VMware Workspace ONE Community
cyphil
Enthusiast
Enthusiast

Error installing public SSL cert to Identity Manager - Error validating custom certificate

Hi, We are applying SSL cert for our identity manager server In associating the SSL cert to our IDM, GoDaddy needs us to provide CSR (Certificate Signing Request) and need identify which web server type as below.

=============

WEB SERVER LI

lighttpdNginx
Parallels Plesk PanelCPanel/WebHost Manager
Microsoft IIS 5 and 6Apache 2.x
Microsoft IIS 7Tomcat 4.x/5.x/6.x
Microsoft IIS 8Exchange Server 2007
Mac OS X Server 10.5Exchange Server 2010
Mac OS X Server 10.6Exchange Server 2013
F5 BIG-IP Loadbalancer

(1) May anyone can advise what web server IDM server is?

We tried Tomcat 4.x/5.x/6.x approach

keytool -keysize 2048 -genkey -alias tomcat -keyalg RSA -keystore tomcat.keystore

GoDaddy has returned a public SSL key and we tried to generate the private key

Generate a 2048 bit RSA Key with command:      "openssl genrsa -des3 -out private.pem 2048"

image.JPG

Finally we have error message "Error validating custom certificate. refer logs for more details."  when submit the cert

Tags (1)
6 Replies
RaviChayanam
VMware Employee
VMware Employee

Tomcat is the right choice.

This command generates the private key "keytool -keysize 2048 -genkey -alias tomcat -keyalg RSA -keystore tomcat.keystore"

This command generates the CSR which you need to send to Go Daddy "keytool -certreq -alias tomcat -file csr.txt -keystore tomcat.keystore"


Judging from the screenshot, it looks like you have a certificate and a key. Can you tell us what you find in /opt/vmware/horizon/workspace/logs/configurator.log when you see this error on the UI

0 Kudos
cyhman5
Contributor
Contributor

Hi RaviChayanam,

I had try your way and same error message showed. Could you take a look at our log files, we submit at time ~ 18:02:23, and attachment too. Thank a lot!!!

com.vmware.horizon.svadmin.util.Messages - No key found - Yes

2015-11-13 18:01:58,401 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Audit Queue Size

2015-11-13 18:01:58,401 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - 0

2015-11-13 18:01:58,401 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Audit Poll Interval

2015-11-13 18:01:58,401 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - 0 ms

2015-11-13 18:01:58,401 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Analytics Connection

2015-11-13 18:01:58,401 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Connection test successful

2015-11-13 18:02:02,351 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - idm.synnexvm.com

2015-11-13 18:02:02,351 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - SYSTEM

2015-11-13 18:02:02,351 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Password Expiration (root)

2015-11-13 18:02:02,351 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Nov 12, 2016

2015-11-13 18:02:02,351 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Password Expiration (sshuser)

2015-11-13 18:02:02,351 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Jan 12, 2016

2015-11-13 18:02:02,351 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Issuer

2015-11-13 18:02:02,351 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Internal Root CA 1447386894

2015-11-13 18:02:02,351 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Start Date

2015-11-13 18:02:02,351 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Nov 13 11:54:54 2014 GMT

2015-11-13 18:02:02,352 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - End Date

2015-11-13 18:02:02,352 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Mar 30 03:54:54 2043 GMT

2015-11-13 18:02:02,352 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Web Server Status

2015-11-13 18:02:02,352 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Running

2015-11-13 18:02:02,352 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Web Application Status

2015-11-13 18:02:02,352 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Connection successful

2015-11-13 18:02:02,352 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Appliance Version

2015-11-13 18:02:02,352 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - 2.4.0.0 Build 3035173

2015-11-13 18:02:02,352 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Web Application Status

2015-11-13 18:02:02,352 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Connection successful

2015-11-13 18:02:02,352 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Web Application Status

2015-11-13 18:02:02,352 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Connection successful

2015-11-13 18:02:02,352 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Database Connection

