Google Chrome ERR_KEY_GENERATION_FAILED: How to Fix It

Medium 15-45 minutes Medium Severity Verified June 2026
Error Code
ERR_KEY_GENERATION_FAILED
Brand
Google Chrome
Product Type
browser
Severity
Medium
DIY Difficulty
Medium
Estimated Fix Time
15-45 minutes
The ERR_KEY_GENERATION_FAILED error in Google Chrome means the browser failed to generate a cryptographic key required to establish a secure connection with a website. This typically happens when Chrome cannot access or write to its local key storage, often due to a corrupted browser profile, restrictive security software, or insufficient file system permissions. The error is rated medium severity — your browser still works for non-secure pages, but you won't be able to load HTTPS sites affected by this issue until it is resolved.
Ad

Tools You'll Need

How to Fix Error Code ERR_KEY_GENERATION_FAILED

  1. Reload the Page and Restart Chrome

  2. Clear Chrome's SSL State and Browsing Data

    Clearing cookies will log you out of all websites. Make sure you know your passwords before proceeding.
  3. Disable or Temporarily Pause Security/Antivirus Software

    Only disable antivirus protection briefly for diagnostic purposes. Re-enable it immediately after testing. Do not browse unknown or untrusted websites while your antivirus is paused.
  4. Check and Repair Chrome Profile Permissions

    Be careful when editing folder permissions. Only modify permissions for your own user account. Do not change system-level permissions.
  5. Create a New Chrome User Profile

  6. Rename or Delete the 'Origin Bound Certs' or 'TransportSecurity' Database

    Do not delete these files permanently until you have confirmed that renaming them resolves the issue. Keeping the .bak versions allows you to restore them if needed.
  7. Update Google Chrome to the Latest Version

  8. Reset Chrome Settings to Default

    This will disable all extensions. You will need to manually re-enable any extensions you use after the reset.
  9. Reinstall Google Chrome

    Deleting the profile data folder will permanently remove all local browsing history, saved passwords not synced to a Google account, and locally stored site data. Back up or sync your data to your Google account before proceeding.
Ad

When to Call a Professional

If you have tried all steps above — including creating a new profile, renaming certificate database files, and performing a clean reinstall — and ERR_KEY_GENERATION_FAILED still appears, the issue may be caused by a deeper operating system problem affecting file system permissions, Windows Certificate Store corruption (on Windows), or a managed enterprise policy applied by your organization's IT department. In that case, contact your IT administrator if you are on a work or school-managed device, or seek help from a professional computer technician who can audit your OS-level permissions, check Group Policy settings, and inspect whether Windows Credential Manager or Keychain (Mac) has become corrupted.

Frequently Asked Questions

What causes ERR_KEY_GENERATION_FAILED in Google Chrome?
ERR_KEY_GENERATION_FAILED is caused when Chrome cannot generate or store the cryptographic keys it needs to establish a secure HTTPS connection. Common causes include a corrupted Chrome user profile, broken file system permissions on Chrome's data folder, antivirus software blocking Chrome's SSL operations, outdated Chrome versions with known bugs, or corruption in Chrome's local certificate or security database files.
Is ERR_KEY_GENERATION_FAILED a virus or security threat?
No, ERR_KEY_GENERATION_FAILED is not itself a sign of a virus. It is a browser-level error related to Chrome's internal cryptographic operations. However, ironically, overly aggressive antivirus software performing HTTPS inspection is actually one of the most common triggers for this error. Run a standard malware scan if you are concerned, but the error on its own is a technical browser issue rather than a security infection.
Does ERR_KEY_GENERATION_FAILED affect all websites or just one?
It can affect either. If the error only appears on one specific website, the issue may be isolated to that site's SSL certificate or the cached data Chrome has stored for that domain — clearing SSL state and site data usually fixes this. If the error appears across many websites, the problem is more likely a corrupted Chrome profile, broken permissions on Chrome's data folder, or antivirus interference affecting Chrome globally.
Will creating a new Chrome profile delete my bookmarks and passwords?
Creating a new Chrome profile does not delete your existing profile or its data — it simply creates an additional, separate profile. Your bookmarks, passwords, and history in the old profile remain intact. If you sign into your Google account in the new profile, Chrome will sync your bookmarks, passwords, extensions, and settings from Google's servers, so you won't lose anything important.
Can ERR_KEY_GENERATION_FAILED happen on Chrome for Android or iOS?
This specific error is primarily associated with the desktop version of Chrome on Windows, Mac, and Linux, where Chrome manages its own cryptographic key storage files on the local file system. On Android and iOS, Chrome relies more heavily on the operating system's built-in security frameworks for key management, making this particular error much less common. If you see connection errors on mobile Chrome, try clearing the app's cache in your phone's Settings > Apps > Chrome > Storage > Clear Cache.