• Non sono ammesse registrazioni con indirizzi email temporanei usa e getta

In Rilievo Firefox 127.0 - Thunderbird 115.12.0

Vabbè sarà un po' seccante ma avendo anche Chrome e funziona l' se mi serve userò quello per mail di alice per ora.
Prima o poi faranno qualcosa no?
 
In poche parole il problema c'è sia su Windows, sia su Linux allora!
Non credo dipenda dal SO ne dalla versione di FF ma di qualche impostazione
pero' ho provato anche con un profilo pulito
quindi non saprei proprio da cosa dipenda :crybaby2:
ora e' una sfida :sad:
 
https://clienttest.ssllabs.com:8443/ssltest/viewMyClient.html

cosi' va'
Codice:
[B]Protocols[/B]
TLS 1.3 	Yes
TLS 1.2 	Yes
TLS 1.1 	Yes
TLS 1.0 	Yes
SSL 3 	No
SSL 2 	No	


[B]Cipher Suites (in order of preference)[/B]
TLS_AES_128_GCM_SHA256 (0x1301)   Forward Secrecy 	128
TLS_CHACHA20_POLY1305_SHA256 (0x1303)   Forward Secrecy 	256
TLS_AES_256_GCM_SHA384 (0x1302)   Forward Secrecy 	256
TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256 (0xc02b)   Forward Secrecy 	128
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xc02f)   Forward Secrecy 	128
TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256 (0xcca9)   Forward Secrecy 	256
TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256 (0xcca8)   Forward Secrecy 	256
TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384 (0xc02c)   Forward Secrecy 	256
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (0xc030)   Forward Secrecy 	256
TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA (0xc00a)  WEAK 	256
TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA (0xc009)  WEAK 	128
TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA (0xc013)  WEAK 	128
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (0xc014)  WEAK 	256
TLS_DHE_RSA_WITH_AES_128_CBC_SHA (0x33)  WEAK 	128
TLS_DHE_RSA_WITH_AES_256_CBC_SHA (0x39)  WEAK 	256
TLS_RSA_WITH_AES_128_CBC_SHA (0x2f)  WEAK 	128
TLS_RSA_WITH_AES_256_CBC_SHA (0x35)  WEAK 	256
TLS_RSA_WITH_3DES_EDE_CBC_SHA (0xa)  WEAK 	112
(1) When a browser supports SSL 2, its SSL 2-only suites are shown only on the very first connection to this site. To see the suites, close all browser windows, then open this exact page directly. Don't refresh.


[B]Protocol Details[/B]
Server Name Indication (SNI) 	Yes
Secure Renegotiation 	Yes
TLS compression 	No
Session tickets 	No
OCSP stapling 	Yes
Signature algorithms 	SHA256/ECDSA, SHA384/ECDSA, SHA512/ECDSA, RSA_PSS_SHA256, RSA_PSS_SHA384, RSA_PSS_SHA512, SHA256/RSA, SHA384/RSA, SHA512/RSA, SHA1/ECDSA, SHA1/RSA
Named Groups 	x25519, secp256r1, secp384r1, secp521r1, ffdhe2048, ffdhe3072
Next Protocol Negotiation 	No	
Application Layer Protocol Negotiation 	Yes   h2 http/1.1
SSL 2 handshake compatibility 	No

cosi' no
Codice:
[B]Protocols[/B]
TLS 1.3 	Yes
TLS 1.2 	Yes
TLS 1.1 	No
TLS 1.0 	No
SSL 3 	No
SSL 2 	No	


