Меню

Truckers mp ошибка 0x80092012

Вот такую ошибку выдаёт при подключение itializeSecurityContext failed: Unknown error (0x80092012) — и не понятные символы

У друга всё отлично работает

Rustam Shoev
Приветствую. Рустам глянь тут

Спойлер

https://forum.truckersmp.com/index.php?/topic/50534-timeout-trying-again/

Но похоже тебе надо установить вот это

Спойлер

https://www.microsoft.com/net/download/dotnet-framework-runtime/net462

Из за этого в основном проблемы с запуском.
Удачи.

Виктор.Т.
не то не другое не помогло

Rustam Shoev
Введи заново пароль и почту и поставь галочку напротив Remember Me.

У меня вот такая проблема

нажимаю ДА и безконечная загрузка

Б.А.Н.
Версия игры не совпадает с версией мультипеера.

Б.А.Н.
МП не поддерживает бэта-версии.

Rustam Shoev
Здравствуйте! Решили данную проблему? У самого такая же и не понятно что делать.

Виктор.Т.
Не помогает,даже если вводить что-то другое выпадает та же ошибка.

war.hero.9may
Раньше сталкивался с такой проблемой?
Там сказано если мне не изменяет память, что почту или пароль вводишь с ошибкой на которой у тебя зарегистрирован аккаунт мп.
И еще попробуй на время входа отключить антивирус.

Rustam Shoev
Привет версия игры не совпадает жди пока не выйдет 1 33 и мп не переделают я тоже зайти не могу только с америкой

“alizeSecurityContext failed: Unknown error (0x80092012)”

For those reading looking for solution, turn off your antivirus AND check win10 built in “Virus & threat protection” in control panel. There should be an item in Protection History which listed truckersmp being blocked for folder access. Click action and choose allow on this device! Then try logging in should now work.

========

So you know I got mine working already. I am here to ask for actual solution to have it work while keeping antivirus running.

I am new to truckersMP and had the above login error. After searching and ended up with above mentioned solution, I believe there must be a way to add exclusion or somewhat of the truckersmp to antivirus whitelist so it can run without compromising security. After all I game long hours and really not a good idea to leave my pc exposed all these time.

I am using Kaspersky Total Security and I must say I know very little about it. I installed it and leave it do its things. Occasionally see pop ups to ask if I want to trust this program and run it, then I response to it. But there is no such notification when I launch truckersmp and clearly something is blocked that cause the login error.

Can someone guide me to the proper setup in antivirus. I think it will benefit many here who face the same problem too.

Thanks in advance

Description

This is in a corporate environment, specific security policies, proxies and firewalls are in place.

Using GitHub through Jenkins:
Command «…git.exe ls-remote -h https://github.com/…..git HEAD» returned status code 128:
stdout:
stderr: fatal: unable to access
‘https://github.com/….git/’: schannel: next InitializeSecurityContext failed: Unknown error (0x80092012) — The revocation function was unable to check revocation for the certificate.

Using the same on a command line works seamlessly.

Any help solving or pinpointing this issue is greatly appreciated.

Version

GitHub Desktop version: git version 2.13.0.windows.1

OS version: Windows Server 2012 R2 Standard

Steps to Reproduce

  1. Get behind specific security policies, proxies and firewalls
  2. Try to access project configuration page in Jenkins; view Git Repository URL status info

