Enable SSLv3 and RC4 on modern Firefox browsers for RSA Authentication Manager 8.x
4 years ago
Originally Published: 2016-06-27
Article Number
000067398
Applies To
RSA Product Set: SecurID
RSA Product/Service Type: Authentication Manager
RSA Version/Condition: 8.x
Platform (Other): Firefox 35.0 to 43.0
Issue
The following error is seen in the browser:
 
Secure Connection failed
SSL_error_handshake_failure_alert
SSL_ERROR_ILLEGAL_PARAMETER_ALERT
Resolution
To resolve the issue,
  1. Open a new Firefox tab
  2. In the address bar, type about:config.
  3. Accept the warning.
  4. Search in the search bar for security.tls, then
    1. Change security.tls.version.min from 1 to 0.
    2. Change security.tls.version.fallback-limit from 1 to 0.
    3. Change security.tls.unrestricted_rc4_fallback to true.
Notes
  • This is a workaround for customers who are still on Authentication Manager 8.1 pre SP1 Patch 2.
  • Also new deployments before applying updates.
  • If their Firefox version is new, or updated.
  • If they can't enable SSLv3.
Another workaround is to download a standalone older version of Firefox, using the link to Firefox 35 standalone.