[B]Cipher Suites (in order of preference)[/B]
TLS_AES_128_GCM_SHA256 (0x1301)   Forward Secrecy 	128
TLS_CHACHA20_POLY1305_SHA256 (0x1303)   Forward Secrecy 	256
TLS_AES_256_GCM_SHA384 (0x1302)   Forward Secrecy 	256
TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256 (0xc02b)   Forward Secrecy 	128
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xc02f)   Forward Secrecy 	128
TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256 (0xcca9)   Forward Secrecy 	256
TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256 (0xcca8)   Forward Secrecy 	256
TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384 (0xc02c)   Forward Secrecy 	256
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (0xc030)   Forward Secrecy 	256
TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA (0xc00a)  WEAK 	256
TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA (0xc009)  WEAK 	128
TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA (0xc013)  WEAK 	128
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (0xc014)  WEAK 	256
TLS_DHE_RSA_WITH_AES_128_CBC_SHA (0x33)  WEAK 	128
TLS_DHE_RSA_WITH_AES_256_CBC_SHA (0x39)  WEAK 	256
TLS_RSA_WITH_AES_128_CBC_SHA (0x2f)  WEAK 	128
TLS_RSA_WITH_AES_256_CBC_SHA (0x35)  WEAK 	256
TLS_RSA_WITH_3DES_EDE_CBC_SHA (0xa)  WEAK 	112
(1) When a browser supports SSL 2, its SSL 2-only suites are shown only on the very first connection to this site. To see the suites, close all browser windows, then open this exact page directly. Don't refresh.


[B]Protocol Details[/B]
Server Name Indication (SNI) 	Yes
Secure Renegotiation 	Yes
TLS compression 	No
Session tickets 	No
OCSP stapling 	Yes
Signature algorithms 	SHA256/ECDSA, SHA384/ECDSA, SHA512/ECDSA, RSA_PSS_SHA256, RSA_PSS_SHA384, RSA_PSS_SHA512, SHA256/RSA, SHA384/RSA, SHA512/RSA, SHA1/ECDSA, SHA1/RSA
Named Groups 	x25519, secp256r1, secp384r1, secp521r1, ffdhe2048, ffdhe3072
Next Protocol Negotiation 	No	
Application Layer Protocol Negotiation 	Yes   h2 http/1.1
SSL 2 handshake compatibility 	No
 
Prova a disattivare l'ultima cifratura a 112 bit
Codice:
Protocols
TLS 1.3 	Yes
TLS 1.2 	Yes
TLS 1.1 	No
TLS 1.0 	No
SSL 3 	No
SSL 2 	No	


Cipher Suites (in order of preference)
TLS_AES_128_GCM_SHA256 (0x1301)   Forward Secrecy 	128
TLS_CHACHA20_POLY1305_SHA256 (0x1303)   Forward Secrecy 	256
TLS_AES_256_GCM_SHA384 (0x1302)   Forward Secrecy 	256
TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256 (0xc02b)   Forward Secrecy 	128
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xc02f)   Forward Secrecy 	128
TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256 (0xcca9)   Forward Secrecy 	256
TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256 (0xcca8)   Forward Secrecy 	256
TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384 (0xc02c)   Forward Secrecy 	256
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (0xc030)   Forward Secrecy 	256
TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA (0xc00a)  WEAK 	256
TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA (0xc009)  WEAK 	128
TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA (0xc013)  WEAK 	128
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (0xc014)  WEAK 	256
TLS_DHE_RSA_WITH_AES_128_CBC_SHA (0x33)  WEAK 	128
TLS_DHE_RSA_WITH_AES_256_CBC_SHA (0x39)  WEAK 	256
TLS_RSA_WITH_AES_128_CBC_SHA (0x2f)  WEAK 	128
TLS_RSA_WITH_AES_256_CBC_SHA (0x35)  WEAK 	256
(1) When a browser supports SSL 2, its SSL 2-only suites are shown only on the very first connection to this site. To see the suites, close all browser windows, then open this exact page directly. Don't refresh.


Protocol Details
Server Name Indication (SNI) 	Yes
Secure Renegotiation 	Yes
TLS compression 	No
Session tickets 	No
OCSP stapling 	Yes
Signature algorithms 	SHA256/ECDSA, SHA384/ECDSA, SHA512/ECDSA, RSA_PSS_SHA256, RSA_PSS_SHA384, RSA_PSS_SHA512, SHA256/RSA, SHA384/RSA, SHA512/RSA, SHA1/ECDSA, SHA1/RSA
Named Groups 	x25519, secp256r1, secp384r1, secp521r1, ffdhe2048, ffdhe3072
Next Protocol Negotiation 	No	
Application Layer Protocol Negotiation 	Yes   h2 http/1.1
SSL 2 handshake compatibility 	No



:eusa_wall::eusa_wall:
 
Prova a togliere il DHE e RSA a 128 bit

Lascia quelli a 256bit
Niente da fare...