Expected behavior: Repo cloning

Actual behavior: Accessing the repo fails

Reproduces how often: Every time, for every project

Logs

Sep 26, 2017 4:48:17 PM org.eclipse.jetty.server.session.Session beginInvalidate
INFO: Session node01p2vfd8qgjzcabocpvhaff1se0 already being invalidated
Sep 26, 2017 4:54:51 PM jenkins.model.Jenkins$25 run
SEVERE: Restarting VM as requested by admin
Sep 26, 2017 4:54:51 PM jenkins.model.Jenkins cleanUp
INFO: Stopping Jenkins
Sep 26, 2017 4:54:51 PM jenkins.model.Jenkins$21 onAttained
INFO: Started termination
Sep 26, 2017 4:54:51 PM jenkins.model.Jenkins$21 onAttained
INFO: Completed termination
Sep 26, 2017 4:54:51 PM jenkins.model.Jenkins _cleanUpDisconnectComputers
INFO: Starting node disconnection
Sep 26, 2017 4:54:51 PM jenkins.model.Jenkins _cleanUpShutdownPluginManager
INFO: Stopping plugin manager
Sep 26, 2017 4:54:51 PM jenkins.model.Jenkins _cleanUpPersistQueue
INFO: Persisting build queue
Sep 26, 2017 4:54:51 PM jenkins.model.Jenkins _cleanUpAwaitDisconnects
INFO: Waiting for node disconnection completion
Sep 26, 2017 4:54:51 PM jenkins.model.Jenkins cleanUp
INFO: Jenkins stopped
Sep 26, 2017 4:54:53 PM Main deleteWinstoneTempContents
WARNING: Failed to delete the temporary Winstone file C:WindowsTEMPwinstonejenkins.war
Sep 26, 2017 4:54:53 PM org.eclipse.jetty.util.log.Log initialized
INFO: Logging initialized @295ms to org.eclipse.jetty.util.log.JavaUtilLog
Sep 26, 2017 4:54:53 PM winstone.Logger logInternal
INFO: Beginning extraction from war file
Sep 26, 2017 4:54:53 PM org.eclipse.jetty.server.handler.ContextHandler setContextPath
WARNING: Empty contextPath
Sep 26, 2017 4:54:53 PM org.eclipse.jetty.server.Server doStart
INFO: jetty-9.4.z-SNAPSHOT
Sep 26, 2017 4:54:54 PM org.eclipse.jetty.webapp.StandardDescriptorProcessor visitServlet
INFO: NO JSP Support for /, did not find org.eclipse.jetty.jsp.JettyJspServlet
Sep 26, 2017 4:54:54 PM org.eclipse.jetty.server.session.DefaultSessionIdManager doStart
INFO: DefaultSessionIdManager workerName=node0
Sep 26, 2017 4:54:54 PM org.eclipse.jetty.server.session.DefaultSessionIdManager doStart
INFO: No SessionScavenger set, using defaults
Sep 26, 2017 4:54:54 PM org.eclipse.jetty.server.session.HouseKeeper startScavenging
INFO: Scavenging every 660000ms
Sep 26, 2017 4:54:54 PM org.eclipse.jetty.server.handler.ContextHandler doStart
INFO: Started w.@1987993{/,file:///E:/Program%20Files%20(x86)/Jenkins/war/,AVAILABLE}{E:Program Files (x86)Jenkinswar}
Sep 26, 2017 4:54:54 PM org.eclipse.jetty.server.AbstractConnector doStart
INFO: Started ServerConnector@1f8f5ae{HTTP/1.1,[http/1.1]}{0.0.0.0:8080}
Sep 26, 2017 4:54:54 PM org.eclipse.jetty.server.Server doStart
INFO: Started @1688ms
Sep 26, 2017 4:54:55 PM winstone.Logger logInternal
INFO: Winstone Servlet Engine v4.0 running: controlPort=disabled
Sep 26, 2017 4:54:56 PM jenkins.InitReactorRunner$1 onAttained
INFO: Started initialization
Sep 26, 2017 4:54:56 PM jenkins.InitReactorRunner$1 onAttained
INFO: Listed all plugins
Sep 26, 2017 4:55:01 PM jenkins.InitReactorRunner$1 onAttained
INFO: Prepared all plugins
Sep 26, 2017 4:55:01 PM jenkins.InitReactorRunner$1 onAttained
INFO: Started all plugins
Sep 26, 2017 4:55:01 PM hudson.ExtensionFinder$GuiceFinder$FaultTolerantScope$1 error
INFO: Failed to instantiate optional component hudson.plugins.build_timeout.operations.AbortAndRestartOperation$DescriptorImpl; skipping
Sep 26, 2017 4:55:02 PM jenkins.InitReactorRunner$1 onAttained
INFO: Augmented all extensions
Sep 26, 2017 4:55:02 PM jenkins.InitReactorRunner$1 onAttained
INFO: Loaded all jobs
Sep 26, 2017 4:55:03 PM jenkins.slaves.DeprecatedAgentProtocolMonitor initializerCheck
WARNING: This Jenkins instance uses deprecated Remoting protocols: JNLP2-connect,JNLP3-connectIt may impact stability of the instance. If newer protocol versions are supported by all system components (agents, CLI and other clients), it is highly recommended to disable the deprecated protocols.
Sep 26, 2017 4:55:03 PM jenkins.InitReactorRunner$1 onAttained
INFO: Completed initialization
Sep 26, 2017 4:55:03 PM hudson.model.AsyncPeriodicWork$1 run
INFO: Started Download metadata
Sep 26, 2017 4:55:03 PM hudson.model.AsyncPeriodicWork$1 run
INFO: Finished Download metadata. 7 ms
Sep 26, 2017 4:55:03 PM org.springframework.context.support.AbstractApplicationContext prepareRefresh
INFO: Refreshing org.springframework.web.context.support.StaticWebApplicationContext@18e5c76: display name [Root WebApplicationContext]; startup date [Tue Sep 26 16:55:03 BST 2017]; root of context hierarchy
Sep 26, 2017 4:55:03 PM org.springframework.context.support.AbstractApplicationContext obtainFreshBeanFactory
INFO: Bean factory for application context [org.springframework.web.context.support.StaticWebApplicationContext@18e5c76]: org.springframework.beans.factory.support.DefaultListableBeanFactory@69e46d
Sep 26, 2017 4:55:03 PM org.springframework.beans.factory.support.DefaultListableBeanFactory preInstantiateSingletons
INFO: Pre-instantiating singletons in org.springframework.beans.factory.support.DefaultListableBeanFactory@69e46d: defining beans [authenticationManager]; root of factory hierarchy
Sep 26, 2017 4:55:03 PM org.springframework.context.support.AbstractApplicationContext prepareRefresh
INFO: Refreshing org.springframework.web.context.support.StaticWebApplicationContext@1d15a43: display name [Root WebApplicationContext]; startup date [Tue Sep 26 16:55:03 BST 2017]; root of context hierarchy
Sep 26, 2017 4:55:03 PM org.springframework.context.support.AbstractApplicationContext obtainFreshBeanFactory
INFO: Bean factory for application context [org.springframework.web.context.support.StaticWebApplicationContext@1d15a43]: org.springframework.beans.factory.support.DefaultListableBeanFactory@1fd0a7f
Sep 26, 2017 4:55:03 PM org.springframework.beans.factory.support.DefaultListableBeanFactory preInstantiateSingletons
INFO: Pre-instantiating singletons in org.springframework.beans.factory.support.DefaultListableBeanFactory@1fd0a7f: defining beans [filter,legacy]; root of factory hierarchy
Sep 26, 2017 4:55:04 PM org.jenkinsci.plugins.skipcert.ItemListenerImpl onLoaded
INFO: Bypassing certificate check
Sep 26, 2017 4:55:04 PM hudson.WebAppMain$3 run
INFO: Jenkins is fully up and running
Sep 26, 2017 4:56:18 PM org.eclipse.jetty.server.session.Session beginInvalidate
INFO: Session node0qdcbe63zgppj1anmj9glsupq70 already being invalidated