2015-11-13 18:02:02,352 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Connection test successful

2015-11-13 18:02:02,352 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Audit Enabled

2015-11-13 18:02:02,352 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Yes

2015-11-13 18:02:02,352 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Audit Worker Thread Alive

2015-11-13 18:02:02,352 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Yes

2015-11-13 18:02:02,352 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Audit Queue Size

2015-11-13 18:02:02,352 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - 0

2015-11-13 18:02:02,352 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Audit Poll Interval

2015-11-13 18:02:02,352 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - 0 ms

2015-11-13 18:02:02,352 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Analytics Connection

2015-11-13 18:02:02,352 WARN  (tomcat-http--46) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Connection test successful

2015-11-13 18:02:23,913 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - idm.synnexvm.com

2015-11-13 18:02:23,913 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - SYSTEM

2015-11-13 18:02:23,914 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Password Expiration (root)

2015-11-13 18:02:23,914 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Nov 12, 2016

2015-11-13 18:02:23,914 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Password Expiration (sshuser)

2015-11-13 18:02:23,914 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Jan 12, 2016

2015-11-13 18:02:23,914 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Issuer

2015-11-13 18:02:23,914 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Internal Root CA 1447386894

2015-11-13 18:02:23,914 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Start Date

2015-11-13 18:02:23,914 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Nov 13 11:54:54 2014 GMT

2015-11-13 18:02:23,914 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - End Date

2015-11-13 18:02:23,914 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Mar 30 03:54:54 2043 GMT

2015-11-13 18:02:23,914 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Web Server Status

2015-11-13 18:02:23,914 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Running

2015-11-13 18:02:23,914 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Web Application Status

2015-11-13 18:02:23,914 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Connection successful

2015-11-13 18:02:23,914 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Appliance Version

2015-11-13 18:02:23,914 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - 2.4.0.0 Build 3035173

2015-11-13 18:02:23,914 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Web Application Status

2015-11-13 18:02:23,914 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Connection successful

2015-11-13 18:02:23,914 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Web Application Status

2015-11-13 18:02:23,914 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Connection successful

2015-11-13 18:02:23,914 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Database Connection

2015-11-13 18:02:23,914 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Connection test successful

2015-11-13 18:02:23,914 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Audit Enabled

2015-11-13 18:02:23,914 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Yes

2015-11-13 18:02:23,914 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Audit Worker Thread Alive

2015-11-13 18:02:23,914 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Yes

2015-11-13 18:02:23,914 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Audit Queue Size

2015-11-13 18:02:23,914 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - 0

2015-11-13 18:02:23,915 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Audit Poll Interval

2015-11-13 18:02:23,915 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - 0 ms

2015-11-13 18:02:23,915 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Analytics Connection

2015-11-13 18:02:23,915 WARN  (tomcat-http--39) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Connection test successful

2015-11-13 18:02:58,260 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - idm.synnexvm.com

2015-11-13 18:02:58,260 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - SYSTEM

2015-11-13 18:02:58,260 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Password Expiration (root)

2015-11-13 18:02:58,260 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Nov 12, 2016

2015-11-13 18:02:58,260 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Password Expiration (sshuser)

2015-11-13 18:02:58,260 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Jan 12, 2016

2015-11-13 18:02:58,260 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Issuer

2015-11-13 18:02:58,260 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Internal Root CA 1447386894

2015-11-13 18:02:58,260 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Start Date

2015-11-13 18:02:58,260 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Nov 13 11:54:54 2014 GMT

2015-11-13 18:02:58,261 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - End Date

2015-11-13 18:02:58,261 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Mar 30 03:54:54 2043 GMT

2015-11-13 18:02:58,261 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Web Server Status

2015-11-13 18:02:58,261 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Running

2015-11-13 18:02:58,261 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Web Application Status

2015-11-13 18:02:58,261 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Connection successful

2015-11-13 18:02:58,261 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Appliance Version

2015-11-13 18:02:58,261 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - 2.4.0.0 Build 3035173

