fiddler.network.https> HTTPS handshake to <site> (for #4) failed

1 Answer 9189 Views
Windows
Ahsen
Top achievements
Rank 1
Ahsen asked on 31 May 2019, 06:37 PM

fiddler.network.https> HTTPS handshake to <site> (for #4) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted

Win32 (SChannel) Native Error Code: 0x80090326

 

For anyone with a problem using HTTPS decryption in Fiddler, the following questions must be answered for me to have any chance of helping you.

  Q1> What version of Fiddler and Windows are you using?
v5.0.20182.28034 for .NET 4.6.1
Built: Wednesday, June 27, 2018

64-bit AMD64, VM: 70.0mb, WS: 140.0mb
.NET 4.7.1 WinNT 10.0.17134.0

  Q2> Which HTTPS protocols are enabled (Tools > Fiddler Options > HTTPS > "Protocols" link at the right.
<client>;tls1.0;tls1.1;tls1.2

  Q3> Which certificate maker are you using? (Tools > Fiddler Options > HTTPS > click "Certificates Generated By")
CertEnroll

Use wildcards (checked).

Current Configuration
Certificate Engine: ˜
ValidFrom: 366 days ago
HashAlg-Root: SHA256
HashAlg-EE: SHA256
ExtraParams-Root:
ExtraParams-EE:

  Q4> What app(s) traffic are you trying to capture? What version? Have you tried a different browser or client? What HTTPS servers are you trying to reach?
Web site: banweb.cos.edu

Chrome Version 74.0.3729.169 (Official Build) (64-bit) - Incognito mode and regular.
FireFox 67.0 (64-bit)