Additional Information

Содержание

  1. AutoCAD
  2. Проблема
  3. Подключитесь к Интернету, чтобы продолжить
  4. Причины:
  5. Решение
  6. Чтобы восстановить корневые сертификаты, выполните следующие действия.
  7. Код ошибки 0x80092012 запрос на ssl соединение не удалось выполнить
  8. Answered by:
  9. Question
  10. Answers
  11. All replies
  12. Почему возникают ошибки SSL-соединения и как их исправить?
  13. Что такое SSL?
  14. Причины возникновения ошибок SSL-соединения
  15. Проблемы с датой и временем
  16. Ненадежный SSL-сертификат
  17. Брандмауэр или антивирус, блокирующие сайт
  18. Включенный экспериментальный протокол QUIC
  19. Отсутствие обновлений операционной системы
  20. Использование SSL-сертификата версии 3.0
  21. Ошибки «Invalid CSR» при генерации сертификата из панели управления облачного провайдера

AutoCAD

Автор:

Проблема

При запуске программы Autodesk для Windows отображается следующее сообщение об ошибке:

Подключитесь к Интернету, чтобы продолжить

Не удалось обнаружить сервер лицензий Autodesk. Эта проблема может возникать по разным причинам, в том числе по указанным ниже.

  • Прервано подключение к Интернету.
  • Сервер лицензий Autodesk временно недоступен.

В службе просмотра событий Windows может отображаться следующая ошибка:

Причины:

Скомпрометированные корневые сертификаты для программ с серийными номерами по подписке с однопользовательским доступом.

Решение

Функция HTTPS Inspection может привести к ошибке в процессе проверки отзыва сертификата.

  • Отключите эту функцию для *.autodesk.com.

Чтобы восстановить корневые сертификаты, выполните следующие действия.

  1. Установите обновления протокола TLS (Transport Layer Security), соответствующие программному обеспечению и версии Autodesk.
  2. Откройте диспетчер сертификатов.

А. Щелкните меню Windows «Пуск».
Б. Введите certmgr.msc.
В. Нажмите клавишу ENTER.

