Firefox OCSP Error SEC_ERROR_REVOKED_CERTIFICATE

Infos:

  • Used Zammad version: 5.0.X

  • Used Zammad installation type: (source, package, docker-compose, …)Package

  • Operating system: Ubuntu 20.04.3 LTS

  • Browser + version: Firefox v97.0, Edge Version 98.0.1108.50 (Official build) (64-bit)
    Chrome Version 98.0.4758.82 (64 Bit)
    My Edge & Chrome Works Same Version, Other User Has issues using Edge & Chrome
    Firefox Does not work for me as well

Expected behavior:

  • Able to view login page
  • Able to use site with all browsers
  • OCSP Stapling

Actual behavior:

Firefox Error

  • Peer’s Certificate has been revoked.

Error code: SEC_ERROR_REVOKED_CERTIFICATE

Must Disable Query OCSP responder servers to confirm the current validity of certificates in Firefox in order to see site.

Edge Error URL SHOWN IS EXAMPLE
You can’t visit “helpdesk.mine.com” right now because its certificate has been revoked.
NET::ERRR_CERT_REVOKED
Works on one computer, Does not on another

How Can Zammad Be changed in order to use OCSP properly?

Steps to reproduce the behavior:

Firefox

  • Open Firefox V97.0
  • Type in URL
  • See Error

Edge

  • Open Edge
  • Type in URL
  • See error
  • Only Happens on some computers

Sorry but this is a question on how to configure your web server properly.
Seems like your certificate got revoked and needs to be renewed.

Sorry but nobody here will be able to help you.

According to the CA the cert is not revoked. Im using Nginx as it was apart of the installed package for Zammad. We have other Web applications that are using the same “SAN Certificate” that are unaffected by this issue.
Seems to only affect whatever version of Nginx was installed with the Zammad package.