SM Appliances: no common encryption algorithm(s)

Users and developers helping users with generic and technical Pale Moon issues on all operating systems.

Moderator: trava90

Forum rules
This board is for technical/general usage questions and troubleshooting for the Pale Moon browser only.
Technical issues and questions not related to the Pale Moon browser should be posted in other boards!
Please keep off-topic and general discussion out of this board, thank you!
User avatar
FranklinDM
Add-ons Team
Add-ons Team
Posts: 582
Joined: 2017-01-14, 02:40
Location: Philippines
Contact:

SM Appliances: no common encryption algorithm(s)

Unread post by FranklinDM » 2017-02-28, 12:24

When I try to access SM Appliances' website, I get the problem loading page saying:
Secure Connection Failed
An error occurred during a connection to http://www.smappliance.com.
Cannot communicate securely with peer: no common encryption algorithm(s).
(Error code: ssl_error_no_cypher_overlap)
The page you are trying to view cannot be shown because the authenticity of the received data could not be verified.
Please contact the website owners to inform them of this problem.
Operating system: Windows 7 32-bit
Browser version: Pale Moon 27.2.0a1 (latest unstable)
Problem URL: https://www.smappliance.com/
Installed add-ons: (listed below)

Since this is my first time asking for support, I included all the additional information.
I hope someone could help me with this prob. Thanks in advance. :)

EDIT: My suspicion is that they're using some kind of an obsolete encryption algorithm, but I'm not sure with that.

Additional information
Application Basics
------------------

Name: Pale Moon
Version: 27.2.0a1
Build ID: 20170225172335
Update Channel: default
User Agent: Mozilla/5.0 (Windows NT 6.1; rv:45.9) Gecko/20100101 Goanna/3.2 Firefox/45.9 PaleMoon/27.2.0a1
Multiprocess Windows: 0/1 (default: false)

Extensions
----------

Name: ColorZilla
Version: 2.8.2
Enabled: true
ID: {6AC85730-7D0F-4de0-B3FA-21142DD85326}

Name: Complete YouTube Saver
Version: 5.7.34.1
Enabled: true
ID: {AF445D67-154C-4c69-A17B-7F392BCC36A3}

Name: DOM Inspector
Version: 2.0.16.1-signed
Enabled: true
ID: inspector@mozilla.org

Name: Element Inspector
Version: 0.1.1
Enabled: true
ID: InspectElement@zbinlin

Name: Greasemonkey
Version: 3.9.3
Enabled: true
ID: {e4a8a97b-f2ed-450b-b12d-ee082ba24781}

Name: Moon Tester Tool
Version: 1.0.4
Enabled: true
ID: moonttool@Off.JustOff

Name: MozArchiver
Version: 1.0.2
Enabled: true
ID: mozarchiver@lootyhoof-pm

Name: Noted
Version: 1.0.0
Enabled: true
ID: noted@franklindm

Name: Pale Moon Commander
Version: 1.7.3
Enabled: true
ID: commander@palemoon.org

Name: Restart manager
Version: 1.08
Enabled: true
ID: restartmanager@chania.gr

Name: Stylish
Version: 2.0.7
Enabled: true
ID: {46551EC9-40F0-4e47-8E18-8E5CF550CFB8}

Name: Tab Groups
Version: 0.2.1
Enabled: true
ID: firefox-tabgroups@mozilla.com

Name: ThemeTool
Version: 5.0.0
Enabled: true
ID: {0daf556d-70de-4b15-a90f-b30395bd9c22}

Name: Work Offline
Version: 2.3.1-signed.1-signed
Enabled: true
ID: {761a54f1-8ccf-4112-9e48-dbf72adf6244}

Name: XPCOMViewer
Version: 1.4.2.1-signed.1-signed
Enabled: true
ID: xpcomviewer@ondrejd.com

Name: YouTube Lazy Load
Version: 1.0.1
Enabled: true
ID: youtubelazy@Off.JustOff

Name: All-in-One Sidebar
Version: 0.7.21.1-signed
Enabled: false
ID: {097d3191-e6fa-4728-9826-b533d755359d}

Name: Developer Assistant
Version: 0.3.0.20140917.1-signed.1-signed
Enabled: false
ID: {75739dec-72db-4020-aa9a-6afa6744759b}

Name: uBlock Origin
Version: 1.11.0
Enabled: false
ID: uBlock0@raymondhill.net

Graphics
--------

Adapter Description: Mobile Intel(R) 4 Series Express Chipset Family
Adapter Drivers: igdumdx32 igd10umd32
Adapter RAM: Unknown
ClearType Parameters: Gamma: 2200 Pixel Structure: R ClearType Level: 0 Enhanced Contrast: 0
Device ID: 0x2a42
Direct2D Enabled: true
DirectWrite Enabled: true (6.1.7601.17563)
Driver Date: 10-4-2012
Driver Version: 8.15.10.2869
GPU #2 Active: false
GPU Accelerated Windows: 1/1 Direct3D 11 (OMTC)
Subsys ID: 01401025
Vendor ID: 0x8086
WebGL Renderer: Google Inc. -- ANGLE (Mobile Intel(R) 4 Series Express Chipset Family Direct3D9Ex vs_3_0 ps_3_0)
windowLayerManagerRemote: true
AzureCanvasBackend: direct2d
AzureContentBackend: direct2d
AzureFallbackCanvasBackend: cairo
AzureSkiaAccelerated: 0

