New issue
Advanced search Search tips
Note: Color blocks (like or ) mean that a user may not be available. Tooltip shows the reason.

Issue 827034 link

Starred by 1 user

Issue metadata

Status: Assigned
Owner:
Last visit 28 days ago
Components:
EstimatedDays: ----
NextAction: ----
OS: Linux
Pri: 2
Type: Bug-Regression



Sign in to add a comment

Chrome Headless on Linux has trouble with Symantec signed certificate

Reported by easi...@gmail.com, Mar 29 2018

Issue description

UserAgent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_13_3) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/65.0.3325.181 Safari/537.36

Steps to reproduce the problem:
1. Visit a HTTPS URL that's using one of the Symantec signed certificate.

Chrome for Mac 65.0.3325.181 in both regular mode and headless can open the page just fine.

Chrome for Linux 65.0.3325.181 in regular mdoe can open the page just fine.

Chrome for Linux 65.0.3325.181 in headless mode CANNOT open the page.

Open any HTTPS URL that's not signed by Symantec works in any versions.

What is the expected behavior?
> The SSL certificate used to load resources from https://auth-sfm.ops.sfdc.net will be distrusted in M70. Once distrusted, users will be prevented from loading these resources.

This is on Chrome 65 so it is expected to work.

What went wrong?
[0328/213255.206148:ERROR:nss_ocsp.cc(614)] No URLRequestContext for NSS HTTP handler. host: ss.symcb.com
[0328/213255.206198:ERROR:cert_verify_proc_nss.cc(944)] CERT_PKIXVerifyCert for example.com failed err=-8179

Did this work before? Yes before the last chrome update for ubuntu

Chrome version: 65.0.3325.181  Channel: stable
OS Version: 
Flash Version:
 
Labels: Needs-Triage-M65

Comment 2 by kozy@chromium.org, Mar 29 2018

Owner: lushnikov@chromium.org
Status: Assigned (was: Unconfirmed)
Hm.

Sign in to add a comment