garethEds Posted November 3, 2016 Posted November 3, 2016 Hi there, We are seeing an issue with our Chromebooks when accessing Office 365 via our school wifi (through Smoothwall). We can access and login without any issues - however when we go to access one of the Office tiles (Powerpoint for example) we are getting the following message from within the Chrome browser: -------------------------------- Your Connection is not private Attackers might be trying to steal your information from login.windows.net (for example, passwords, messages or credit cards). NET:ERR_CERT_AUTHORITY_INVALID The server could not prove that it is login.windows.net; its security certificate is not trusted by your computer's operating system. This may be caused by a misconfiguration or an attacker intercepting your connection. Proceed to login.windows.net (unsafe) -------------------------- So there is the message. Whilst we can move forward into the application, it is frustrating. We have uploaded a certificate from Smoothwall to the Chromebooks management site but it hasn't made any difference. Has anyone seen this and solved it? Is there a setting I have missed or something the LEA need to change on their SmoothWall installation? Cheers everyone
Boredguy Posted November 3, 2016 Posted November 3, 2016 I get that message on andriod devices after I add the MitM certificate for our filtering solution =/
witch Posted November 3, 2016 Posted November 3, 2016 Check the computers time clock for innacuracies. Update Chrome, or better still uninstall and reinstall. That's what I did and it fixed the error for me
garethEds Posted November 3, 2016 Author Posted November 3, 2016 The Chromebooks are all controlled centrally so their time is fine. I've checked mine and it's showing the same as our network time. All Chromebooks are updated to the latest version of ChromeOS. I don't really want to re-install them all as it means re-connecting to the wifi and is a hassle. Surely there is a cert that needs updating. Gareth
witch Posted November 3, 2016 Posted November 3, 2016 Why not try doing one to see if it makes any difference? I know I didn't have to do anything with a certificate!
smarties11 Posted November 4, 2016 Posted November 4, 2016 I would imagine it is because SmoothWall is inspecting the HTTPS content of these pages, using it's man-in-the-middle certificate. This breaks some webpages. You can stop this by adding the O365 URLs to a category/category group that has it's HTTPS inspection policy set to 'do not inspect'.
garethEds Posted November 8, 2016 Author Posted November 8, 2016 I would imagine it is because SmoothWall is inspecting the HTTPS content of these pages, using it's man-in-the-middle certificate. This breaks some webpages. You can stop this by adding the O365 URLs to a category/category group that has it's HTTPS inspection policy set to 'do not inspect'. Hi @smarties11 - this was close. The LEA had added the list of URLs to the 'do not inspect' policy but it seems some new ones have been created in the meantime. They are all updated now and I've been told the system is working fine. Thanks everyone, Gareth
garethEds Posted November 26, 2016 Author Posted November 26, 2016 I would imagine it is because SmoothWall is inspecting the HTTPS content of these pages, using it's man-in-the-middle certificate. This breaks some webpages. You can stop this by adding the O365 URLs to a category/category group that has it's HTTPS inspection policy set to 'do not inspect'. This has reared it's ugly head again. WHen I type in a search term to the address bar (as you can do in Chrome) I get the same message that a site is not secure with the red padlock. If i type a full URL (Google) and then search in the normal way then it works. It's only when I enter a term into the address bar - I often use it to search direct. Yesterday I entered the term 'Facebook.com' - forgetting the www. It took this as a search term and gave me the error message. When I entered http://www.facebook it worked fine. Gareth - - - Updated - - - I would imagine it is because SmoothWall is inspecting the HTTPS content of these pages, using it's man-in-the-middle certificate. This breaks some webpages. You can stop this by adding the O365 URLs to a category/category group that has it's HTTPS inspection policy set to 'do not inspect'. This has reared it's ugly head again. WHen I type in a search term to the address bar (as you can do in Chrome) I get the same message that a site is not secure with the red padlock. If i type a full URL (http://www.google.com) and then search in the normal way then it works. It's only when I enter a term into the address bar - I often use it to search direct. Yesterday I entered the term 'Facebook.com' - forgetting the www. It took this as a search term and gave me the error message. When I entered http://www.facebook it worked fine. Gareth
tberty Posted November 29, 2016 Posted November 29, 2016 I have faced this SSL error a few times before. It occurs due to a few reasons. I found this guide from Google, which was helped me sometimes. You might want to give it a try! https://usefulpcguide.com/16666/your-connection-is-not-private/
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now