浏览器证书不适用于谷歌和其他一些网站

时间:2015-07-23 11:05:54

标签: youtube ssl-certificate hsts

我无法在浏览器中打开Goog​​le,Youtube和其他一些网站。它显示证书身份验证错误。

我将其更改为受信任的网站。现在它显示如下:

 (Index of /[ICO]   Name    Last modified   Size    Description)

我不知道该怎么做。我无法谷歌。

其他网站如facebook,yahoo和Gmail在浏览器中正确加载。

这是google-chrome中的消息:

Your connection is not private

Attackers might be trying to steal your information from 
www.google.co.in (for example, passwords, messages, or 
credit cards).     NET::ERR_CERT_AUTHORITY_INVALID

点击高级版时,我收到Chrome消息:

Hide   Copy Code
www.google.co.in normally uses encryption to protect your 
information. When Chrome tried to connect to www.google.co.in 
this time, the website sent back unusual and incorrect 
credentials. Either an attacker is trying to pretend 
to be www.google.co.in, or a Wi-Fi sign-in screen has 
interrupted the connection. Your information is still secure 
because Chrome stopped the connection before any data was 
exchanged.

You cannot visit www.google.co.in right now because the 
website uses HSTS. Network errors and attacks are 
usually temporary, so this page will probably work later.

这是谷歌服务器的问题,介于两者之间还是客户端浏览器?是否有针对此错误的解决方法?

2 个答案:

答案 0 :(得分:1)

TLDR:您的操作系统太旧,无法正确更新证书。更新您的操作系统。

答案很长: 在使用google-chrome版本49.0.2593.0 dev(64位)的Fedora 17的PC上也出现了这个错误。

问题图片: enter image description here

Your connection is not private

Attackers might be trying to steal your information from 
stackoverflow.com (for example, passwords, messages, or 
credit cards). NET::ERR_CERT_INVALID

stackoverflow.com normally uses encryption to protect your 
information. When Google Chrome tried to connect to 
stackoverflow.com this time, the website sent back 
unusual and incorrect credentials. This may happen 
when an attacker is trying to pretend to be 
stackoverflow.com, or a Wi-Fi sign-in screen has 
interrupted the connection. Your information is still 
secure because Google Chrome stopped the connection 
before any data was exchanged.

You cannot visit stackoverflow.com right now because the 
website sent scrambled credentials that Google Chrome 
cannot process. Network errors and attacks are usually 
temporary, so this page will probably work later.

以下是Google Chrome对错误的评论:

https://support.google.com/chrome/answer/4454607

我试图解决这个问题没有效果:

Clearing the cache and cookies of chrome.
Uninstall google-chrome and re-install it.
do a sudo yum update to make sure everything is up to date.
Make sure there are no extra routers between my desktop and the internetmodem.
Logging out of stackoverflow from all devices, trying again.
Turn off all port forwards on the internal network router.
Rebooting the modem and restarting the computers.
Using a different separate internet connection through tethering.
Disabling all google-chrome extensions.
forcing a visit to the site with http://, not https://
Use the development branch unstable branch of google-chrome
Opening stackoverflow in incognito mode, and trying http:// and https://
Enabled stackoverflow as a trusted site.

单击URL栏上的https://按钮时出错:

Your connection to stackoverflow.com is encrypted using a modern cipher suite.

The connection uses TLS 1.2

The connection is encrypted and authenticated using 
CHACHA20_POLY1305 and uses ECDHE_ECDSA as the key 
exchange mechanism.

证书:

Common Name(CN) ssl334129.cloudfaressl.com
Organization(O) <Not Part of Certificate>
Organizational Unit(OU) Domain Control Validated
Serial Number: 00:C3:6D: ... :A8

发布者:

Common Name (CN) COMODO ECC Domain Validation Secure Server CA 2
Organization (O) COMODO CA Limited
Organizational Unit (OU) <Not Part Of Certificate>

有效的最终解决方案:

将整个操作系统擦拭到裸机,然后使用与以前相同的操作系统从头开始重建整个操作系统,使用我之前做过的相同版本的google-chrome,然后让我进去。也许是恶意软件木马铬检测到的马或病毒。

操作系统的证书管理系统遭受后门禁用。

答案 1 :(得分:0)

这是Chrome问题。切换到其他浏览器,你会没事的。谷歌决定在没有“预期”SSL证书的情况下进入网站几乎不可能(你可以逐个网站清除缓存的证书信息,这真是一个痛苦......但期待问题再次出现再次,然后你必须再次清除缓存的证书)。

如果您正在使用网络过滤或各种真实的安全产品来解密/检查/然后重新加密流量,则Chrome会将其全部转储。

我曾经是Chrome粉丝,但由于这个问题,我不得不放弃Chrome。我不打算关闭我真正的安全产品,因此我可以继续使用Chrome!

相关问题