Codice:
Protocols
TLS 1.3 	Yes
TLS 1.2 	Yes
TLS 1.1 	No
TLS 1.0 	No
SSL 3 	No
SSL 2 	No	


Cipher Suites (in order of preference)
TLS_AES_128_GCM_SHA256 (0x1301)   Forward Secrecy 	128
TLS_CHACHA20_POLY1305_SHA256 (0x1303)   Forward Secrecy 	256
TLS_AES_256_GCM_SHA384 (0x1302)   Forward Secrecy 	256
TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256 (0xc02b)   Forward Secrecy 	128
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xc02f)   Forward Secrecy 	128
TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256 (0xcca9)   Forward Secrecy 	256
TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256 (0xcca8)   Forward Secrecy 	256
TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384 (0xc02c)   Forward Secrecy 	256
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (0xc030)   Forward Secrecy 	256
TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA (0xc00a)  WEAK 	256
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (0xc014)  WEAK 	256
TLS_DHE_RSA_WITH_AES_256_CBC_SHA (0x39)  WEAK 	256
TLS_RSA_WITH_AES_256_CBC_SHA (0x35)  WEAK 	256
(1) When a browser supports SSL 2, its SSL 2-only suites are shown only on the very first connection to this site. To see the suites, close all browser windows, then open this exact page directly. Don't refresh.


Protocol Details
Server Name Indication (SNI) 	Yes
Secure Renegotiation 	Yes
TLS compression 	No
Session tickets 	No
OCSP stapling 	Yes
Signature algorithms 	SHA256/ECDSA, SHA384/ECDSA, SHA512/ECDSA, RSA_PSS_SHA256, RSA_PSS_SHA384, RSA_PSS_SHA512, SHA256/RSA, SHA384/RSA, SHA512/RSA, SHA1/ECDSA, SHA1/RSA
Named Groups 	x25519, secp256r1, secp384r1, secp521r1, ffdhe2048, ffdhe3072
Next Protocol Negotiation 	No	
Application Layer Protocol Negotiation 	Yes   h2 http/1.1
SSL 2 handshake compatibility 	No
 
Se qualcuno riesce a controllare se tutto è a posto?

https://www.ssllabs.com/ssltest/analyze.html?d=mail.tim.it

Avevo giá verificato.

Il server ha vecchie cifrature non sicure che andrebbero disattivate e sarebbe il caso di dare un ordine di preferenza dalla piú sicura alla meno sicura in modo che obblighi tutti i browser a usare la piú sicura.

In questo caso invece decide il browser a usare il suo ordine, visto che il server non ha attivo l'ordine
 
Niente da fare...
Le sto' provando tutte

Codice:
Protocols
TLS 1.3 	Yes
TLS 1.2 	Yes
TLS 1.1 	No
TLS 1.0 	No
SSL 3 	No
SSL 2 	No	


Cipher Suites (in order of preference)
TLS_AES_128_GCM_SHA256 (0x1301)   Forward Secrecy 	128
TLS_CHACHA20_POLY1305_SHA256 (0x1303)   Forward Secrecy 	256
TLS_AES_256_GCM_SHA384 (0x1302)   Forward Secrecy 	256
TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256 (0xcca9)   Forward Secrecy 	256
TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256 (0xcca8)   Forward Secrecy 	256
TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384 (0xc02c)   Forward Secrecy 	256
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (0xc030)   Forward Secrecy 	256
TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA (0xc00a)  WEAK 	256
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (0xc014)  WEAK 	256
TLS_DHE_RSA_WITH_AES_256_CBC_SHA (0x39)  WEAK 	256
TLS_RSA_WITH_AES_256_CBC_SHA (0x35)  WEAK 	256
(1) When a browser supports SSL 2, its SSL 2-only suites are shown only on the very first connection to this site. To see the suites, close all browser windows, then open this exact page directly. Don't refresh.
 
