SKGleba / iTLS-Enso

Adds TLS v1.2 to Enso enabled devices
236 stars 14 forks source link

"The certificate expired or is not valid" when visiting "firefox.com" and some other websites #29

Closed Jimmisama closed 1 year ago

Jimmisama commented 1 year ago

Two websites "firefox.com" and "browserleaks.com" 2022-07-21-224656-701235 2022-07-21-224025-170212 I've checked the certificates on my desktop browser and they don't match the one shown as error on my PSVita.

I wonder if I did something wrong. I've installed from the version 3.1 vpk on SD2Vita before, and I switched to vita memory card. I found I could not update from autoplugin or VHBB, so I installed the itls-enso.vpk (version 3.2) from there too. And I still cannot use VHBB or autoplugin's update. I've switched back and forth from the sd2vita and memory card. Tried to install and uninstall itls from both vpks on the two storages but the error persist.

I just want to check if I did anything wrong to my itls plugin that might cause the vhbb and autoplugin to stop working. 2022-07-21-225500-813300 2022-07-21-225512-309367

I don't know if it's normal for the websites like to show "tls 1.2 protocol disabled" after itls-enso installed, too.

Thanks in advance.

olokos commented 1 year ago

This is because a lot of the certificates in i-TLS and vita itself are actually outdated, so the error you see is actually the problem here.

Root CA X3 is expired and was replaced with another certificate, which I have also done with this PR, I also explained that specific certificate in my PR :)

I have provided a fix in #27

SKGleba commented 1 year ago

added new cas in v3.2.1