  1. Перейдите в раздел Доверенные корневые центры сертификации >Сертификаты.
  1. Удалите эти сертификаты. Для этого щелкните их правой кнопкой мыши и выберите «Удалить».
Кому выдан Кем выдан
Go Daddy Class 2 Certification Authority Go Daddy Class 2 Certification Authority
DigiCert Global Root CA DigiCert Global Root CA
DigiCert High Assurance EV Root CA DigiCert High Assurance EV Root CA
GlobalSign GlobalSign
GlobalSign Root CA GlobalSign Root CA
Starfield Class 2 Certification Authority Starfield Class 2 Certification Authority
Thawte Timestamping CA Thawte Timestamping CA
VeriSign Universal Root Certification Authority VeriSign Universal Root Certification Authority
  1. В браузере Internet Explorer 11 (предпочтительно) или Chrome перейдите на следующие веб-сайты:
    • https://www.autodesk.ru/
    • https://accounts.autodesk.com (после загрузки страницы щелкните войти)
    • https://cur.autodesk.com
  2. Вернитесь в диспетчер сертификатов > «Доверенные корневые центры сертификации» > «Сертификаты».
  3. В меню «Действие» выберите «Обновить».
  4. Убедитесь в том, что добавлены сертификаты, соответствующие открытым веб-сайтам.
  5. Восстановите программное обеспечение Autodesk из панели управления Windows.
    1. Откройте «Панель управления» > «Программы» > «Программы и компоненты».
    2. Правой кнопкой мыши щелкните необходимую программу Autodesk и выберите «Удалить/Изменить».
    3. Выберите «Восстановить» или «Переустановить» и следуйте инструкциям мастера настройки программы.

Примечание. Если в домене есть объект групповой политики (GPO), ограничивающий регистрацию или отзыв стороннего сертификата, ознакомьтесь со следующей статьей:
Параметр «Однопользовательская» или «Войти в систему» отсутствуют на экране начала работы из-за дефектов корневых сертификатов.

Источник

Код ошибки 0x80092012 запрос на ssl соединение не удалось выполнить

This forum has migrated to Microsoft Q&A. Visit Microsoft Q&A to post new questions.

Answered by:

Question

Hello everybody.
It was migrated a Windows 2008 R2 Enterprise Root CA on a Windows 2012 R2 Offline Root CA + Sub CA.

Root CRL add to LDAP

certutil –dspublish –f «C:CDRootCARoot Certificate.crl» «Certificate Authority. «

When a client requests a certificate error occurs.
Active Directory Certificate Services denied request 412 because The revocation function was unable to check revocation for the certificate. 0x80092012 (-2146885614 CRYPT_E_NO_REVOCATION_CHECK). Additional information: Error Constructing or Publishing Certificate
When testing
certutil -verify -urlfetch subca.cer
The revocation function was unable to check revocation because the revocation server was offline. 0x80092013 (-2146885613 CRYPT_E_REVOCATION_OFFLINE)
————————————
Revocation check skipped — server offline
Cert is a CA certificate
ERROR: Verifying leaf certificate revocation status returned The revocation function was unable to check revocation because the revocation server was offline. 0x80092013 (-2146885613 CRYPT_E_REVOCATION_OFFLINE)
CertUtil: The revocation function was unable to check revocation because the revocation server was offline.
CertUtil: -verify command completed successfully.
In the second test.
certutil -url subca.cer
CRL (from CDP) — Failed
I would be very grateful tip.

MCITP, MCSE. Regards, Oleg

Answers

After adding a CRL in LDAP. It took reissue SubCA.
With the release of SubCA checked CRL Root CA. With his lack of written and gives SubCA marked .
Revocation Status: The revocation function was unable to check revocation for the certificate.

After signing SubCA certificates earned.

MCITP, MCSE. Regards, Oleg

can you post a full dump of «certutil -verify -urlfetch subca.cer» command?

Vadims Podāns, aka PowerShell CryptoGuy
My weblog: www.sysadmins.lv
PowerShell PKI Module: pspki.codeplex.com
Check out new: SSL Certificate Verifier
Check out new: PowerShell File Checksum Integrity Verifier tool.

Please make sure that the client is able to access at least one of the CDP listed in the subca.cer.

Steven Lee Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Support, contact tnmff@microsoft.com.

Issuer:
CN=Company Certificate Authority
DC=Company
DC=org
Name Hash(sha1): 12a8fbb0998c92c2f73486e3ac5f96a3e6ab1765
Name Hash(md5): 4f4bcf3f9004ce434d07e46bfc695afc
Subject:
CN=Company Certificate Subordinate Authority
OU=Information Systems
O=Company Org
C=US
Name Hash(sha1): 776d6fc95204a474354401817065e4844acb58b1
Name Hash(md5): 3977a4d60c49cfbd4756951f2a83472c
Cert Serial Number: 6123302d000200002e69

dwFlags = CA_VERIFY_FLAGS_CONSOLE_TRACE (0x20000000)
dwFlags = CA_VERIFY_FLAGS_DUMP_CHAIN (0x40000000)
ChainFlags = CERT_CHAIN_REVOCATION_CHECK_CHAIN_EXCLUDE_ROOT (0x40000000)
HCCE_LOCAL_MACHINE
CERT_CHAIN_POLICY_BASE
——— CERT_CHAIN_CONTEXT ———
ChainContext.dwInfoStatus = CERT_TRUST_HAS_PREFERRED_ISSUER (0x100)
ChainContext.dwErrorStatus = CERT_TRUST_REVOCATION_STATUS_UNKNOWN (0x40)
ChainContext.dwErrorStatus = CERT_TRUST_IS_OFFLINE_REVOCATION (0x1000000)