Codice:
Protocols
TLS 1.3 	Yes
TLS 1.2 	Yes
TLS 1.1 	No
TLS 1.0 	No
SSL 3 	No
SSL 2 	No	


Cipher Suites (in order of preference)
TLS_AES_128_GCM_SHA256 (0x1301)   Forward Secrecy 	128
TLS_CHACHA20_POLY1305_SHA256 (0x1303)   Forward Secrecy 	256
TLS_AES_256_GCM_SHA384 (0x1302)   Forward Secrecy 	256
TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256 (0xc02b)   Forward Secrecy 	128
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xc02f)   Forward Secrecy 	128
TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256 (0xcca9)   Forward Secrecy 	256
TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256 (0xcca8)   Forward Secrecy 	256
TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384 (0xc02c)   Forward Secrecy 	256
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (0xc030)   Forward Secrecy 	256
TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA (0xc00a)  WEAK 	256
TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA (0xc009)  WEAK 	128
TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA (0xc013)  WEAK 	128
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (0xc014)  WEAK 	256
TLS_DHE_RSA_WITH_AES_128_CBC_SHA (0x33)  WEAK 	128
TLS_DHE_RSA_WITH_AES_256_CBC_SHA (0x39)  WEAK 	256
TLS_RSA_WITH_AES_128_CBC_SHA (0x2f)  WEAK 	128
TLS_RSA_WITH_AES_256_CBC_SHA (0x35)  WEAK 	256
(1) When a browser supports SSL 2, its SSL 2-only suites are shown only on the very first connection to this site. To see the suites, close all browser windows, then open this exact page directly. Don't refresh.


Protocol Details
Server Name Indication (SNI) 	Yes
Secure Renegotiation 	Yes
TLS compression 	No
Session tickets 	No
OCSP stapling 	Yes
Signature algorithms 	SHA256/ECDSA, SHA384/ECDSA, SHA512/ECDSA, RSA_PSS_SHA256, RSA_PSS_SHA384, RSA_PSS_SHA512, SHA256/RSA, SHA384/RSA, SHA512/RSA, SHA1/ECDSA, SHA1/RSA
Named Groups 	x25519, secp256r1, secp384r1, secp521r1, ffdhe2048, ffdhe3072
Next Protocol Negotiation 	No	
Application Layer Protocol Negotiation 	Yes   h2 http/1.1
SSL 2 handshake compatibility 	No



:eusa_wall::eusa_wall:

Non ho capito, il problema ti si presenta subito quando vai sul mail.tim.it o dopo il login?
 
Dopo aver inserito username e pw

Io sinceramente non ho provato a loggarmi, non la uso mai la posta via web, ma il problema è li, in quanto il login si appoggia ad un altro server che poi fa il redirect, ma il problema è che il primo server di login supporta solo TLS 1.0 e quindi blocca subito

https://www.ssllabs.com/ssltest/analyze.html?d=aaacsc.alice.it&hideResults=on


Dire che sono dei cani e poco..........

Se qualcuno è registrato sul forum mozilla avvisi della cosa
 
Infatti dalla verifica fatta da Ercolino nel post sopra il tuo si vede chiaramente il problema.
Non è il box di login, ma il login stesso.
 
Anch'io avevo capito che era il Sito, non il Login! :eusa_doh:

Comunque, in fondo alle Note di rilascio della versione 74.0 c'è scritto questo (tradotto con Google traduttore):
Nota : per un paio di cicli di rilascio (e più a lungo per Firefox ESR), la pagina di errore Connessione protetta non riuscita presenterà un pulsante di sostituzione che consente di abilitare TLS 1.0 e 1.1 nei casi in cui un server non è ancora aggiornato, ma non lo farai poter contare su di esso per troppo tempo.

Perciò o sistemano o fra un po' qualcuno non accederà più al Login.
 
Indietro
Alto Basso