailAddress=kibi@kaskusnetworks.com
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public Key: (2048 bit)
Modulus (2048 bit):
00:bd:f3:d6:f5:fa:66:e0:c9:4f:a4:a7:b1:e9:99:
48:6b:d0:51:f3:d8:d7:fd:58:d1:f6:05:d0:79:ce:
f5:af:84:f4:e5:33:05:03:02:9c:4e:fe:a8:cd:93:
1a:c8:43:b7:7d:10:2a:dc:c0:82:e1:b2:32:08:b1:
d7:5a:63:02:f3:c8:80:c2:ed:79:41:ac:d3:b2:89:
bc:d7:fc:6b:2b:e8:ee:9e:a8:d8:bd:27:7a:fa:74:
82:fb:42:6b:69:1c:c5:c5:f2:16:ea:73:31:64:20:
00:d3:e1:55:80:5e:0d:92:a3:d9:31:7a:78:43:32:
1f:cc:c4:86:a9:96:83:c1:21:a5:e2:48:4e:d7:4d:
89:60:0b:b2:ce:e2:17:38:6a:c4:e4:db:2f:60:d0:
54:67:9e:dc:9c:6c:ba:bd:54:db:80:39:8d:83:bb:
e1:63:04:c2:95:cb:f1:94:58:ff:b2:ee:7e:6b:5f:
cb:bf:8e:e2:cf:30:70:c5:a3:f4:51:a3:bd:5f:44:
1a:da:93:c7:ff:2b:27:b2:1b:9e:9b:0f:0e:1f:bf:
29:5d:3c:8c:2c:b9:02:ad:61:b0:9c:5d:72:6f:d7:
b2:64:e1:1c:eb:24:83:fe:6b:96:80:04:d3:1c:4c:
12:08:a9:37:a8:66:1e:ef:0f:01:96:d5:2d:2c:e8:
b9:43
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
44:BD:7C:89:76:4B:16:42:BB:79:20:37:4D:8D:40:11:10:B8:FB:6D
X509v3 Authority Key Identifier:
keyid:44:BD:7C:89:76:4B:16:42:BB:79:20:37:4D:8D:40:11:10:B8:FB:6D
X509v3 Basic Constraints:
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
7a:d5:cd:6a:2d:b9:99:a3:42:f6:35:36:9a:52:48:2a:25:15:
bf:40:66:74:f5:76:fb:0b:5d:6d:5a:33:89:21:80:e5:87:1a:
d6:5a:c9:88:b5:c0:3b:5d:a5:e0:b6:dd:a1:84:eb:3f:de:ce:
26:b2:3b:09:51:42:6a:62:af:be:a5:fb:80:f4:ab:35:69:1f:
8d:dc:fe:76:84:a4:f9:90:b6:d9:b9:02:cd:53:27:f5:11:4e:
1c:bd:c4:b4:ec:76:60:8f:62:5d:81:47:58:d8:7d:fc:08:d5:
6c:3e:c2:2e:16:86:70:43:c8:a8:17:cc:c3:26:4d:3f:88:92:
b9:cf:30:d6:d4:cb:13:ce:fc:fd:ea:01:8c:df:60:b8:73:08:
35:75:fc:73:03:7a:bf:ba:db:32:f1:07:28:f3:6b:f8:6b:7b:
eb:ec:9c:76:5d:6b:a7:b8:b5:00:a9:a8:3f:4d:93:74:8d:82:
43:38:bc:c3:3b:64:a9:fa:d5:76:27:db:77:0a:18:e4:22:b8:
a4:6b:5d:72:e9:8f:1b:e5:9e:51:5a:08:8d:95:5b:ed:0f:16:
3d:77:65:8f:5d:d6:21:7a:09:34:22:87:bb:5d:cd:1b:54:63:
31:77:23:1b:43:72:ef:a6:35:a6:db:50:70:32:ee:c5:6e:78:
f9:79:05:00
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
|
|||||||||||||||||||||||
►
Sign in to add a comment |
|||||||||||||||||||||||
Comment 1 by nyerramilli@chromium.org
, Mar 16 2017