SimpleChain.dwInfoStatus = CERT_TRUST_HAS_PREFERRED_ISSUER (0x100)
SimpleChain.dwErrorStatus = CERT_TRUST_REVOCATION_STATUS_UNKNOWN (0x40)
SimpleChain.dwErrorStatus = CERT_TRUST_IS_OFFLINE_REVOCATION (0x1000000)

CertContext[0][0]: dwInfoStatus=102 dwErrorStatus=1000040
Issuer: CN=Company Certificate Authority, DC=Company, DC=org
NotBefore: 10/11/2015 11:07 PM
NotAfter: 6/5/2019 3:17 PM
Subject: CN=Company Certificate Subordinate Authority, OU=Information Systems, O=Company Org, C=US
Serial: 6123302d000200002e69
Template: SubCA
1b17a47351692f2a078dd5b75d3d11f30d3414d7
Element.dwInfoStatus = CERT_TRUST_HAS_KEY_MATCH_ISSUER (0x2)
Element.dwInfoStatus = CERT_TRUST_HAS_PREFERRED_ISSUER (0x100)
Element.dwErrorStatus = CERT_TRUST_REVOCATION_STATUS_UNKNOWN (0x40)
Element.dwErrorStatus = CERT_TRUST_IS_OFFLINE_REVOCATION (0x1000000)
—————- Certificate AIA —————-
Verified «Certificate (0)» Time: 0
[0.0] ldap:///CN=Company%20Association%20Certificate%20Authority,CN=AIA,CN=Public%20Key%20Services,CN=Services,CN=Configuration,DC=Company,DC=org?cACertificate?base?objectClass=certificationAuthority

CertContext[0][1]: dwInfoStatus=10c dwErrorStatus=0
Issuer: CN=Company Certificate Authority, DC=Company, DC=org
NotBefore: 5/29/2009 7:04 PM
NotAfter: 6/5/2019 3:17 PM
Subject: CN=Company Certificate Authority, DC=Company, DC=org
Serial: 7ae9fcca60829fa64cbd39bf99e729b7
e7746458a96f7aea98eb8aa5623267b5baa76500
Element.dwInfoStatus = CERT_TRUST_HAS_NAME_MATCH_ISSUER (0x4)
Element.dwInfoStatus = CERT_TRUST_IS_SELF_SIGNED (0x8)
Element.dwInfoStatus = CERT_TRUST_HAS_PREFERRED_ISSUER (0x100)
—————- Certificate AIA —————-
No URLs «None» Time: 0
—————- Certificate CDP —————-
Expired «Base CRL (0764)» Time: 0
[0.0] ldap:///CN=Company%20Association%20Certificate%20Authority(1),CN=oldEnterprice01,CN=CDP,CN=Public%20Key%20Services,CN=Services,CN=Configuration,DC=Company,DC=org?certificateRevocationList?base?objectClass=cRLDistributionPoint

Exclude leaf cert:
1b17a47351692f2a078dd5b75d3d11f30d3414d7
Full chain:
f3dbdace25cdcccb69a1e48a75aa48aacf1da941
Issuer: CN=Company Certificate Authority, DC=Company, DC=org
NotBefore: 10/11/2015 11:07 PM
NotAfter: 6/5/2019 3:17 PM
Subject: CN=Company Certificate Subordinate Authority, OU=Information Systems, O=Company Org, C=US
Serial: 6123302d000200002e69
Template: SubCA
1b17a47351692f2a078dd5b75d3d11f30d3414d7
The revocation function was unable to check revocation because the revocation server was offline. 0x80092013 (-2146885613 CRYPT_E_REVOCATION_OFFLINE)
————————————
Revocation check skipped — server offline
Cert is a CA certificate

ERROR: Verifying leaf certificate revocation status returned The revocation function was unable to check revocation because the revocation server was offline. 0x80092013 (-2146885613 CRYPT_E_REVOCATION_OFFLINE)
CertUtil: The revocation function was unable to check revocation because the revocation server was offline.

CertUtil: -verify command completed successfully.