2015-11-13 18:02:58,261 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Web Application Status

2015-11-13 18:02:58,261 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Connection successful

2015-11-13 18:02:58,261 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Web Application Status

2015-11-13 18:02:58,261 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Connection successful

2015-11-13 18:02:58,261 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Database Connection

2015-11-13 18:02:58,261 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Connection test successful

2015-11-13 18:02:58,261 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Audit Enabled

2015-11-13 18:02:58,261 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Yes

2015-11-13 18:02:58,261 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Audit Worker Thread Alive

2015-11-13 18:02:58,261 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Yes

2015-11-13 18:02:58,261 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Audit Queue Size

2015-11-13 18:02:58,261 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - 0

2015-11-13 18:02:58,261 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Audit Poll Interval

2015-11-13 18:02:58,261 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - 0 ms

2015-11-13 18:02:58,261 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Analytics Connection

2015-11-13 18:02:58,262 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Connection test successful

2015-11-13 18:03:01,899 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - idm.synnexvm.com

2015-11-13 18:03:01,899 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - SYSTEM

2015-11-13 18:03:01,900 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Password Expiration (root)

2015-11-13 18:03:01,900 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Nov 12, 2016

2015-11-13 18:03:01,900 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Password Expiration (sshuser)

2015-11-13 18:03:01,900 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Jan 12, 2016

2015-11-13 18:03:01,900 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Issuer

2015-11-13 18:03:01,900 WARN  (tomcat-http--111) [;;] com.vmware.horizon.svadmin.util.Messages - No key found - Internal Root CA 1447386894

2015-11-13 18:03:01,900 WARN  (tomcat-http--111) [;;]

0 Kudos
RaviChayanam
VMware Employee
VMware Employee

The relevant log lines are

2015-11-13 17:38:31,020 INFO  (tomcat-http--25) [;;] com.vmware.horizon.svadmin.service.ApplianceSslCertificateService - Executing command sudo /usr/local/horizon/scripts/verifyCertificate.hzn --verify /db/temp/certchain-6939372472531343610.pem /db/temp/key-691749540594821081.pem

2015-11-13 17:38:31,038 INFO  (Thread-16577) [;;] com.vmware.horizon.svadmin.service.ApplianceSslCertificateService - Command execution response: Verifying certificate ...

2015-11-13 17:38:31,049 INFO  (Thread-16577) [;;] com.vmware.horizon.svadmin.service.ApplianceSslCertificateService - Command execution response: Error validating certificate: /db/temp/certchain-6939372472531343610.pem: C = US, ST = Arizona, L = Scottsdale, O = "GoDaddy.com, Inc.", OU = http://certs.godaddy.com/repository/, CN = Go Daddy Secure Certificate Authority - G2

2015-11-13 17:38:31,049 INFO  (Thread-16577) [;;] com.vmware.horizon.svadmin.service.ApplianceSslCertificateService - Command execution response: error 26 at 0 depth lookup:unsupported certificate purpose

2015-11-13 17:38:31,049 INFO  (Thread-16577) [;;] com.vmware.horizon.svadmin.service.ApplianceSslCertificateService - Command execution response: OK

2015-11-13 17:38:31,051 INFO  (tomcat-http--25) [;;] com.vmware.horizon.svadmin.service.ApplianceSslCertificateService - Command execution status: 61

2015-11-13 17:38:45,018 INFO  (tomcat-http--25) [;;] com.vmware.horizon.svadmin.service.ApplianceSslCertificateService - Executing command sudo /usr/local/horizon/scripts/verifyCertificate.hzn --verify /db/temp/certchain-7414882433488538735.pem /db/temp/key-8266380859632638764.pem

2015-11-13 17:38:45,030 INFO  (Thread-16579) [;;] com.vmware.horizon.svadmin.service.ApplianceSslCertificateService - Command execution response: Verifying certificate ...

