Hello forum users,
I have been using the PA ROM for about a month now on my new Oneplus One and so far I am enjoying it very much.
Recently, however, I have encountered an error which I am now struggling to resolve. The educational facilities where I study offer a free wireless connection, given that you install their certificates and create custom wireless connections on your phone by using these certificates. I installed the two certificates and I am now facing a warning/an error that reads: Network may be monitored by an unknown party. I cannot use these certificates to create a custom WIFI connection on my phone. I googled the issue and found out the phone does not trust the certificates and that I need to somehow move these two certificates to the folder where all the trusted certificates are. All of the solutions I have found are irrelevant for the PA ROM.
Can anyone explain to me how to move these certificates to the appropriate folder or make them trusted by the phone?
Kind regards from Slovenia
Related
Hi all
didnt know really where to put this but i thought upgrading may be about right.
Anyhow i have been trying to get a safemode app to run on a couple of Orange phones (M3100 & M600) and this was the reply i had from one of the developers
"An app properly signed with a M2M certificate will run on every Windows Mobile 5.0 device EXCEPT:
Devices shipped by Orange do not include the Mobile2Market Privileged certificate, but do include the Normal M2M certificate"
(http://msdn.microsoft.com/windowsmobile/partners/mobile2market/smartphoneapps/default.aspx)
So my question , Is it possible to extract the cert from another phone and Add them to my phone ?
and if so which ones do i look for and how would i do it ?
Thanks
dean
Anyone know if personal exchange certificates are now working in WM6? I'd rather not pay $100/yr if I don't have to...
I believe so, I use a personal exchange certificate and never had a problem with it in WM6...
Hmm, well I wasted last night trying to get ours to work. I was able to export the .cer and install it, but it kept saying "invalid security certificate".
One other item to note, our webmail address is as follows blahblah.wahwah.com/exchange.
Is that causing the problem?
pkley said:
Hmm, well I wasted last night trying to get ours to work. I was able to export the .cer and install it, but it kept saying "invalid security certificate".
One other item to note, our webmail address is as follows blahblah.wahwah.com/exchange.
Is that causing the problem?
Click to expand...
Click to collapse
I doubt it..
Are you sure the backend (exchange/isa publishing) is all correct?
Next up, you'll probably need to export the root certificate and import that on to your device as well as the cert thats been used to publish exchange. You can use owa to test all this... If you browse to https owa url you need to see all green (eg name matches, certificate valid (eg not expired), and trusted (including any root certs)). Ensure root certs are in the correct store when you import (I usually deselect the place certs automatically option).
The other thing is to check on how the cert was exported... I dont have the process to hand, but its on isaserver.org and MS....
All I've ever done is install the root certificate on the phone and everything works fine WM5/WM6.
All I've ever done is install the root certificate on the phone and everything is ok (WM5/WM6) although I'm not behind ISA
Your certificate name would have to match exactly what you have set up on exchange/server. In your example, certificate is named blahblah.wahwah.com... it has to be exactly the same name. So in your PDA the server name would be blahblah.wahwah.com. not blahblah.wahwah.com/exchange
Good luck.
Personal certificate you mean : Client certificate ?
-> work fine with YES an easy install (no need anymore complicate activesync process or Jacco dds....)
Woldcard certificate (*.toto.com also working fine!)
-> yes after a missing feature in WM5!
Ok, here's what I did.
Opened up my webmail page which is abc.defg.com\exchange
Clicked on the Lock and opened up the certificate. Under Certification Path it says abc.defg.com - no \exchange
Under Details I clicked on Thumbprint and Copy to File as a .cer
I named that file root.cer and put it in the directory on my 8525 and ran it, it installed.
I'm sure I'm missing several steps, but a lot of the threads are way over my head or not applicable to my situation. Any advice, or step by step would be greatly appreciated.
I flashed LVSW WM6.0 ROM ( 3.30.0.9 version ) last night on my Hermes. After the flashing was done, the device was able to synchronize with the exchange server through my PC at the first, but it wasn't later. And the synchronizing is always failed with the exchange server through the GPRS later on. I checked the report and it reads
" Result: The server certificate on the server is not valid. Contact your Exchange Server administrator or ISP to install a valid certificate on the server."
and provides a " Support code : 0x80072F06".
This never happened on the platform of WM5.
Can anybody help on this issue?
Thanks a lot!
I had a same issue at past week.
Please change the WINCE.NLS at the \winodws by Good WINCE.NLS.