The problem CDP, as the single point of CRL checking was LDAP.

New Root CA Offline and LDAP does not write.

—————- Certificate CDP —————-
Failed «CDP» Time: 0
Error retrieving URL: The system can not find the file specified. 0x80070002 (WIN32: 2 ERROR_FILE_NOT_FOUND)
ldap:///CN=Company%20Association%20Certificate%20Authority(1),CN=RootPKI,CN=CDP,CN=Public%20Key%20Services,CN=Services,CN=Configuration,DC=Company,DC=org?certificateRevocationList?base?objectClass=cRLDistributionPoint

Now it is necessary figure out how to write in this way CRL

Источник

Почему возникают ошибки SSL-соединения и как их исправить?

Зачастую после установки SSL-сертификатов многие пользователи сталкиваются с ошибками, которые препятствуют корректной работе защищенного протокола HTTPS.

Предлагаем разобраться со способами устранения подобных ошибок.

Что такое SSL?

SSL (Secure Socket Layer) — это интернет-протокол для создания зашифрованного соединения между пользователем и сервером, который гарантирует безопасную передачу данных.

Когда пользователь заходит на сайт, браузер запрашивает у сервера информацию о наличии сертификата. Если сертификат установлен, сервер отвечает положительно и отправляет копию SSL-сертификата браузеру. Затем браузер проверяет сертификат, название которого должно совпадать с именем сайта, срок действия сертификата и наличие корневого сертификата, выданного центром сертификации.

Причины возникновения ошибок SSL-соединения

Когда сертификат работает корректно, адресная строка браузера выглядит примерно так:

Но при наличии ошибок она выглядит несколько иначе:

Существует множество причин возникновения таких ошибок. К числу основных можно отнести:

  • Некорректную дату и время на устройстве (компьютер, смартфон, планшет и т.д.);
  • Ненадежный SSL-сертификат;
  • Брандмауэр или антивирус, блокирующие сайт;
  • Включенный экспериментальный интернет-протокол QUIC;
  • Отсутствие обновлений операционной системы;
  • Использование SSL-сертификата устаревшей версии 3.0;
  • Появление ошибки «Invalid CSR» при генерации сертификата из панели управления облачного провайдера.

Давайте рассмотрим каждую из них подробнее.

Проблемы с датой и временем

Если на устройстве установлены некорректные дата и время, ошибка SSL-соединения неизбежна, ведь при проверке сертификата происходит проверка срока его действия. Современные браузеры умеют определять такую ошибку самостоятельно и выводят сообщение о неправильно установленной дате или времени.

Для исправления этой ошибки достаточно установить на устройстве актуальное время. После этого необходимо перезагрузить страницу или браузер.

Ненадежный SSL-сертификат

Иногда при переходе на сайт, защищенный протоколом HTTPS, появляется ошибка «SSL-сертификат сайта не заслуживает доверия».

Одной из причин появления такой ошибки, как и в предыдущем случае, может стать неправильное время. Однако есть и вторая причина — браузеру не удается проверить цепочку доверия сертификата, потому что не хватает корневого сертификата. Для избавления от такой ошибки необходимо скачать специальный пакет GeoTrust Primary Certification Authority, содержащий корневые сертификаты. После скачивания переходим к установке. Для этого:

  • Нажимаем сочетание клавиш Win+R и вводим команду certmgr.msc, жмем «Ок». В Windows откроется центр сертификатов.
  • Раскрываем список «Доверенные корневые центры сертификации» слева, выбираем папку «Сертификаты», кликаем по ней правой кнопкой мышки и выбираем «Все задачи — импорт».

  • Запустится мастер импорта сертификатов. Жмем «Далее».

  • Нажимаем кнопку «Обзор» и указываем загруженный ранее сертификат. Нажимаем «Далее»:

  • В следующем диалоговом окне указываем, что сертификаты необходимо поместить в доверенные корневые центры сертификации, и нажимаем «Далее». Импорт должен успешно завершиться.

После вышеперечисленных действий можно перезагрузить устройство и проверить отображение сайта в браузере.

Брандмауэр или антивирус, блокирующие сайт

Некоторые сайты блокируются брандмауэром Windows. Для проверки можно отключить брандмауэр и попробовать зайти на нужный сайт. Если SSL-сертификат начал работать корректно, значит дело в брандмауэре. В браузере Internet Explorer вы можете внести некорректно работающий сайт в список надежных и проблема исчезнет. Однако таким образом вы снизите безопасность своего устройства, так как содержимое сайта может быть небезопасным, а контроль сайта теперь отключен.

Также SSL может блокировать антивирусная программа. Попробуйте отключить в антивирусе проверку протоколов SSL и HTTPS и зайти на сайт. При необходимости добавьте сайт в список исключений антивируса.

