repeated asking to verify a certificate. enough already, I already approved it!!

Bug #706931 reported by teledyn
122
This bug affects 27 people
Affects Status Importance Assigned to Milestone
Empathy
Expired
Medium
empathy (Ubuntu)
Undecided
Unassigned

Bug Description

Binary package hint: empathy

on connecting, I get the pop-up

This connection is untrusted. Would you like to continue anyway?

because I am using gtalk over a Google Apps For Your Domain, the certificate does not match the host domain, and yes, I realize that CAN spell trouble, but in this case it is perfectly safe, and yet I have to accept this certificate three times every single time I start the app; there needs to be an exceptions list that offers to save this current exception for future reference and not bother me about it again unless the teledyn.com certificate is signed by someone OTHER than google.

they say a bug is a feature that cannot be turned off; I appreciate the test for authenticity, but how many times must I verify the same fact?

ProblemType: Bug
DistroRelease: Ubuntu 10.10
Package: empathy 2.32.1-0ubuntu1
ProcVersionSignature: Ubuntu 2.6.35-24.42-generic 2.6.35.8
Uname: Linux 2.6.35-24-generic i686
Architecture: i386
CheckboxSubmission: 2578103fd90166afafd3eb329949e571
CheckboxSystem: 9a6d2af3ffb5e20526ca0ccf9ca2c0bf
Date: Mon Jan 24 09:03:17 2011
ExecutablePath: /usr/bin/empathy
InstallationMedia: Ubuntu-Netbook 10.04 "Lucid Lynx" - Release i386 (20100429.4)
ProcEnviron:
 PATH=(custom, user)
 LANG=en_US.utf8
 SHELL=/bin/bash
SourcePackage: empathy

Revision history for this message
teledyn (garym-teledyn) wrote :
Revision history for this message
Laurent Bigonville (bigon) wrote :

Thanks for your bug report,

This bug will be fixed in the 3.0 release

Changed in empathy (Ubuntu):
status: New → Triaged
Revision history for this message
Andrew Constantine (andrewmc) wrote :

Did you ignore SSL certificate errors in the advanced settings?

(from the contact list) Edit > Account > Select your GTalk account > Drop down "Advanced" and tick "Ignore SSL certificate errors"

It should stop bothering you now.

Revision history for this message
teledyn (garym-teledyn) wrote : Re: [Bug 706931] Re: repeated asking to verify a certificate. enough already, I already approved it!!

I'm not so sure I'd want to ignore ALL errors, only the one's I've already approved :) Since its fixed in the upgrades, I can live with it for now

"Andrew Constantine" <email address hidden> wrote:

>Did you ignore SSL certificate errors in the advanced settings?
>
>(from the contact list) Edit > Account > Select your GTalk account >
>Drop down "Advanced" and tick "Ignore SSL certificate errors"
>
>It should stop bothering you now.
>
>--
>You received this bug notification because you are a direct subscriber
>of the bug.
>https://bugs.launchpad.net/bugs/706931
>
>Title:
> repeated asking to verify a certificate. enough already, I already
> approved it!!
>
>Status in “empathy” package in Ubuntu:
> Triaged
>
>Bug description:
> Binary package hint: empathy
>
> on connecting, I get the pop-up
>
> This connection is untrusted. Would you like to continue anyway?
>
> because I am using gtalk over a Google Apps For Your Domain, the
> certificate does not match the host domain, and yes, I realize that
> CAN spell trouble, but in this case it is perfectly safe, and yet I
> have to accept this certificate three times every single time I start
> the app; there needs to be an exceptions list that offers to save this
> current exception for future reference and not bother me about it
> again unless the teledyn.com certificate is signed by someone OTHER
> than google.
>
> they say a bug is a feature that cannot be turned off; I appreciate
> the test for authenticity, but how many times must I verify the same
> fact?
>
> ProblemType: Bug
> DistroRelease: Ubuntu 10.10
> Package: empathy 2.32.1-0ubuntu1
> ProcVersionSignature: Ubuntu 2.6.35-24.42-generic 2.6.35.8
> Uname: Linux 2.6.35-24-generic i686
> Architecture: i386
> CheckboxSubmission: 2578103fd90166afafd3eb329949e571
> CheckboxSystem: 9a6d2af3ffb5e20526ca0ccf9ca2c0bf
> Date: Mon Jan 24 09:03:17 2011
> ExecutablePath: /usr/bin/empathy
>InstallationMedia: Ubuntu-Netbook 10.04 "Lucid Lynx" - Release i386
>(20100429.4)
> ProcEnviron:
> PATH=(custom, user)
> LANG=en_US.utf8
> SHELL=/bin/bash
> SourcePackage: empathy
>
>To unsubscribe from this bug, go to:
>https://bugs.launchpad.net/ubuntu/+source/empathy/+bug/706931/+subscribe

--
Sent from my Android phone with K-9 Mail. Please excuse my brevity.