Good mean is right wince.nls same as your localized version.
Have you been installed any programs with the WINCE.NLS?
If so, I hope above information is usefull.
YUKI- said:
Please change the WINCE.NLS at the \winodws by Good WINCE.NLS.
Good mean is right wince.nls same as your localized version.
Have you been installed any programs with the WINCE.NLS?
If so, I hope above information is usefull.
Click to expand...
Click to collapse
I'm also having a similar problem. When I connect via usb I can sync with server. When I connect wirelessly, cannot sync. Get server name error. Do you have this file?
YUKI- said:
Please change the WINCE.NLS at the \winodws by Good WINCE.NLS.
Good mean is right wince.nls same as your localized version.
Have you been installed any programs with the WINCE.NLS?
If so, I hope above information is usefull.
Click to expand...
Click to collapse
Hi YUKI-
Thanks for your input. Actually I'm using the good wince.nls said as without the good wince.nls Chinese is not readable. But the problem is still the problem.....Thank you all the same
Taking it back to first principals (assuming you have access to the server):
- what certificate is the server using? (one from your own CA or a third party one like verisign)
- has that certificate expired?
- if using a certificate from your own CA have you installed the root certificate on your phone?
- do the address on the certificate and the one you have entered on the phone match exactly?
- what happens if you turn off the SSL requirement on the server - do you get a different error or does it work ok?
- Do you have another phone you can test with? Failing that what about using Outlook Web Access on a PC over SSL, does that work okay without certificate errors?
randomelements said:
Taking it back to first principals (assuming you have access to the server):
- what certificate is the server using? (one from your own CA or a third party one like verisign)
- has that certificate expired?
- if using a certificate from your own CA have you installed the root certificate on your phone?
- do the address on the certificate and the one you have entered on the phone match exactly?
- what happens if you turn off the SSL requirement on the server - do you get a different error or does it work ok?
- Do you have another phone you can test with? Failing that what about using Outlook Web Access on a PC over SSL, does that work okay without certificate errors?
Click to expand...
Click to collapse
Hi randomelements,
1. There is not a certificate the server is using. And there is never a certificate required when I used the WM5 on my Hermes. Also my colleagues in US is using the WM6 and there is not any certificate required.
2. Turned off the SSL requirement, there is another error report reading " Your account in Microsoft Exchange Server does not have permission to synchronize with your current settings. Contact your Exchange Sever administrator." and a new support code " 0x85010004" was given.
3.a couple of days ago I used WM5 on my Hermes and there was not any problem. Before using the Hermes, I used the Magician and there was not any problem either.
It works well that using Outlook Web Access on a PC over SSL.
Well...it looks to be a big problem^_^ thank you all the same randomelements!
What version of exchange?
If 2007, the integration with WM6 is tighter than 2003 with WM5 or 6. When I set mine up I had to alter permissions on the Exch 2007 web site. There are pointers on the MS website of you search on that error code and exchange 2007. I dont have the info to hand, but can look on my system tonight.
greatg said:
I'm also having a similar problem. When I connect via usb I can sync with server. When I connect wirelessly, cannot sync. Get server name error. Do you have this file?
Click to expand...
Click to collapse
My situation is NEVER completed any ActiveSync via USB+PC and X01HT's Wireless connection. I think thats problem does not same.
And I am currently using japanese version crossbow. if you have another language with wince.nls, does not solved your issue with my attached a file.
Check the clock on your phone. A couple of times when I flashed I forgot to change the year and had my date set in 2006, which gave me invalid or expired certificate error.
I think I've got what the problem is. I flashed the black 3.01 ROM tonight. After the flash was done, I tried the syn immediately and it succeeded via the wireless connection. But when I replaced the original wincel.nls file with the one with Chinese supported, the syn was failed and I got the same error report.
The problem is I can't use the wincel.nls file without Chiese supported. What should I do?
Hi all
Great forum...
I am trying to deploy an application from Visual Studio 2005 to my Zest phone. I have done this a hundred times in the past but for some reason it is now failing with an error:
The device security configuration disallowed the connection. Ensure that you have the appropriate certificates on your device for development. Review your SDK documentation for proper security settings for connecting to this device.
I have wasted two days now trawling the net trying to find a solution but with no luck.
I have tried to instal the SDKCerts.cab but it simply wont install.
I have tried to edit the registry using mobile registry editor but get access is denied.
I have tried to install enablerapi but that fails to install also.