Включенный экспериментальный протокол QUIC

QUIC — это новый экспериментальный протокол, который нужен для быстрого подключения к интернету. Основная задача протокола QUIC состоит в поддержке нескольких соединений. Вы можете отключить этот протокол в конфигурации вашего браузера.

Показываем как отключить QUIC на примере браузера Google Chrome:

  • Откройте браузер и введите команду chrome://flags/#enable-quic;
  • В появившемся окне будет выделен параметр: Experimental QUIC protocol (Экспериментальный протокол QUIC). Под названием этого параметра вы увидите выпадающее меню, в котором нужно выбрать опцию: Disable.

  • После этого просто перезапустите браузер.

Этот способ работает и в Windows и в Mac OS.

Отсутствие обновлений операционной системы

Проблемы с SSL-сертификатами могут возникать и из-за того, что на вашей операционной системе давно не устанавливались обновлений. Особенно это касается устаревших версий Windows (7, Vista, XP и более ранние). Установите последние обновления и проверьте работу SSL.

Использование SSL-сертификата версии 3.0

Некоторые сайты используют устаревший SSL-протокол версии 3.0, который не поддерживают браузеры. По крайней мере, по умолчанию. Чтобы браузер поддерживал устаревший SSL необходимо сделать следующее (на примере браузера Google Chrome):

  • Откройте браузер и перейдите в раздел «Настройки».
  • Прокрутите страницу настроек вниз и нажмите «Дополнительные».
  • В разделе «Система» найдите параметр «Настройки прокси-сервера» и кликните на него.

  • Откроется окно. Перейдите на вкладку «Дополнительно».
  • В этой вкладке вы увидите чекбокс «SSL 3.0».

  • Поставьте галочку в чекбоксе, нажмите кнопку «Ок» и перезагрузите браузер.

Ошибки «Invalid CSR» при генерации сертификата из панели управления облачного провайдера

В процессе активации сертификата можно столкнуться с ошибкой «Invalid CSR». Такая ошибка возникает по следующим причинам:

Источник

  • Remove From My Forums
  • Question

  • Good day.

    There is a Lync 2013 installed on one machine and a user can’t login into it with two repeated Schannel errors in logs

    The first one:

    «The following fatal alert was generated: 43. The internal error state is 552

    Type: Error Event ID: 36888 Category: None

    And the second one:

    «The certificate received from the remote server has not validated correctly. The error code is
    0x80092012. The SSL connection has failed. The attached data contains the server certificate«.

    Type: Error Event ID: 36876 Category: None

    There is only one computer with this problem, others are OK. The computer is in a domain. The user account is good too, he can login from any other machines.

    Lync by itself generate errors that it can’t find any Lync server and, may be, there are some problems with DNS. Although, the net and DNS are fine.

    Here is a list of my actions, what I did to solve this problem on the machine:

    • Checked network settings on the machine.
    • Lync server answered to ping & nslookup, the same as the DC.
    • Set manually in network setting of the computer DNS servers & in Lync settings Lync servers.
    • Cleaned all old and unvalid certificates on the computer.
    • Delete and install again our organization certificates.
    • Delete this machine from a domain and join again.
    • Time is correct on this computer.
    • Group politics are applied.
    • Updatings of OS are installed too.

    Nothing of it helped.

    I read that it is a server problem & you have to clean LDAP cache on the server, but this problem is only on one computer. If the server was guilty all the computers would work wrong. Am I right?

    • Moved by

      Wednesday, April 1, 2015 11:12 AM

    • Edited by
      shurshunchik
      Friday, April 3, 2015 11:06 AM

  • Remove From My Forums
  • Question

  • Good day.

    There is a Lync 2013 installed on one machine and a user can’t login into it with two repeated Schannel errors in logs

    The first one:

    «The following fatal alert was generated: 43. The internal error state is 552

    Type: Error Event ID: 36888 Category: None

    And the second one:

    «The certificate received from the remote server has not validated correctly. The error code is
    0x80092012. The SSL connection has failed. The attached data contains the server certificate«.

    Type: Error Event ID: 36876 Category: None

    There is only one computer with this problem, others are OK. The computer is in a domain. The user account is good too, he can login from any other machines.

    Lync by itself generate errors that it can’t find any Lync server and, may be, there are some problems with DNS. Although, the net and DNS are fine.

    Here is a list of my actions, what I did to solve this problem on the machine:

    • Checked network settings on the machine.
    • Lync server answered to ping & nslookup, the same as the DC.
    • Set manually in network setting of the computer DNS servers & in Lync settings Lync servers.
    • Cleaned all old and unvalid certificates on the computer.
    • Delete and install again our organization certificates.
    • Delete this machine from a domain and join again.
    • Time is correct on this computer.
    • Group politics are applied.
    • Updatings of OS are installed too.

