Getting a certificate error from kicksecure

Hello @Patrick, I’m getting this error via apt when updating but the error manifests itself even in the browser directly.

Secure Connection Failed

An error occurred during a connection to deb.kicksecure.com. The OCSP response does not include a status for the certificate being verified.

Error code: MOZILLA_PKIX_ERROR_OCSP_RESPONSE_FOR_CERT_MISSING
2 Likes

This is temporarily fixed.

This is based on an attempt of getting a minor TLS security improvement (OCSP) functional, which is difficult. [1] It was working for a few weeks and now suddenly broke. It’s either a server configuration issue or web server OCSP bug that is yet to be investigated in more detail.

Assessment:

  • impact: website not reachable until web server gets restarted by me.
  • security impact: None.

Only the TLS version of the website (and updates) will be broken for a few hours until I notice this.

[1] Dev/About Infrastructure - Kicksecure chapter OCSP in Kicksecure wiki

2 Likes