2 Untrusted Certificates in "System Keychain" in Keychain.app

Hi, I have an untrusted com.apple.kerberos.kdc certificate in my System Keychain, along with both a corresponding private and public key. Similarly, I have the same situation with a com.apple.systemdefault .....
For those interested in seeing a pic:
http://img444.imageshack.us/my.php?image=picture2vs8.png
Basically, I was hoping someone could either tell me that it's no big deal and they have the same certificates there too, or that I should probably delete them. More importantly, I was hoping some one might be helpful enough to explain to me why they are there or what they are for. Because, for example, from what little I know of networks and stuff, I know Kerberos is used in like school networks and business etc. But I only use my mac at home
As for some background ---> (if anyone is interested before answering) +I'm not not in the States right now where I normally reside and I happen to have taken my computer in for care at an authorized dealership here overseas where I'm temporarily staying.+
+After they replaced my Optical Drive under Apple Care Warranty, they needed to reinstall.... I had provided my CDs--which I am without a doubt certain worked before I handed them in as required by their service terms--but was later informed that the new Optical Drive that had been installed could not read them for some reason or another(the CDs would mount, but show no contents within the Finder window). If I were in the US, I would have called apple since I am still under warranty and seen if they could be replaced, which I have done with a past G4 powerbook with no prob at all. But since they couldn't provide that service, they simply installed leopard on my comp for me off their Install CDs.... As a result, I am left wondering if maybe they used an Install Disc which was intended for another computer or was perhaps not appropriately specified for my comp or something.+

Wow, thanks for responding. I really didn't expect a soul to respond such an obscure query.... You're right, it isn't affecting the system at all in anyway, but from what I gather from your response and a search on google which yielded a meager one result of any informative value, it's not normally supposed to be there:
http://dev.mac-forums.com/forums/os-x-applications-games/104229-keychain-has-unt rusted-certificate.html
So, I was wondering if you or anyone else could do me a a very quick favor. Can you tell me if the same certificates are even present on your box? Or, if they are in fact there, are they trusted?
Finally, as a less valuable side note, do you know what these certificates could be, or might have been used for? Seeing as how I'm prettty much an at home browser/computer user, I don't think I would have required the use at least that kerberos certificate in the 3 days I have been using the freshly installed OS since after the repair........
Thanks

Similar Messages

  • Should the passwords in 'System keychain' (in Keychain Access) normally be accessible to the owner/administrator?

    Should the passwords in 'System keychain' (in Keychain Access) normally be accessible to the owner/administrator or not?
    If not, would it be possible to gain access via the Root Account?
    I can access the passwords in 'Login keychain' (in Keychain Access). But when I try to access the passwords in 'System keychain' I'm asked for the Keychain Access password! I've never set such a password. I've only ever used one password - my owner/administrator password. But this isn't accepted when I try to access the passwords in 'System keychain'.
    Please note, this question was previously posted in the OSX Tiger forum but no-one offered an answer
    Thanks,
    iHope

    Seems this is a characteristic of the system keychain.
    Check out this thread...and furtwanglerian's response....
    http://discussions.apple.com/thread.jspa?messageID=8767033&#8767033
    closed

  • Safari and Sites with Untrusted certificates

    On my old iPhone 3GS i was able to connect to my work's wireless network by going into Safari and accepting the untrusted certificate that my company has on it's wireless log on page. But now with the iPhone 4, when it comes up with the request to confirm the certificate, Safari crashes and returns to the home screen, is this a know problem with sites like this?

    Similar for me. I try to access my work (Fed Govt) email via the web at an https address and mobile safari asks me to accept the certificate. I do, and it crashes. Worse yet, I called Apple to bring the issue to their attention, they went to 2nd or 3rd tier support and came back to me and said its "3rd party" contact them... VERY dissapointed! This same site loaded fine under iPhone OS 3x
    I even tried to export the cert from mac's keychain and installing it via the iPhone config utility. Even with the profile there, the phone does not recognize the website certificate and asks me to accept it... and it crashes yet again.