Important Modified Preferences
------------------------------

accessibility.typeaheadfind.flashBar: 0
browser.cache.disk.capacity: 307200
browser.cache.disk.smart_size.first_run: false
browser.cache.disk.smart_size.use_old_max: false
browser.download.importedFromSqlite: true
browser.download.manager.alertOnEXEOpen: true
browser.download.manager.showWhenStarting: false
browser.places.smartBookmarksVersion: 4
browser.startup.homepage: about:home
browser.startup.homepage_override.buildID: 20170225172335
browser.startup.homepage_override.mstone: 3.2.0
browser.tabs.onTop: true
extensions.lastAppVersion: 27.2.0a1
font.internaluseonly.changed: false
general.useragent.override.projectit.com: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:13.0) Gecko/20100101 Firefox/13.0
gfx.direct3d.last_used_feature_level_idx: 1
gfx.font_rendering.cleartype_params.rendering_mode: 0
javascript.options.mem.disable_explicit_compartment_gc: false
network.cookie.prefsMigrated: true
network.http.speculative-parallel-limit: 0
network.manage-offline-status: true
places.database.lastMaintenance: 1488085755
places.history.expiration.transient_current_max_pages: 25010
plugin.importedState: true
plugin.state.flash: 1
plugin.state.java: 1
plugin.state.np32dsw: 1
plugin.state.npadobeaamdetect: 1
plugin.state.npauthz: 2
plugin.state.npctrl: 1
plugin.state.npgoogleupdate: 1
plugin.state.nppicasa: 1
plugin.state.npspwrap: 2
plugin.state.npunity3d: 1
plugin.state.npwlpg: 1
plugin.state.npystate: 1
print.printer_Canon_Inkjet_iP1300.print_bgcolor: false
print.printer_Canon_Inkjet_iP1300.print_bgimages: false
print.printer_Canon_Inkjet_iP1300.print_colorspace:
print.printer_Canon_Inkjet_iP1300.print_command:
print.printer_Canon_Inkjet_iP1300.print_downloadfonts: false
print.printer_Canon_Inkjet_iP1300.print_duplex: -437918235
print.printer_Canon_Inkjet_iP1300.print_edge_bottom: 0
print.printer_Canon_Inkjet_iP1300.print_edge_left: 0
print.printer_Canon_Inkjet_iP1300.print_edge_right: 0
print.printer_Canon_Inkjet_iP1300.print_edge_top: 0
print.printer_Canon_Inkjet_iP1300.print_evenpages: true
print.printer_Canon_Inkjet_iP1300.print_footercenter:
print.printer_Canon_Inkjet_iP1300.print_footerleft: &PT
print.printer_Canon_Inkjet_iP1300.print_footerright: &D
print.printer_Canon_Inkjet_iP1300.print_headercenter:
print.printer_Canon_Inkjet_iP1300.print_headerleft: &T
print.printer_Canon_Inkjet_iP1300.print_headerright: &U
print.printer_Canon_Inkjet_iP1300.print_in_color: true
print.printer_Canon_Inkjet_iP1300.print_margin_bottom: 0.5
print.printer_Canon_Inkjet_iP1300.print_margin_left: 0.5
print.printer_Canon_Inkjet_iP1300.print_margin_right: 0.5
print.printer_Canon_Inkjet_iP1300.print_margin_top: 0.5
print.printer_Canon_Inkjet_iP1300.print_oddpages: true
print.printer_Canon_Inkjet_iP1300.print_orientation: 0
print.printer_Canon_Inkjet_iP1300.print_page_delay: 50
print.printer_Canon_Inkjet_iP1300.print_paper_data: 9
print.printer_Canon_Inkjet_iP1300.print_paper_height: 11.00
print.printer_Canon_Inkjet_iP1300.print_paper_name:
print.printer_Canon_Inkjet_iP1300.print_paper_size_type: 0
print.printer_Canon_Inkjet_iP1300.print_paper_size_unit: 1
print.printer_Canon_Inkjet_iP1300.print_paper_width: 8.50
print.printer_Canon_Inkjet_iP1300.print_plex_name:
print.printer_Canon_Inkjet_iP1300.print_resolution: -437918235
print.printer_Canon_Inkjet_iP1300.print_resolution_name:
print.printer_Canon_Inkjet_iP1300.print_reversed: false
print.printer_Canon_Inkjet_iP1300.print_scaling: 1.00
print.printer_Canon_Inkjet_iP1300.print_shrink_to_fit: true
print.printer_Canon_Inkjet_iP1300.print_to_file: false
print.printer_Canon_Inkjet_iP1300.print_unwriteable_margin_bottom: 0
print.printer_Canon_Inkjet_iP1300.print_unwriteable_margin_left: 0
print.printer_Canon_Inkjet_iP1300.print_unwriteable_margin_right: 0
print.printer_Canon_Inkjet_iP1300.print_unwriteable_margin_top: 0
privacy.donottrackheader.enabled: true
privacy.donottrackheader.value: 1
privacy.sanitize.migrateFx3Prefs: true
storage.vacuum.last.index: 1
storage.vacuum.last.places.sqlite: 1488085753

