Lead Cards Integration issue with SSL connect error errno=0 state=SSLv3 read server certificate B: certificate verify failed


#1

Hi clients have started reporting an issue with our Lead Cards integration, when I test using ads.twitter.com I am able to replicate the error when testing a card.

Result: Failure. Error submitting card data: SSL_connect returned=1 errno=0 state=SSLv3 read server certificate B: certificate verify failed.

I’m posting this to https://cb.sailthru.com/s/1wi/Twitter+test+2

I’ve spoken to our Ops team and they have not made any changes to the SSL cert or configuration that would cause this issue and indicated that SSLv3 acceptance has been deprecated in favor of TLS 1.2 across the web as a best practice due to security vulnerabilities.

Our partner manager has asked me to post this question here for assistance.

Thanks


Twitter Card Validation Error: certificate verify failed
#2

This error means that upon connecting to your site, we were unable to verify the SSL certificate is valid and configured at a level that Twitter servers would trust the connection.

From just checking the SSL cert on that domain, I get the following warning:

Your connection to cb.sailthru.com is encrypted using an obsolete cipher suite.

Two resources that may be of help:

  • Another thread from other developers who’ve had similar issues and resolved them for lead gen cards:
  • A free tool to check your SSL configuration is SSL Labs.