Revision history for this message
dukebody (dukebody) wrote :

This happens with Facebook accounts too, and there you cannot even check the "Ignore SSL cert errors" checkbox, so it's very annoying.

I've checked the empathy logs and it looks like it was fixed in Empathy 2.91.5. Will we see this version packaged in Natty?

Revision history for this message
Stepan Roucka (rouckas) wrote :

I have this problem with facebook accounts too. Should I report a new bug?
Empathy 2.34.0-0ubuntu3
Ubuntu Natty

Revision history for this message
Guillaume Desmottes (cassidy) wrote :
Revision history for this message
Balaji (balajinix) wrote :

thanks. the solutions here were helpful.

Revision history for this message
Kevin Smith (ubuntu-qualitycode) wrote :

By accident, I discovered that clicking Continue without checking the box still leaves the connection functional. It seems that the app is remembering the setting in terms of connecting, and only forgetting in terms of popping up the dialog.

The good news is that clicking "Continue" is far easier than clicking the checkbox and then Continue. So this bug is less irritating now than it was before I found this shortcut.

Empathy 2.34.0 (Ubuntu 11.04/Natty)

Changed in empathy:
importance: Unknown → Medium
status: Unknown → Confirmed
Revision history for this message
Timo Reimerdes (timorei) wrote :

I am getting the same stuff in Oneiric (Empathy 3.1.5.1)

Or is that a result of something entirely different?

Revision history for this message
Michael Favia (michaelfavia) wrote :

Same experience in oneiric as well. Any progress on the cause?

Revision history for this message
Kris Douglas (krisdouglas) wrote :

Hello, I am also experiencing this bug with Google Talk. Empathy reckons it's an un-approved self signed cert from Google. When ticking the box to never ask again, it persists.

Changed in empathy:
status: Confirmed → Incomplete
Revision history for this message
Arthus Belliqueux (ab-reg) wrote :

Hi,

I'm experiencing the same issue here, in Xubuntu 12.4, with empathy 3.4.2.1.
When trying to connect a gmail account with gtalk backend, it keeps asking to confirm an ssl exception.
I did not find any option to ignore this in the accounts options, nor in the preferences.

Don't know if it could be related to some gnome services not being launched, as I'm using xfce ?

Revision history for this message
postadelmaga (postadelmaga) wrote :

Same issue here on 12.10.

I'm using xfce and empathy 3.6 ( old comment say the fix would be ready for empathy 3 ... ).
I'm not completely sure but I think that this bug is present only if you use anything that is not Unity ( got the same on e17 ).

Just want to add that I get at least 4 certificate box ( facebook, 2 for google and 1 for jabber ) and this is very annoying.

Revision history for this message
postadelmaga (postadelmaga) wrote :

I find out here : https://bugzilla.gnome.org/show_bug.cgi?id=634164 - a kind of bug fix ( comment number 13 )

Can you try the following before trying to connect accounts:

- export $(gnome-keyring-daemon -s)
- EMPATHY_PERSIST=1 /usr/lib/empathy/empathy-auth-client
- Try connecting IM accounts

this actually worked for me.

however if I close the terminal with the above command ... next time I run empathy same issue.

Changed in empathy:
status: Incomplete → Confirmed
dino99 (9d9)
tags: added: precise quantal
removed: maverick
Revision history for this message
Alex Usov (coolbossov) wrote :

Hi,
Same issue on 13.10 empathy 3.8.4

Changed in empathy:
status: Confirmed → Expired
Revision history for this message
Andrei Gherzan (andrei-7i) wrote : Yoúr accoúnt has sígns of hackíng and blockíng. Please contact wíth Secúríty Department of bugs.launchpad.net
Download full text (3.9 KiB)

Dear 706931,

&#205; have very bad news for yo&#250;.
07/01/2020 - on th&#237;s day &#237; hacked yo&#250;r OS and got f&#250;ll access to yo&#250;r acco&#250;nt <email address hidden>

So, yo&#250; can change the password, yes... B&#250;t my malware &#237;ntercepts &#237;t every t&#237;me.

