SSL broken? suddenly no HTTPS config/status page (Buffalo)

Post new topic   Reply to topic    DD-WRT Forum Index -> Atheros WiSOC based Hardware
Author Message
moontan
DD-WRT Novice


Joined: 23 Sep 2014
Posts: 4

PostPosted: Fri Oct 17, 2014 19:08    Post subject: SSL broken? suddenly no HTTPS config/status page (Buffalo) Reply with quote
I am a bit concerned here: Since the last time I accessed my Buffalo WZR-HP-G450H's config browser interface via https I haven't changed anything in the router settings. Now I get the following error message in firefox and similar messages in other browsers:

Secure Connection Failed
An error occurred during a connection to 192.168.X.X. The key does not support the requested operation. (Error code: sec_error_invalid_key)
The page you are trying to view cannot be shown because the authenticity of the received data could not be verified.
Please contact the website owners to inform them of this problem.


Shell login still works.

However, there are two things which have me a bit puzzled:

1. At the beginning of this month, shortly after I got the 2012 DD-WRT firmware from the Buffalo site and replaced their firmware with it, they exchanged the entry on their download site with a new version. While the date of the entry changed from 2012 to 1st Oct 2014, strangely the version number did not change. I downloaded the file and compared it with the former version, resulting in no differences, and I think that's why I didn't bother to update.

2. Shortly before the last successful browser connection with my router I activated its DDNS functionality (with DynDNS.org)

Am I to be paranoid and assume I got hacked? Or did I simply make a mistake comparing the two firmware packages overlooking a difference, and the "older" firmware contains a revoked ssl certificate or something of the sorts?

I'm not that much of a pundit and I'd be more than happy about some opinions.
Sponsor
w7r
DD-WRT Novice


Joined: 02 Nov 2010
Posts: 7

PostPosted: Sun Oct 19, 2014 16:43    Post subject: Reply with quote
Hi. Got a similar problem here to with my Netgear running DD-WRT. I'll post back if I find a solution.
IceCub
DD-WRT Novice


Joined: 06 Feb 2012
Posts: 4

PostPosted: Thu Oct 23, 2014 18:37    Post subject: Reply with quote
I have the same problem. I think it's got something to do with this and this.

For the moment, I've enabled http alongside https on my dd-wrt.

As far as I can tell, the dd-wrt ssl public key is only 512 bits and it needs to be 2048 bits for Windows to accept it.

I'm still looking for a solution, perhaps a way to generat a new pair of ssl keys.
Sash
DD-WRT Guru


Joined: 20 Sep 2006
Posts: 17619
Location: Hesse/Germany

PostPosted: Sun Oct 26, 2014 11:14    Post subject: Reply with quote
the problem seems to be already solved in current ddwrt betas

http://svn.dd-wrt.com/ticket/3670#comment:3

_________________
Forum Guidelines...How to get help
&
Forum Rules
&
RTFM/STFW
&
Throw some buzzwords into the WIKI search Exclamation
_________________
I'm NOT rude, just offer pure facts!
_________________
Atheros (TP-Link & Clones, etc ) debrick service in EU
_________________
Guide on HowTo be Safe, Secure and Protect Your Online Anonymity!
warrickguy
DD-WRT Novice


Joined: 16 Mar 2012
Posts: 1

PostPosted: Sun Nov 09, 2014 20:25    Post subject: Key error using https Reply with quote
I tried connecting to my D-Link 835 (DD-WRT v24-sp2 (03/25/13) std - build 21061) for the first time in several weeks today. It had worked perfectly before, but now the bookmark in firefox would no longer connect. I tried chrome and it wouldn't connect either at first, but did give me the option of ignoring the security key error. I use debian linux with real firefox and chrome (not iceweasel and chromium). I assume that both firefox and chrome have recently implemented the same key length requirement as IE.
Display posts from previous:    Page 1 of 1
Post new topic   Reply to topic    DD-WRT Forum Index -> Atheros WiSOC based Hardware All times are GMT

Navigation

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You cannot attach files in this forum
You cannot download files in this forum