Attempt to record login in AppScan Enterprise results in "Network Error"
Attempts to record login IBM Security AppScan Enterprise Manual Explore plugin results in the error "Network Error". Attempts to record login in Manual Explore Tool results in the error "CRWAE1404W".
Manual Explorer plugin shows error as follows when trying to access your application:
Failed to connect to the site (AuthenticationFailed)
Manual Explore Tool shows the following error:
CRWAE1404W: Cannot connect to the target server because of an invalid SSL certificate
There may be several causes of this error.
One of them because the ciphers are unable to communicate to the server, usually because the RC4 ciphers are disabled following security guidelines from Microsoft.
If this case, you may problem accessing the application with Internet Explorer, but FireFox and Chrome may access the application correctly.
Diagnosing the problem
Use "Wireshark" or any packet monitoring program to monitor the SSL handshake.
Check the Client Hello if the RC4 ciphers are listed there.
Resolving the problem
There is two way to fix the problem:
- Re-enable the ciphers via Windows Registry key as follows:
- Run regedit
- Go to: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\SCHANNEL\Ciphers
- Remove the sub-keys (with the names of the ciphers) from the above key to re-enable the ciphers
- If you are not able to change the registry key, then make sure your web server is up to date and allow other ciphers as well so that Internet Explorer could access it.
More support for:
IBM Security AppScan Enterprise
Manual Explore: Plugin
Software version: 8.8, 18.104.22.168, 9.0, 22.214.171.124, 9.0.1, 126.96.36.199, 9.0.2
Operating system(s): Windows
Reference #: 1962777
Modified date: 29 September 2016