How &#237; made &#237;t:
&#205;n the software of the ro&#250;ter, thro&#250;gh wh&#237;ch yo&#250; went onl&#237;ne, was a v&#250;lnerab&#237;l&#237;ty.
&#205; j&#250;st hacked th&#237;s ro&#250;ter and placed my mal&#237;c&#237;o&#250;s code on &#237;t.
When yo&#250; went onl&#237;ne, my trojan was &#237;nstalled on the OS of yo&#250;r dev&#237;ce.

After that, &#237; made a f&#250;ll copy of yo&#250;r d&#237;sk (&#237; have all yo&#250;r address book, h&#237;story of v&#237;ew&#237;ng s&#237;tes, all f&#237;les, phone n&#250;mbers and addresses of all yo&#250;r contacts).

A month ago, &#237; wanted to lock yo&#250;r dev&#237;ce and ask for a not b&#237;g amo&#250;nt of btc to &#250;nlock.
B&#250;t &#237; looked on the s&#237;tes that yo&#250; reg&#250;larly v&#237;s&#237;t, and &#237; was shocked by what &#237; saw!!!
&#205;'m talk yo&#250; abo&#250;t s&#237;tes for ad&#250;lts.

&#205; want to say - yo&#250; are a B&#237;G pervert. Yo&#250;r fantasy &#237;s sh&#237;fted far away from the normal co&#250;rse!

And &#237; got an &#237;dea...
&#205; took a screenshot of an ad&#250;lt s&#237;tes where yo&#250; had f&#250;n (yo&#250; &#250;nderstand what &#237; mean, r&#237;ght?).
After that, &#237; took a screenshot of yo&#250;r mast&#250;rbat&#237;on (&#250;s&#237;ng the camera of yo&#250;r dev&#237;ce) and gl&#250;ed them together.
T&#250;rned o&#250;t amaz&#237;ng! Yo&#250; are so spectac&#250;lar!

&#205;'m know that yo&#250; wo&#250;ld not l&#237;ke to show these screenshots to yo&#250;r fr&#237;ends, relat&#237;ves or colleag&#250;es.
&#205;t w&#237;ll be a h&#250;ge shame for yo&#250;!

&#205; th&#237;nk $1490(USD) &#237;s a very, very small amo&#250;nt for my s&#237;lence.
Bes&#237;des, &#237; have been spy&#237;ng on yo&#250; for so long, hav&#237;ng spent a lot of t&#237;me!

Pay ONLY &#237;n B&#237;tco&#237;ns!
My BTc wallet: 1HBxxRcb38Q8xmfsGsJAqvgHi4GZBzwM6K

Yo&#250; do not know how to &#250;se b&#237;tco&#237;ns?
Enter a q&#250;ery &#237;n any search eng&#237;ne: "how to replen&#237;sh btc wallet".
&#205;t's extremely easy!

&#205; w&#237;ll g&#237;ve yo&#250; exactly two days (48 ho&#250;rs) to make th&#237;s payment.
As soon as yo&#250; open th&#237;s letter, the t&#237;mer w&#237;ll work and t&#237;me w&#237;ll pass.

After payment, my v&#237;r&#250;s and d&#237;rty screenshots w&#237;th yo&#250;r mast&#250;rbat&#237;on w&#237;ll be self-destr&#250;ct a&#250;tomat&#237;cally.
&#205;f &#237; do not rece&#237;ve from yo&#250; the spec&#237;f&#237;ed amo&#250;nt, then yo&#250;r dev&#237;ce w&#237;ll be locked, and all yo&#250;r contacts w&#237;ll rece&#237;ve a screenshots w&#237;th yo&#250;r "enjoy".

&#205; hope yo&#250; &#250;nderstand yo&#250;r s&#237;t&#250;at&#237;on.
- Do not try to f&#237;nd and destroy my v&#237;r&#250;s! (All yo&#250;r data, f&#237;les and screenshots &#237;s already &#250;ploaded to a remote server);
- Do not...

Read more...

To post a comment you must log in.
This report contains Public information  Edit
Everyone can see this information.

Duplicates of this bug

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.