  • Hi, I have Mac Book It currently at 10.6.8 I want know how to recover the FileVault Password? I tried /Library/Keychains/FileVaultMaster.keychain but it say permission denied when i'm the admin account

    Hi, I have Mac Book It currently at 10.6.8 I want know how to recover the FileVault Password? I tried /Library/Keychains/FileVaultMaster.keychain but it say permission denied when i'm the admin account

    Hi BobRz,
    As this is a new issue for me, I believe I had the incorrect approach, maybe you can help me. What I want to do is recover a few files in my desktop, and some information i had on the iCal application and the Mail application as well.As I do not want to do a full migration into this computer (which is not mine) I believe that starting the damaged MBP in Target mode should allow me to search and cop the files I need. But:
    1. Can I open the Ical and mail apps to look for the info I need while reading it as an external HD  ?
    2. Do the target machine (my friends) still need to be updated to ML o Mavs so that it recognizes my MBP as an external drive if starting it in Target mode ? (no migration assistant)
    Thanks.

  • User differs on ~/Library/Keychains/login.keychain,should be 501,owner is 0

    I am having sever keychain errors. When I try to verify or repair my keychain, I get this error:
    "User differs on ~/Library/Keychains/login.keychain, should be 501, owner is 0"
    How can I fix this?
    Thanks.

    in terminal:
    sudo chown 501: ~/Library/Keychains/login.keychain

  • Untrusted certificate notification keeps appearing

    Everytime my Firefox browser is open this Untrusted Certificate Notification keeps appearing, the contents of which as follows:
    us.data.toolbar.yahoo.com:443 uses an invalid security certificate
    this certificate is not valid because it is self-signed
    [Error code:sec_error_untrusted_issuer]
    This could be a problem with the server's configuration or
    someone is trying to impersonate the server.
    How can this be stopped as this is getting to be annoying.Thanks.

    Folks,
    I stumbled on a solution:
    To Tools/Options/Advanced/Security Devices/ and unload FIPS.
    Help spread the word, because if we depend on Firefox, it will takes ages to solve it. I found problem reports dating back to 2005!!
    Info on FIPS:
    http://en.wikipedia.org/wiki/FIPS_140
    Help spread the word!
    An error occurred during a connection to www.google.com.
    Peer's certificate has an invalid signature.
    (Error code: sec_error_bad_signature)
    An error occurred during a connection to www.google.com.
    Peer's certificate has an invalid signature.
    (Error code: sec_error_bad_signature)
    An error occurred during a connection to www.google.com.
    Peer's certificate has an invalid signature.
    (Error code: sec_error_bad_signature)
    An error occurred during a connection to www.google.com.
    Peer's certificate has an invalid signature.
    (Error code: sec_error_bad_signature)
    An error occurred during a connection to www.google.com.
    Peer's certificate has an invalid signature.
    (Error code: sec_error_bad_signature)
    An error occurred during a connection to www.google.com.
    Peer's certificate has an invalid signature.
    (Error code: sec_error_bad_signature)
    An error occurred during a connection to www.google.com.
    Peer's certificate has an invalid signature.
    (Error code: sec_error_bad_signature)
    An error occurred during a connection to www.google.com.
    Peer's certificate has an invalid signature.
    (Error code: sec_error_bad_signature)
    An error occurred during a connection to www.google.com.
    Peer's certificate has an invalid signature.
    (Error code: sec_error_bad_signature)
    An error occurred during a connection to www.google.com.
    Peer's certificate has an invalid signature.
    (Error code: sec_error_bad_signature)
    An error occurred during a connection to www.google.com.
    Peer's certificate has an invalid signature.
    (Error code: sec_error_bad_signature)
    An error occurred during a connection to www.google.com.
    Peer's certificate has an invalid signature.
    (Error code: sec_error_bad_signature)
    An error occurred during a connection to www.google.com.
    Peer's certificate has an invalid signature.
    (Error code: sec_error_bad_signature)
    An error occurred during a connection to www.google.com.
    Peer's certificate has an invalid signature.
    (Error code: sec_error_bad_signature)
    An error occurred during a connection to www.google.com.
    Peer's certificate has an invalid signature.
    (Error code: sec_error_bad_signature)
    An error occurred during a connection to www.google.com.
    Peer's certificate has an invalid signature.
    (Error code: sec_error_bad_signature)
    An error occurred during a connection to www.google.com.
    Peer's certificate has an invalid signature.
    (Error code: sec_error_bad_signature)
    An error occurred during a connection to www.google.com.
    Peer's certificate has an invalid signature.
    (Error code: sec_error_bad_signature)
    An error occurred during a connection to www.google.com.
    Peer's certificate has an invalid signature.
    (Error code: sec_error_bad_signature)

  • Calculating system requirements for an app?