banweb.cos.edu

  Q5> What text appears on Fiddler's Log tab at the point of failure? What, if anything, appears in the client? (You should really allow .log or .txt file attachments)
11:04:48:6783 Fiddler Running...
11:04:48:6783 AutoProxy failed. Disabling for this network.
11:04:48:7251 Windows 8+ AppContainer isolation feature detected.
11:05:13:7295 Assembly 'C:\Users\<user>\AppData\Local\Programs\Fiddler\CertMaker.dll' was not found. Using default Certificate Generator.
11:05:13:7607 /Fiddler.CertMaker> Using .‰+˜ for certificate generation; UseWildcards=True.
11:05:13:8232 /Fiddler.CertMaker> Root Certificate located; private key in container '<key>-c89f-4806-811c-fb7588c06682'
11:05:13:8545 /Fiddler.CertMaker> Invoking CertEnroll for Subject: CN=*.smartscreen.microsoft.com, O=DO_NOT_TRUST, OU=Created by http://www.fiddler2.com; Thread's ApartmentState: MTA
11:05:14:4482 [Fiddler] No HTTP request was received from (swi_fc:3256) new client socket, port 54389.
11:05:14:5263 /Fiddler.CertMaker> Finished CertEnroll for 'CN=*.smartscreen.microsoft.com, O=DO_NOT_TRUST, OU=Created by http://www.fiddler2.com'. Returning cert
11:05:14:5888 /Fiddler.CertMaker> Invoking CertEnroll for Subject: CN=*.telerik.com, O=DO_NOT_TRUST, OU=Created by http://www.fiddler2.com; Thread's ApartmentState: MTA
11:05:14:5888 /Fiddler.CertMaker> Reusing PrivateKey for '*.telerik.com'
11:05:14:9170 /Fiddler.CertMaker> Finished CertEnroll for 'CN=*.telerik.com, O=DO_NOT_TRUST, OU=Created by http://www.fiddler2.com'. Returning cert
11:05:15:1201 !SecureClientPipeDirect failed: System.IO.IOException Authentication failed because the remote party has closed the transport stream. for pipe (CN=*.telerik.com, O=DO_NOT_TRUST, OU=Created by http://www.fiddler2.com)
11:06:30:0333 [Fiddler] No HTTPS request was received from (svchost:3064) new client socket, port 54397.
11:07:11:7490 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:07:11:7681 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:07:16:2481 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:07:16:4461 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:07:16:4471 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:07:16:4491 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:07:16:4491 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:07:16:4581 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:07:16:6531 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:07:17:1251 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:07:21:3810 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:07:21:4000 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:07:21:5150 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:07:22:6926 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:07:22:8596 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:07:22:8686 fiddler.network.https> HTTPS handshake to <site> (for #94) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:07:22:8826 fiddler.network.https> HTTPS handshake to <site> (for #95) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:07:23:0666 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:07:23:0736 fiddler.network.https> HTTPS handshake to <site> (for #96) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:07:23:0806 fiddler.network.https> HTTPS handshake to <site> (for #97) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:07:28:2727 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:07:28:2747 fiddler.network.https> HTTPS handshake to <site> (for #102) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:07:28:2797 fiddler.network.https> HTTPS handshake to <site> (for #103) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:07:28:4797 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:07:28:4817 fiddler.network.https> HTTPS handshake to <site> (for #104) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:07:28:4907 fiddler.network.https> HTTPS handshake to <site> (for #105) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:07:33:5095 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:07:33:5115 fiddler.network.https> HTTPS handshake to <site> (for #106) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:07:33:5175 fiddler.network.https> HTTPS handshake to <site> (for #107) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:08:03:5444 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:08:03:5474 fiddler.network.https> HTTPS handshake to <site> (for #108) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:08:03:5534 fiddler.network.https> HTTPS handshake to <site> (for #109) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:09:03:5922 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:09:03:5942 fiddler.network.https> HTTPS handshake to <site> (for #110) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:09:03:6002 fiddler.network.https> HTTPS handshake to <site> (for #111) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:09:33:9997 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:12:55:6104 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:12:55:6124 fiddler.network.https> HTTPS handshake to <site> (for #114) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:12:55:6204 fiddler.network.https> HTTPS handshake to <site> (for #115) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:12:57:6898 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:12:57:6918 fiddler.network.https> HTTPS handshake to <site> (for #116) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:12:57:6988 fiddler.network.https> HTTPS handshake to <site> (for #117) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:13:11:6394 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:15:30:6904 [Fiddler] No HTTPS request was received from (svchost:3064) new client socket, port 54524.
11:15:30:8311 [Fiddler] No HTTPS request was received from (svchost:3064) new client socket, port 54526.
11:15:30:9561 [Fiddler] No HTTPS request was received from (svchost:3064) new client socket, port 54528.
11:17:57:7664 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:17:57:7704 fiddler.network.https> HTTPS handshake to <site> (for #123) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:17:57:7764 fiddler.network.https> HTTPS handshake to <site> (for #124) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:18:57:8687 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:19:01:0127 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:19:01:1847 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:19:01:1867 fiddler.network.https> HTTPS handshake to <site> (for #5) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:19:01:1927 fiddler.network.https> HTTPS handshake to <site> (for #6) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:19:01:3687 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:19:01:3707 fiddler.network.https> HTTPS handshake to <site> (for #7) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:19:01:3767 fiddler.network.https> HTTPS handshake to <site> (for #8) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:20:44:6962 AutoProxy failed. Disabling for this network.
11:20:44:6982 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:20:44:7012 fiddler.network.https> HTTPS handshake to <site> (for #1) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:20:44:7092 fiddler.network.https> HTTPS handshake to <site> (for #2) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:20:44:9032 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:20:44:9062 fiddler.network.https> HTTPS handshake to <site> (for #3) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:20:44:9122 fiddler.network.https> HTTPS handshake to <site> (for #4) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:20:56:8781 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:20:56:8801 fiddler.network.https> HTTPS handshake to <site> (for #4) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:20:56:8861 fiddler.network.https> HTTPS handshake to <site> (for #5) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:20:57:0551 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:20:57:0571 fiddler.network.https> HTTPS handshake to <site> (for #6) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:20:57:0631 fiddler.network.https> HTTPS handshake to <site> (for #7) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:21:02:0798 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:21:02:0818 fiddler.network.https> HTTPS handshake to <site> (for #8) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:21:02:0878 fiddler.network.https> HTTPS handshake to <site> (for #9) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:21:09:5459 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:21:09:5469 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:21:09:5599 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:21:09:5689 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:21:09:5689 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:21:13:4588 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:21:13:4598 fiddler.network.https> HTTPS handshake to <site> (for #4) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:21:13:4658 fiddler.network.https> HTTPS handshake to <site> (for #5) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:21:13:6418 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance
11:21:13:6448 fiddler.network.https> HTTPS handshake to <site> (for #6) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:21:13:6508 fiddler.network.https> HTTPS handshake to <site> (for #7) failed. System.Security.Authentication.AuthenticationException A call to SSPI failed, see inner exception. < The message received was unexpected or badly formatted
Win32 (SChannel) Native Error Code: 0x80090326
11:21:54:5660 [Fiddler] No HTTPS request was received from (swi_fc:3256) new client socket, port 54624.
11:21:54:5817 [Fiddler] No HTTPS request was received from (swi_fc:3256) new client socket, port 54629.
11:21:54:5817 [Fiddler] No HTTPS request was received from (swi_fc:3256) new client socket, port 54630.
11:21:54:5817 [Fiddler] No HTTPS request was received from (swi_fc:3256) new client socket, port 54626.

