<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Incorrect SSL certificate in selfserve in Get Support</title>
    <link>https://productioncommunity.publicmobile.ca/t5/Get-Support/Incorrect-SSL-certificate-in-selfserve/m-p/259786#M102411</link>
    <description>&lt;P&gt;I was trying to reach the selfserve portal from Orfox browser on Android and it gives me a SEC_ERROR_UNKNOWN_ISSUER error and does not open the page. However, Firefox works.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Upon some investigation, I found that the SSL certificcate on the site is not configured correctly. I am not sure who to contact to fix this.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Here are the details: Public Mobile uses Digicert for the SSL certificates. When deploying the certificates, intermediate certificates should also be provided. This is done correctly for parts of PM site (community, for example, works correctly). However, this is not done for the selfserve portal. Digicert has a validation page &lt;A href="https://www.digicert.com/help/" target="_self"&gt;https://www.digicert.com/help/&lt;/A&gt; which confirms that there are problems with the certificate configuration (and the also provide steps to fix it):&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT size="2"&gt;The server is not sending the required intermediate certificate.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT size="2"&gt;In most cases, solving this problem in IIS is as simple as installing the correct intermediate certificate file to the Intermediate Certification Authorities folder at the Local Computer level and then restarting IIS. Under some circumstances, restarting the site in IIS is also required.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT size="2"&gt;If you manage this server, you can download the file from &lt;A href="https://www.digicert.com/CACerts/DigiCertSHA2SecureServerCA.crt" target="_blank"&gt;this link&lt;/A&gt; or from your customer account area.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT size="2"&gt;Follow the directions on &lt;A href="https://www.digicert.com/ssl-certificate-installation-microsoft-iis-7.htm" target="_blank"&gt;our certificate installation guide&lt;/A&gt; to install the missing intermediate.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT size="2"&gt;If you have any problems correcting this issue, please contact our helpful support team and we would be happy to assist.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The thing is, most desktop and mobile browsers work around this by downloading the intermediate certificates from somewhere else. So most people don't see the problem. This does not change the fact that there is one. I hope someone in the &lt;a href="https://productioncommunity.publicmobile.ca/t5/user/viewprofilepage/user-id/22437"&gt;@CS_Agent&lt;/a&gt; can bring this to the attention of the webmaster.&lt;/P&gt;</description>
    <pubDate>Tue, 04 Jan 2022 23:37:33 GMT</pubDate>
    <dc:creator>j_b_goode</dc:creator>
    <dc:date>2022-01-04T23:37:33Z</dc:date>
    <item>
      <title>Incorrect SSL certificate in selfserve</title>
      <link>https://productioncommunity.publicmobile.ca/t5/Get-Support/Incorrect-SSL-certificate-in-selfserve/m-p/259786#M102411</link>
      <description>&lt;P&gt;I was trying to reach the selfserve portal from Orfox browser on Android and it gives me a SEC_ERROR_UNKNOWN_ISSUER error and does not open the page. However, Firefox works.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Upon some investigation, I found that the SSL certificcate on the site is not configured correctly. I am not sure who to contact to fix this.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Here are the details: Public Mobile uses Digicert for the SSL certificates. When deploying the certificates, intermediate certificates should also be provided. This is done correctly for parts of PM site (community, for example, works correctly). However, this is not done for the selfserve portal. Digicert has a validation page &lt;A href="https://www.digicert.com/help/" target="_self"&gt;https://www.digicert.com/help/&lt;/A&gt; which confirms that there are problems with the certificate configuration (and the also provide steps to fix it):&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT size="2"&gt;The server is not sending the required intermediate certificate.