    Hey,
    Is it possible to calculate the system requirements of an app I am developing? I have some older machines in the lab which I might get my hands on, however I don't really want to get into it if it is not feasible to use them because of their weakness. Does the compiler have some options for this hidden somewhere?
    Might using RT OS provide some better performance for older machines? (As they do not need to run Windows and all related stuff)
    Thanks,
    Engage! using LV2012

    Honestly you'd be best off if you just coded up your software and kept performance in mind.  Then try it out and hope for the best.  If it doesn't work, re-optimize or increase your system requirements.  Your program can take as much, or as little CPU and memory as you code, so without knowing what you want to do, or how you perform the tasks it will be quite difficult to recommend any requirements.
    Unofficial Forum Rules and Guidelines - Hooovahh - LabVIEW Overlord
    If 10 out of 10 experts in any field say something is bad, you should probably take their opinion seriously.

  • Guest Portal - untrusted certificate

    All,
    My ISE integration is on our local domain,for example  company.local. I created a rule in the authorization policy that used a static IP address, say guest.company.com for our guests to use for the redirection. When guests get the web auth redirection to guest.company.com they are getting the untrusted certificate.
    I tried to import a certificate from our external CA, and faced errors because it didnt have the .company.local SAN. I did generate that with the CSR but my external CA doesnt give me an option to include this.
    How is this rectified so our guests hit the web portal without getting a certificate error?

    Hi Jason,
    From my experience, this is a common problem.  Typically, what I do on deployments is obtain a trusted 3rd-party signed certificate for my HTTPS usage on the ISE appliances. If you want to use your internal CA certificate to authenticate EAP for your domain computers and other sessions,  you can still do so.
    Note: Sometime in 2014 (it may already be active) the 3rd-party certificate signers are no longer going to allow .local or other internal domains on their certificates. 
    With that said, I've normally been deploying the ISE appliances with an external domain name, example, ise.company.com rather than ise.company.local.  You can setup split DNS on your network to allow ise.company.com to resolve to your internal IP.
    Hope this helps.

  • /System/Library/CoreServices/Dock.app/Contents/MacOS/Dock

    typing ps -eo pcpu,pid,user,args |sort -k 1 -r|head -10 i got this process /System/Library/CoreServices/Dock.app/Contents/MacOS/Dock 100%. it was after installing photoshop cs5 i guess... the problem is that the battery is lasting no longer then 3 hours... and the cooler is always on

    If you run Parallels, there is a conflict with 10.6.8.  One of the symptoms is the dock at 100%.
    The cure is update to the latest Parallels.
    Regards,
    Captfred

  • "/System/Library/CoreServices/Installer.app/Contents/MacOS/Installer" help!

    On Mac OS X 10.6.2
    I can not use command "/System/Library/CoreServices/Installer.app/Contents/MacOS/Installer InstallMe.pkg" to install the pkg.
    It error as follow. The command can working on Tiger and Leopard.
    Message was edited by: Still Snow
    Message was edited by: Still Snow

