Quantcast
Channel: Security forum
Viewing all articles
Browse latest Browse all 12072

WinShock (KB2992611) Patch breaks IIS

$
0
0

I've installed the KB2992611 patch on several Windows Server 2012 systems running IIS with PHP and all of them have stopped serving https pages altogether.  I also have a 2008 sharepoint server where the patch worked.

On the systems effected by this broken patch I initially only installed a single patch, 2992611, which is when things broke.  I also tried installing all the other patches thinking I missed something but it was still broken.

My system is running:
Windows 2012 - Fully Patched
IIS - php 5.5.18

Problem:
Attempt to load the page from a client on port 80 - works fine.
Attempt to load the page from a client on port 443 - page fails to load with 'The webpage at https://test.domain.com/ might be temporarily down or it may have moved permanently to a new web address.'

Event Log:
Event ID 36888
A fatal alert was generated and sent to the remote endpoint. This may result in termination of the connection. The TLS protocol defined fatal error code is 20. The Windows SChannel error state is 960.

Update: More Event Logs
Event ID 36888
A fatal alert was generated and sent to the remote endpoint. This may result in termination of the connection. The TLS protocol defined fatal error code is 10. The Windows SChannel error state is 1203.

I would appreciate any help in getting this patch fixed since it is an important patch and I don't want to simply uninstall it.




Viewing all articles
Browse latest Browse all 12072

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>