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT size="2"&gt;In most cases, solving this problem in IIS is as simple as installing the correct intermediate certificate file to the Intermediate Certification Authorities folder at the Local Computer level and then restarting IIS. Under some circumstances, restarting the site in IIS is also required.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT size="2"&gt;If you manage this server, you can download the file from &lt;A href="https://www.digicert.com/CACerts/DigiCertSHA2SecureServerCA.crt" target="_blank"&gt;this link&lt;/A&gt; or from your customer account area.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT size="2"&gt;Follow the directions on &lt;A href="https://www.digicert.com/ssl-certificate-installation-microsoft-iis-7.htm" target="_blank"&gt;our certificate installation guide&lt;/A&gt; to install the missing intermediate.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT size="2"&gt;If you have any problems correcting this issue, please contact our helpful support team and we would be happy to assist.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The thing is, most desktop and mobile browsers work around this by downloading the intermediate certificates from somewhere else. So most people don't see the problem. This does not change the fact that there is one. I hope someone in the &lt;a href="https://productioncommunity.publicmobile.ca/t5/user/viewprofilepage/user-id/22437"&gt;@CS_Agent&lt;/a&gt; can bring this to the attention of the webmaster.&lt;/P&gt;</description>
      <pubDate>Tue, 04 Jan 2022 23:37:33 GMT</pubDate>
      <guid>https://productioncommunity.publicmobile.ca/t5/Get-Support/Incorrect-SSL-certificate-in-selfserve/m-p/259786#M102411</guid>
      <dc:creator>j_b_goode</dc:creator>
      <dc:date>2022-01-04T23:37:33Z</dc:date>
    </item>
    <item>
      <title>Re: Incorrect SSL certificate in selfserve</title>
      <link>https://productioncommunity.publicmobile.ca/t5/Get-Support/Incorrect-SSL-certificate-in-selfserve/m-p/259787#M102412</link>
      <description>&lt;P&gt;&lt;a href="https://productioncommunity.publicmobile.ca/t5/user/viewprofilepage/user-id/53470"&gt;@j_b_goode&lt;/a&gt;, I have mentioned SSL errors on the self serve portal many times.&amp;nbsp; I have given up as nobody seems to care.&amp;nbsp; I have come to accept it as a design feature.&lt;/P&gt;</description>
      <pubDate>Thu, 02 Aug 2018 13:07:49 GMT</pubDate>
      <guid>https://productioncommunity.publicmobile.ca/t5/Get-Support/Incorrect-SSL-certificate-in-selfserve/m-p/259787#M102412</guid>
      <dc:creator>will13am</dc:creator>
      <dc:date>2018-08-02T13:07:49Z</dc:date>
    </item>
    <item>
      <title>Re: Incorrect SSL certificate in selfserve</title>
      <link>https://productioncommunity.publicmobile.ca/t5/Get-Support/Incorrect-SSL-certificate-in-selfserve/m-p/259789#M102413</link>
      <description>&lt;P&gt;Just my 2 cents.&amp;nbsp; Stick with widely used and adopted browsers for better support and development.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Good luck.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 02 Aug 2018 13:08:38 GMT</pubDate>
      <guid>https://productioncommunity.publicmobile.ca/t5/Get-Support/Incorrect-SSL-certificate-in-selfserve/m-p/259789#M102413</guid>
      <dc:creator>wmleung</dc:creator>
      <dc:date>2018-08-02T13:08:38Z</dc:date>
    </item>
    <item>
      <title>Re: Incorrect SSL certificate in selfserve</title>
      <link>https://productioncommunity.publicmobile.ca/t5/Get-Support/Incorrect-SSL-certificate-in-selfserve/m-p/259799#M102414</link>
      <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://productioncommunity.publicmobile.ca/t5/user/viewprofilepage/user-id/51942"&gt;@wmleung&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;&lt;P&gt;Just my 2 cents.&amp;nbsp; Stick with widely used and adopted browsers for better support and development.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Good luck.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;SSL certificate issues have nothing to do with the browser.&amp;nbsp; As mentioned in the OP, some browsers work around the issue.&amp;nbsp; It is not really ideal.&amp;nbsp; Anyway, I most often use Mozilla based browsers.&amp;nbsp; Is that widely used enough?&lt;/P&gt;</description>
      <pubDate>Thu, 02 Aug 2018 13:46:11 GMT</pubDate>
      <guid>https://productioncommunity.publicmobile.ca/t5/Get-Support/Incorrect-SSL-certificate-in-selfserve/m-p/259799#M102414</guid>
      <dc:creator>will13am</dc:creator>
      <dc:date>2018-08-02T13:46:11Z</dc:date>
    </item>
  </channel>
</rss>

