iChain fails to create auto-generated SSL certificate

  • 3339329
  • 10-Oct-2006
  • 27-Apr-2012

Environment

Novell iChain 2.3 Support Pack 1
Novell iChain 2.3 Support Pack 2
Novell iChain 2.3 Support Pack 3
Novell iChain 2.3 Support Pack 4

Situation

Unable to create an iChain auto-generated SSL certificate for an accelerator. HTTPS redirect fails when trying to access the iChain secure login page after enabling secure exchange for an accelerator.
On the "Cache Appliance Security Key Creator" screen the following message is seen:
Server CN=ICS_SERVER.O=ics maximum RSA Signature key size: 2048.
Server CN=ICS_SERVER.O=ics maximum RSA Key Encryption key size: 2048.
Server CN=ICS_SERVER.O=ics maximum RSA Data Encryption key size: 2048.
Server CN=ICS_SERVER.O=ics generating RSA Key Encryption key size: 512.
Server Certificate? Adjusting FROM Time to currentServerTime = 1158779311
NPKICreateServerCertificate returned FFFFFB2C
Server CN=ICS_SERVER.O=ics finished generating certificate: www_myaccelerator_com Error code: -1236.

Resolution

Verify that there is not a corrupted trusted root CA in iChain's trusted root container.