Sounds like a corrupt SSL certificate.
Happens quite often, it appears to work correctly, but the secure session 
cannot be established.
Get Verisign to reissue the certificate.

Even if the intermediate certificate was missing, the page would load, just 
with an SSL warning about trust. This is a failure of the secure session to 
establish.

Simon.

From: Graeme Carstairs [mailto:loonyto...@gmail.com]
Sent: 29 June 2012 12:02
To: NT System Admin Issues
Subject: Re: Weird SSL issues on existing IIS6 WSS 3 site

The intermediate Certs are there.

Its strange and googling hasnt helpe.


Graeme

On 29 June 2012 11:49, Paul Hutchings 
<paul.hutchi...@mira.co.uk<mailto:paul.hutchi...@mira.co.uk>> wrote:
Missing intermediate cert would be my first guess.

From: Graeme Carstairs 
[mailto:loonyto...@gmail.com<mailto:loonyto...@gmail.com>]
Sent: 29 June 2012 11:45
To: NT System Admin Issues
Subject: Weird SSL issues on existing IIS6 WSS 3 site

Hi There,

One of our customers had a public facing WSS 3 site secured witha go daddy SSL.

they were bought over by another company and since then the wSS has no longer 
been public facing but is still entirely SSL.

The SSL has been expired for 2 months now as we are going through parent 
company process of getting a new SSL issued.

They initially issued us with on of the Enterprise CA, then a $150 verisign one 
and we have noe been issues a $600 verisign one.

The problem is

Import the certificate VIA Cerificates MMC, it checks out and can be viewed as 
a valid cert. and assign to the website in ISS.


Immediately the site stops working,

IE shows a Could not display the page rror (no muber) Chrome gives a 107 SSL 
protocol Error.

Using fiddler to monitor the traffic flow, and its a 107 error it shows as the 
only response.

Replace the new cert with the old expired one and straight away the sites 
working (with cert expired error) but still working.

Any one got any suggestions as to what may be casuing this.

Thanks

graeme



--
Good news everyone, you have just received an e-mail from me!

~ Finally, powerful endpoint security that ISN'T a resource hog! ~
~ <http://www.sunbeltsoftware.com/Business/VIPRE-Enterprise/>  ~

---
To manage subscriptions click here: 
http://lyris.sunbelt-software.com/read/my_forums/
or send an email to 
listmana...@lyris.sunbeltsoftware.com<mailto:listmana...@lyris.sunbeltsoftware.com>
with the body: unsubscribe ntsysadmin

________________________________
MIRA Ltd

Watling Street, Nuneaton, Warwickshire, CV10 0TU, England
Registered in England and Wales No. 402570
VAT Registration  GB 100 1464 84

The contents of this e-mail are confidential and are solely for the use of the 
intended recipient.  If you receive this e-mail in error, please delete it and 
notify us either by e-mail, telephone or fax.  You should not copy, forward or 
otherwise disclose the content of the e-mail as this is prohibited.

~ Finally, powerful endpoint security that ISN'T a resource hog! ~
~ <http://www.sunbeltsoftware.com/Business/VIPRE-Enterprise/>  ~

---
To manage subscriptions click here: 
http://lyris.sunbelt-software.com/read/my_forums/
or send an email to 
listmana...@lyris.sunbeltsoftware.com<mailto:listmana...@lyris.sunbeltsoftware.com>
with the body: unsubscribe ntsysadmin



--
Good news everyone, you have just received an e-mail from me!

~ Finally, powerful endpoint security that ISN'T a resource hog! ~
~ <http://www.sunbeltsoftware.com/Business/VIPRE-Enterprise/>  ~

---
To manage subscriptions click here: 
http://lyris.sunbelt-software.com/read/my_forums/
or send an email to 
listmana...@lyris.sunbeltsoftware.com<mailto:listmana...@lyris.sunbeltsoftware.com>
with the body: unsubscribe ntsysadmin

~ Finally, powerful endpoint security that ISN'T a resource hog! ~
~ <http://www.sunbeltsoftware.com/Business/VIPRE-Enterprise/>  ~

---
To manage subscriptions click here: 
http://lyris.sunbelt-software.com/read/my_forums/
or send an email to listmana...@lyris.sunbeltsoftware.com
with the body: unsubscribe ntsysadmin

Reply via email to