1 Answer, 1 is accepted

Sort by
0
Kammen
Telerik team
answered on 07 Jun 2019, 01:06 PM
Hi,

Thanks for contacting us. 

The typical explanation for this message, as documented in many places, is that the client application has not been configured to trust Fiddler's root certificate. As such, the client closes the connection to Fiddler when it sees the untrusted certificate.

http://fiddler2.com/documentation/Configure-Fiddler/Tasks/TrustFiddlerRootCert

Hope this helps.

Regards,
Kammen
Progress Telerik
Do you want to have your say when we set our development plans? Do you want to know when a feature you care about is added or when a bug fixed? Explore the Telerik Feedback Portal and vote to affect the priority of the items
Ahsen
Top achievements
Rank 1
commented on 18 Jul 2019, 03:10 AM

That is not the case here. I have made sure the cert is trusted and made all the other changes and suggestions on

protocols:

<client>;tls1.0;tls1.1;tls1.2

Simeon
Telerik team
commented on 24 Jul 2019, 09:16 AM

Hello Ahsen,

I checked the case and when opening banweb.cos.edu without Fiddler, there is a warning in the Chrome's console that the website is using one of the deprecated protocols TLS 1.0 or TLS 1.1

It seems that in this case Fiddler is not respecting the <client> tag and it changes the protocol. Maybe in this case Chrome, somehow knowing that the protocol is deprecated and is vulnerable to attacks, closes the connection.

I have opened an issue about this problem in our backlock and I hope that we will schedule it soon for a fix.

Meanwhile, I have found a work-around, which you could use - in the protocols you should type only tls1.0

Regards,
Simeon
Progress Telerik
Do you want to have your say when we set our development plans? Do you want to know when a feature you care about is added or when a bug fixed? Explore the Telerik Feedback Portal and vote to affect the priority of the items
Ahsen
Top achievements
Rank 1
commented on 24 Jul 2019, 04:11 PM

Hello Simeon,

  Unfortunately this solution doesn't work for us as we are going from a portal with SSO which uses the other protocols and then directs us to that page.

Thank you,
Ahsen Baig

Simeon
Telerik team
commented on 29 Jul 2019, 11:37 AM

Hello Ahsen,

In this case you could try using the x-OverrideSslProtocols preference:
public static void OnBeforeRequest(Session oSession)
{
    if (oSession.HostnameIs("banweb.cos.edu")) oSession["x-OverrideSslProtocols"] = "tls1.0";
    // ...
}


Regards,
Simeon
Progress Telerik
Do you want to have your say when we set our development plans? Do you want to know when a feature you care about is added or when a bug fixed? Explore the Telerik Feedback Portal and vote to affect the priority of the items
Tags
Windows
Asked by
Ahsen
Top achievements
Rank 1
Answers by
Kammen
Telerik team
Share this question
or