The Register® — Biting the hand that feeds IT

VeriSign dead cert causes net instability

NAV gets lost in translation

The expiration of one of VeriSign's master digital certificates on Wednesday created confusion for Net users and glitches to the operation of some applications, notably Norton Anti-Virus (NAV).

After the cert VeriSign used to sign other certs expired, the chain of trust was broken, leaving some aps unable to set up a secure connection. These apps then defaulted to trying to access Verisign's certificate revocation list server (crl.verisign.com) which, faced with a huge extra load, buckled under the pressure.

Verisign has posted an advisory on the problem here, detailing server updates needed to resolve application instability. Essentially where there are problems traffic needs to be directed to a new Global Server Intermediate Root CA.

Users of Java aps and older IE browsers were affected by the issue but (judging by our postbag) NAV users were worst affected. NAV Users saw their computers slow to a crawl and Microsoft office apps not starting properly because of the problem.

Symantec has posted an explanatory note on the problem which echoes Verisign's advice. ®

Free Report - "High-level Best Practices in Software Configuration Management: How to deploy SCM software to the maximum advantage"

Don’t Miss

Warning: roadworksNetbooks and Mini-Laptops

Buyer's Guide They're little and we love 'em. But which ones are best?

SSL covers security embarrassments with EV figleaf

Whitepaper Helping you know scammers from Adam

Emails show journalist rigged Wikipedia's naked shorts

Overstock's Byrne vindicated amidst economic meltdown

Warning StopYours truly, angry mob

Book extract Bringing Nothing To The Party: Cleaning up the net, one satirical vigilante page at a time