I have move the .exe manually and tried to run it but it complains that the app is not signed with a trusted certificate.
I am not too clued up on certificates so I really don't know where to go next.
Any help really apprciciated.
Hello,
i have made a Firmware Downloader that had the availability to download all Samsung Mobile Fimrwares, but since march this year samsung changed the server, and is using a new system for getting the data. However this tool could help someone who maybe find the new way to download firmwares, it has already access to the old server, only the firmwares are all transfered to the neofus server.
It could help someone, maybe, because i am not allowed to do anything here, cause i am new, i will try to support the new developers.
It is developed in C# .net 4 and you will need kies installed, or the fuscryptlib registered, found in the kies folder or in the app folder.
regsvr32 %Path%/fuscrypt.dll
Should i explain that this downloader had the availability to download also android fw and so on? maybe there is someone who can made it.
It was before march the ultimate tool to get every fw from the server. I tried at my own to make a new one, the my developer mentor tried it, we failed due to lack of time.
Just downloaded the "Slyfer300" app. The UI is superb. Just a pity Samsung has changed the server to their firmwares and we cannot use this tool for now. Let's hope and pray someone comes up and lend a hand to complete this wonderful app. So that we can easily download and flash firmwares manually without the need for kies.
I included a screenshot of this superb app below for the eyes only (until it becomes a fully functional app)
The App worked a half year, samsung changed the servers since March 2011, i was before here @badanation.de and developed it in the past. The app was secret and we offered for everyone free Firmwares of their desire, the only rule was only for badanation members.
I puplished it, cause maybe someone here @xda could make it work with the new server that was a cool time when you start the app and you can download any firmware you want.
The old system was based on a PL/SQL query over PHP, i have found a bug in the system and could request the whole Database from the Firmwares, you can see in advanced mode what was possible.
Also user names and their ... was visible, but i newer wonted to damage samsung i always wanted to help other users with the firmware problems we all have.
The new System is a little bit tricky signatures and so on no more php
As i know here was some nice developers @xda that could maybe improve it. Let us see what the feature brings to us.
Hi, nice tool. Unfortunately it's not working with the new servers. I have made a tool that can download the latest firmware from samsungs new servers, but it still requires an old firmware as input. I have not found any way to browse all firmwares like you could on the old server. A lot have chenged in the way you request firmwares and it unfortunately no possible to reuse this tool on the new server.
Yes, it was not simple to find out the right PL/SQL commands for oracle, it was more a doing by trying thing. But as i saw it on keys the listening method still exists on new server, it is the same database, only with a new system. I have done some Kies 2 researches but than give up, cause of lack of time. I had a tool that can download with the new request system.
Only what you need is to pass through the right PL/SQL command, in Kies you find an CarrierTestMode and ServiceCenterMode, one of this two can listen the whole Phonebinary databases, the code is to huge, i havent done a lot since the half year slyfer worked.
Its in a case simply only need to find out the right command, also what is neccessary to find a security whole on new server, on the old server, it was prohibited to execute SQL statements except of predefined calls, but i found a way as you see, it was more an oracle bug, how you can get anyway in and become the whole database information with dictionary commands out, it was at least so easy to get everything out of there. Then i have done some facelifting and made for me an advanced mode to be prepared of changes, but at the near end it doesnt worked any more.
I think you can get in like kies withouth authentification, as before, cause there is no username or password needet if the table is accessable by everyone, its like free to air.
If you need some tips, how i have found out the way in, i can help you. i dont know how to encrypt the new way, but i know that the answer is in the FusCipherUtil.dll it hink it is named so, dont know it exactle, kies is like an open book as you also seems to know.
Forgotten one thing, if you try to send SQL command that listen whole database, then you will get in timeout, cause oracle needs time to collect all the data, i had problems to recieve simple sized calls from it, so you must limit them that you can recieve the data in time everything over an minuete dont works as i remember.
1250 rows around was for my requests the maximum, everything above, througn a server timeout.
larioteo said:
Forgotten one thing, if you try to send SQL command that listen whole database, then you will get in timeout, cause oracle needs time to collect all the data, i had problems to recieve simple sized calls from it, so you must limit them that you can recieve the data in time everything over an minuete dont works as i remember.
1250 rows around was for my requests the maximum, everything above, througn a server timeout.
Click to expand...
Click to collapse
Your program its more power full then CheckFus.
Advanced mode verry great. Verry frustrated, cant use it for now.
hello larioteo are u still working on the new Kies app ?