    Nothing of it helped.

    I read that it is a server problem & you have to clean LDAP cache on the server, but this problem is only on one computer. If the server was guilty all the computers would work wrong. Am I right?

    • Moved by

      Wednesday, April 1, 2015 11:12 AM

    • Edited by
      shurshunchik
      Friday, April 3, 2015 11:06 AM

Проблема

При запуске программы Autodesk для Windows отображается следующее сообщение об ошибке:

Подключитесь к Интернету, чтобы продолжить

Не удалось обнаружить сервер лицензий Autodesk. Эта проблема может возникать по разным причинам, в том числе по указанным ниже.

  • Прервано подключение к Интернету.
  • Сервер лицензий Autodesk временно недоступен.

Изображение, добавленное пользователем

В службе просмотра событий Windows может отображаться следующая ошибка:

Имя события: Schannel. Сертификат, полученный от удаленного сервера, не прошел проверку. Код ошибки: 0x80092012. Запрос на SSL-соединение не удалось выполнить. Сертификат сервера содержится в прилагаемых данных.

Или

Имя события: Schannel. Сертификат, полученный от удаленного сервера, не прошел проверку. Код ошибки: 0x80092012. Запрос на TLS-подключение не удалось выполнить.

Причины:

Скомпрометированные корневые сертификаты для программ с серийными номерами по подписке с однопользовательским доступом.

Решение

Функция HTTPS Inspection может привести к ошибке в процессе проверки отзыва сертификата.

  • Отключите эту функцию для *.autodesk.com.

Чтобы восстановить корневые сертификаты, выполните следующие действия.

  1. Установите обновления протокола TLS (Transport Layer Security), соответствующие программному обеспечению и версии Autodesk.
  2. Откройте диспетчер сертификатов.

А. Щелкните меню Windows «Пуск».
Б. Введите certmgr.msc.
В. Нажмите клавишу ENTER. 

  1. Перейдите в раздел Доверенные корневые центры сертификации > Сертификаты.

Корневые сертификаты

  1. Удалите эти сертификаты. Для этого щелкните их правой кнопкой мыши и выберите «Удалить».
Кому выдан Кем выдан
Go Daddy Class 2 Certification Authority Go Daddy Class 2 Certification Authority
DigiCert Global Root CA DigiCert Global Root CA
DigiCert High Assurance EV Root CA DigiCert High Assurance EV Root CA
GlobalSign GlobalSign
GlobalSign Root CA GlobalSign Root CA
Starfield Class 2 Certification Authority Starfield Class 2 Certification Authority
Thawte Timestamping CA Thawte Timestamping CA
VeriSign Universal Root Certification Authority  VeriSign Universal Root Certification Authority 
  1. В браузере Internet Explorer 11 (предпочтительно) или Chrome перейдите на следующие веб-сайты:
    • https://www.autodesk.ru/
    • https://accounts.autodesk.com (после загрузки страницы щелкните войти)
    • https://cur.autodesk.com
  2. Вернитесь в диспетчер сертификатов > «Доверенные корневые центры сертификации» > «Сертификаты».
  3. В меню «Действие» выберите «Обновить».
  4. Убедитесь в том, что добавлены сертификаты, соответствующие открытым веб-сайтам. 
  5. Восстановите программное обеспечение Autodesk из панели управления Windows.
    1. Откройте «Панель управления» > «Программы» > «Программы и компоненты».
    2. Правой кнопкой мыши щелкните необходимую программу Autodesk и выберите «Удалить/Изменить».
    3. Выберите «Восстановить» или «Переустановить» и следуйте инструкциям мастера настройки программы.

Примечание. Если в домене есть объект групповой политики (GPO), ограничивающий регистрацию или отзыв стороннего сертификата, ознакомьтесь со следующей статьей:
Параметр «Однопользовательская» или «Войти в систему» отсутствуют на экране начала работы из-за дефектов корневых сертификатов.

Программы

Все классические программы

0 0 голоса
Рейтинг статьи
Подписаться
Уведомить о
guest

0 комментариев
Старые
Новые Популярные
Межтекстовые Отзывы
Посмотреть все комментарии

А вот еще интересные материалы:

  • Яшка сломя голову остановился исправьте ошибки
  • Ясность цели позволяет целеустремленно добиваться намеченного исправьте ошибки
  • Ясность цели позволяет целеустремленно добиваться намеченного где ошибка
  • Trove код ошибки 2018
  • Trouver solo 10 коды ошибок