2015-11-13 17:38:45,040 INFO  (Thread-16579) [;;] com.vmware.horizon.svadmin.service.ApplianceSslCertificateService - Command execution response: Error validating certificate: /db/temp/certchain-7414882433488538735.pem: C = US, ST = Arizona, L = Scottsdale, O = "GoDaddy.com, Inc.", OU = http://certs.godaddy.com/repository/, CN = Go Daddy Secure Certificate Authority - G2

2015-11-13 17:38:45,040 INFO  (Thread-16579) [;;] com.vmware.horizon.svadmin.service.ApplianceSslCertificateService - Command execution response: error 26 at 0 depth lookup:unsupported certificate purpose

2015-11-13 17:38:45,040 INFO  (Thread-16579) [;;] com.vmware.horizon.svadmin.service.ApplianceSslCertificateService - Command execution response: OK

2015-11-13 17:38:45,042 INFO  (tomcat-http--25) [;;] com.vmware.horizon.svadmin.service.ApplianceSslCertificateService - Command execution status: 61

2015-11-13 17:39:04,729 INFO  (tomcat-http--25) [;;] com.vmware.horizon.svadmin.service.ApplianceSslCertificateService - Executing command sudo /usr/local/horizon/scripts/verifyCertificate.hzn --verify /db/temp/certchain-6962277823764126538.pem /db/temp/key-5786572328132885551.pem

2015-11-13 17:39:04,742 INFO  (Thread-16582) [;;] com.vmware.horizon.svadmin.service.ApplianceSslCertificateService - Command execution response: Verifying certificate ...

2015-11-13 17:39:04,759 INFO  (Thread-16582) [;;] com.vmware.horizon.svadmin.service.ApplianceSslCertificateService - Command execution response: Error validating certificate: /db/temp/certchain-6962277823764126538.pem: C = US, ST = Arizona, L = Scottsdale, O = "GoDaddy.com, Inc.", OU = http://certs.godaddy.com/repository/, CN = Go Daddy Secure Certificate Authority - G2

2015-11-13 17:39:04,759 INFO  (Thread-16582) [;;] com.vmware.horizon.svadmin.service.ApplianceSslCertificateService - Command execution response: error 26 at 0 depth lookup:unsupported certificate purpose

2015-11-13 17:39:04,759 INFO  (Thread-16582) [;;] com.vmware.horizon.svadmin.service.ApplianceSslCertificateService - Command execution response: OK

2015-11-13 17:39:04,761 INFO  (tomcat-http--25) [;;] com.vmware.horizon.svadmin.service.ApplianceSslCertificateService - Command execution status: 61

I will follow up in a later post on the next steps

0 Kudos
cyphil
Enthusiast
Enthusiast

Hi RaviChayanam, any other suggestion on this? We just tried install again IDM 2.4.1, but still go the same error. Thanks a lot.

0 Kudos
RaviChayanam
VMware Employee
VMware Employee

Sorry about the delay in responding here. Can we try a different approach like the one outlined in Tech / Cheat notes: Creating a .pem file from GoDaddy SSL cert.

So, instead of using Tomcat I am suggesting we use Apache as the web server type

sethcrosby
Contributor
Contributor

I just had this exact same problem and your link was exactly what I had to do to resolve the problem. Thanks! Pulling together the process I used for help for others...

I generated the key and CSR using the command:

#openssl req -new -newkey rsa:2048 -nodes -keyout foo.com.key -out foo.com.pem

Gave me 2 files:

foo.com.key

foo.com.pem

Issued my CSR (from .pem file) back to GoDaddy for generating the certificate.

Downloaded my files from Godaddy for Apache (server type) and unzipped to get these files:

ffe91d2c35471b65.crt

gd_bundle-g2-g1.crt

From there I concatenated:

$cat ffe91d2c35471b65.crt gd_bundle-g2-g1.crt > foo.com.bundle.crt

Opened the foo.com.bundle.crt and the foo.com.key and pasted into IDM 2.9.2 - worked like a charm.