Important Locked Preferences
----------------------------

JavaScript
----------

Incremental GC: true

Accessibility
-------------

Activated: false
Prevent Accessibility: 1

Library Versions
----------------

NSPR
Expected minimum version: 4.13.1
Version in use: 4.13.1

NSS
Expected minimum version: 3.28.3
Version in use: 3.28.3

NSSSMIME
Expected minimum version: 3.28.3
Version in use: 3.28.3

NSSSSL
Expected minimum version: 3.28.3
Version in use: 3.28.3

NSSUTIL
Expected minimum version: 3.28.3
Version in use: 3.28.3

Experimental Features
---------------------

kizo07

Re: SM Appliances: no common encryption algorithm(s)

Unread post by kizo07 » 2017-02-28, 12:42

FranklinDM wrote:The page you are trying to view cannot be shown because the authenticity of the received data could not be verified.
Please contact the website owners to inform them of this problem.

User avatar
ron_1
Moon Magic practitioner
Moon Magic practitioner
Posts: 2859
Joined: 2012-06-28, 01:20

Re: SM Appliances: no common encryption algorithm(s)

Unread post by ron_1 » 2017-02-28, 18:01

At the test link below, there's a lot of "handshake failures." I'm not a techie type, but I'd bet that's the cause of the problem.

https://www.ssllabs.com/ssltest/analyze.html?d=www.smappliance.com

User avatar
FranklinDM
Add-ons Team
Add-ons Team
Posts: 582
Joined: 2017-01-14, 02:40
Location: Philippines
Contact:

Re: SM Appliances: no common encryption algorithm(s)

Unread post by FranklinDM » 2017-02-28, 23:16

I tried contacting them but just got the usual canned response:
I'm sorry but we currently don't support your browser. Please use another browser such as Chrome, Firefox, or Edge.

I tried it in Firefox but also got the same problem. :clap:

User avatar
ron_1
Moon Magic practitioner
Moon Magic practitioner
Posts: 2859
Joined: 2012-06-28, 01:20

Re: SM Appliances: no common encryption algorithm(s)

Unread post by ron_1 » 2017-02-28, 23:47

From SSL test link above:

Code: Select all

Handshake Simulation . . . .

Firefox 31.3.0 ESR / Win 7 Server sent fatal alert: handshake_failure
Firefox 47 / Win 7  R		Server sent fatal alert: handshake_failure
Firefox 49 / XP SP3 	    Server sent fatal alert: handshake_failure
Firefox 49 / Win 7  R		Server sent fatal alert: handshake_failure
I'd send them another message. Maybe this time they'll listen since it doesn't work on FF either. Give 'em the link.

User avatar
FranklinDM
Add-ons Team
Add-ons Team
Posts: 582
Joined: 2017-01-14, 02:40
Location: Philippines
Contact:

Re: SM Appliances: no common encryption algorithm(s)

Unread post by FranklinDM » 2017-03-01, 00:24

I sent them the message. :D . I hope they'd fix it this time.

User avatar
Moonchild
Pale Moon guru
Pale Moon guru
Posts: 35636
Joined: 2011-08-28, 17:27
Location: Motala, SE
Contact:

Re: SM Appliances: no common encryption algorithm(s)

Unread post by Moonchild » 2017-03-01, 22:11

it's a case of no cipher overlap because :

TLS_RSA_WITH_AES_128_CBC_SHA256 (0x3c) 128
TLS_RSA_WITH_AES_128_GCM_SHA256 (0x9c) 128
TLS_RSA_WITH_AES_256_CBC_SHA256 (0x3d) 256
TLS_RSA_WITH_AES_256_GCM_SHA384 (0x9d) 256

Straight up RSA key exchange is deprecated (No forward secrecy), and as such isn't supported by default in NSS combined with AEAD suites or with SHA256.
I think whomever set this up heard about the SHA1 collision, panicked, and disabled everything with a SHA HMAC (even though SHA1 isn't broken, and even less so for HMAC because it's not sensitive as such to collision issues)
"Sometimes, the best way to get what you want is to be a good person." -- Louis Rossmann
"Seek wisdom, not knowledge. Knowledge is of the past; wisdom is of the future." -- Native American proverb
"Linux makes everything difficult." -- Lyceus Anubite

Locked