Re: Issue accessing https://git.libssh.org

Am 28.06.2017 um 13:42 schrieb Andreas Schneider:
> On Wednesday, 28 June 2017 12:43:14 CEST Tilo Eckert wrote:
>> Hi,
> Hi Tilo,
>> I am experiencing a re-occuring issue when accessing
>> https://git.libssh.org with Firefox. When requesting a page for the
>> first time after browser startup or after not accessing the site for a
>> while, I get an SSL error page with the error code
>> Refreshing the page causes it to load successfully and I can navigate
>> the site. When idling on one page for a couple of minutes, the issue
>> reappears on the next page request.
>> If the server is configured for HTTPS2, this post might be relevant:
>> https://support.mozilla.org/en-US/questions/1139019
> Thanks!
> Please retry.

The issue still persists. I think the reason is that the cipher suite
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA is negotiated which is blacklisted in
HTTP/2. Firefox probably falls back to HTTP/1.1 when negotiation failed
for a recent previous request.

See RFC 7540 for all blacklisted suites:


