Environment
Novell iChain 2.3 Support Pack 1
Novell iChain 2.3 Support Pack 2
Novell iChain 2.3 Support Pack 3
Novell iChain 2.3 Support Pack 4
Situation
Unable to create an iChain auto-generated SSL certificate for
an accelerator. HTTPS redirect fails when trying to access
the iChain secure login page after enabling secure exchange for an
accelerator.
On the "Cache Appliance Security Key Creator" screen the
following message is seen:
Server CN=ICS_SERVER.O=ics maximum RSA Signature key size:
2048.
Server CN=ICS_SERVER.O=ics maximum RSA Key Encryption key size: 2048.
Server CN=ICS_SERVER.O=ics maximum RSA Data Encryption key size: 2048.
Server CN=ICS_SERVER.O=ics generating RSA Key Encryption key size: 512.
Server Certificate? Adjusting FROM Time to currentServerTime = 1158779311
NPKICreateServerCertificate returned FFFFFB2C
Server CN=ICS_SERVER.O=ics finished generating certificate: www_myaccelerator_com Error code: -1236.
Server CN=ICS_SERVER.O=ics maximum RSA Key Encryption key size: 2048.
Server CN=ICS_SERVER.O=ics maximum RSA Data Encryption key size: 2048.
Server CN=ICS_SERVER.O=ics generating RSA Key Encryption key size: 512.
Server Certificate? Adjusting FROM Time to currentServerTime = 1158779311
NPKICreateServerCertificate returned FFFFFB2C
Server CN=ICS_SERVER.O=ics finished generating certificate: www_myaccelerator_com Error code: -1236.
Resolution
Verify that there is not a corrupted trusted root CA in
iChain's trusted root container.