How to

ERR_SSL_PROTOCOL_ERROR: How to Fix in Chrome and Windows (5 Fixes)

You try to visit a secure website over HTTPS, and instead of the green lock or padlock icon, your browser terminates the connection with a red warning screen:

This site cannot provide a secure connection / ERR_SSL_PROTOCOL_ERROR

Unlike simple connection timeouts, an SSL protocol error means that your browser and the website’s web server attempted to establish a secure, encrypted handshake—and the security negotiation failed completely.

Because the error involves encryption protocols, certificates, and local security software, it can happen on both client-side computers and server-side configurations.

In this practical troubleshooting guide, we will explain why the ERR_SSL_PROTOCOL_ERROR happens and provide five proven ways to fix it quickly in Google Chrome and Windows 11.


What Causes the ERR_SSL_PROTOCOL_ERROR?

When you connect to an HTTPS website, your browser and the server perform an SSL/TLS Handshake. During this handshake, they verify digital certificates, agree on encryption ciphers, and exchange session keys.

The handshake collapses with an ERR_SSL_PROTOCOL_ERROR when:

  • System Date and Time Mismatch: If your computer’s clock is off by even a few minutes, digital certificates appear expired or not yet valid.
  • Corrupted Local SSL State: Outdated SSL session tokens cached inside Windows.
  • Third-Party Antivirus HTTPS Scanning: Security software intercepting and corrupting encrypted traffic packets.
  • Outdated QUIC or TLS Protocols: Browser experimental flags clashing with server cipher configurations.

Fix 1: Correct Your System Date and Time (Most Common Culprit)

Digital SSL certificates are bound strictly by calendar dates. If your computer’s motherboard CMOS battery is weak or your time zone is misconfigured, your computer may believe an active SSL certificate is in the future or expired.

  1. Right-click on the clock in the bottom right corner of your Windows 11 taskbar and select Adjust date and time.
  2. Toggle Set time automatically to On.
  3. Toggle Set time zone automatically to On.
  4. Scroll down and click the Sync now button under Additional settings.

Once your clock synchronizes with Microsoft’s official time server, reload your browser. In many cases, the SSL error disappears instantly!


Fix 2: Clear Your Windows SSL State

Just as Windows caches DNS lookups, it also caches active SSL certificates and session tickets. If an SSL certificate was recently renewed by the website owner, your operating system may still be trying to enforce the obsolete certificate.

  1. Press Windows Key + R, type inetcpl.cpl, and hit Enter to launch Internet Properties.
  2. Click on the Content tab at the top.
  3. Click the button that says Clear SSL state.
  4. You will see a notification saying: “The SSL cache was successfully cleared.”
  5. Click OK.

Restart Chrome and revisit the website.


Fix 3: Disable QUIC Protocol in Google Chrome

Google Chrome uses an experimental UDP-based transport protocol called QUIC (Quick UDP Internet Connections). While QUIC speeds up connection times on supported servers, it frequently triggers handshake failures on servers running older TLS configurations.

  1. Open Google Chrome.
  2. In the URL bar, type:
    chrome://flags/#enable-quic
  3. Locate the setting labeled Experimental QUIC protocol.
  4. Change the dropdown from Default to Disabled.
  5. Click the blue Relaunch button at the bottom of the screen.

Fix 4: Disable Antivirus SSL / HTTPS Scanning

Modern antivirus applications (such as Kaspersky, ESET, Avast, and Bitdefender) include a feature called “HTTPS Scanning” or “SSL Filtering.” To scan secure traffic, the antivirus creates a custom root certificate on your machine to decrypt your traffic on the fly.

If that internal certificate gets out of sync, Chrome detects the man-in-the-middle decryption and aborts the connection with ERR_SSL_PROTOCOL_ERROR.

  • Open your antivirus dashboard.
  • Navigate to Web Protection / Web Shield settings.
  • Look for Enable HTTPS scanning or Scan encrypted connections and toggle it Off.

Fix 5: Check Your Server’s SSL Configuration (For Website Owners)

If you own the website throwing this error, the problem could be an incomplete certificate chain on your hosting server.

  1. Visit Qualys SSL Labs free testing tool (ssllabs.com/ssltest/).
  2. Enter your website domain and run the scan.
  3. Look at the results: if you see “Chain issues: Incomplete”, your server is missing the intermediate CA certificate.
  4. Log in to your hosting cPanel, open SSL/TLS Manager, and re-install your SSL certificate including the CA Bundle.

For more WordPress and server administration tutorials, check out our guides on fixing the failed to write file to disk error and resolving 413 request entity too large issues.


Wrapping Up

An ERR_SSL_PROTOCOL_ERROR indicates a breakdown in encrypted communication. Synchronizing your system clock, clearing your Windows SSL cache, and disabling QUIC protocol in Chrome will solve the problem in almost every scenario.

Did clearing your SSL state resolve the error? Let us know in the comments below!

Leave a Reply