    J-Ansons-Mac-mini:/ root# /System/Library/CoreServices/Installer.app/Contents/MacOS/Installer /player/AdbeRdr920en_USi386.pkg/
    2009-11-26 16:45:37.206 Installer[860:903] Error loading /player/AdbeRdr920en_USi386.pkg/Contents/Plugins/iNOSSO.bundle/Contents/MacOS/NOS Installer: dlopen(/player/AdbeRdr920en_USi386.pkg/Contents/Plugins/iNOSSO.bundle/Contents/MacOS/NOS Installer, 265): no suitable image found. Did find:
    /player/AdbeRdr920en_USi386.pkg/Contents/Plugins/iNOSSO.bundle/Contents/MacOS/NOS Installer: no matching architecture in universal wrapper
    2009-11-26 16:45:37.616 Installer[860:4207] PackageKit: * Missing bundle identifier: /Library/Receipts/Office2008enautomator.pkg
    2009-11-26 16:45:37.618 Installer[860:4207] PackageKit: * Missing bundle identifier: /Library/Receipts/Office2008en_automatorworkflow.pkg
    2009-11-26 16:45:37.619 Installer[860:4207] PackageKit: * Missing bundle identifier: /Library/Receipts/Office2008enautoupdate.pkg
    2009-11-26 16:45:37.621 Installer[860:4207] PackageKit: * Missing bundle identifier: /Library/Receipts/Office2008enclipart.pkg
    2009-11-26 16:45:37.623 Installer[860:4207] PackageKit: * Missing bundle identifier: /Library/Receipts/Office2008encore.pkg
    2009-11-26 16:45:37.624 Installer[860:4207] PackageKit: * Missing bundle identifier: /Library/Receipts/Office2008endock.pkg
    2009-11-26 16:45:37.626 Installer[860:4207] PackageKit: * Missing bundle identifier: /Library/Receipts/Office2008enentourage.pkg
    2009-11-26 16:45:37.627 Installer[860:4207] PackageKit: * Missing bundle identifier: /Library/Receipts/Office2008en_entourage_helpstd.pkg
    2009-11-26 16:45:37.629 Installer[860:4207] PackageKit: * Missing bundle identifier: /Library/Receipts/Office2008enequationeditor.pkg
    2009-11-26 16:45:37.631 Installer[860:4207] PackageKit: * Missing bundle identifier: /Library/Receipts/Office2008enerrorreporting.pkg
    2009-11-26 16:45:37.632 Installer[860:4207] PackageKit: * Missing bundle identifier: /Library/Receipts/Office2008enexcel.pkg
    2009-11-26 16:45:37.633 Installer[860:4207] PackageKit: * Missing bundle identifier: /Library/Receipts/Office2008en_excel_helpstd.pkg
    2009-11-26 16:45:37.635 Installer[860:4207] PackageKit: * Missing bundle identifier: /Library/Receipts/Office2008enfonts.pkg
    2009-11-26 16:45:37.637 Installer[860:4207] PackageKit: * Missing bundle identifier: /Library/Receipts/Office2008engraph.pkg
    2009-11-26 16:45:37.638 Installer[860:4207] PackageKit: * Missing bundle identifier: /Library/Receipts/Office2008enhelpviewer.pkg
    2009-11-26 16:45:37.640 Installer[860:4207] PackageKit: * Missing bundle identifier: /Library/Receipts/Office2008enlaunch.pkg
    2009-11-26 16:45:37.641 Installer[860:4207] PackageKit: * Missing bundle identifier: /Library/Receipts/Office2008enmessenger.pkg
    2009-11-26 16:45:37.643 Installer[860:4207] PackageKit: * Missing bundle identifier: /Library/Receipts/Office2008enooxml.pkg
    2009-11-26 16:45:37.644 Installer[860:4207] PackageKit: * Missing bundle identifier: /Library/Receipts/Office2008enorgchart.pkg
    2009-11-26 16:45:37.646 Installer[860:4207] PackageKit: * Missing bundle identifier: /Library/Receipts/Office2008enpowerpoint.pkg
    2009-11-26 16:45:37.647 Installer[860:4207] PackageKit: * Missing bundle identifier: /Library/Receipts/Office2008en_powerpoint_helpstd.pkg

  • Website has sent an untrusted certificate accept a...

    today when i opened the ovi maps as usual and then opened weather
    and as normal it asks me to go online to use the service
    any ways i tapped yes and proceeded but this time a new message appeared
    (website has sent an untrusted certificate accept any way?)
    with two options ( options and back)
    first i clicked options and i found three sub options
    1-accept only this time
    2- accept permenatly
    3- view certificate details
    so i clicked cancel
    so i didn't choose ony of the three and instead i pressed (back ) on the message it self
    i'm using  nokia E72-1 firmware 053.001     of 26 of nov. 2010
    was this some kind of a security threat attack that my compromise my security? (it only happened once and i tapped weather again and nothing happened)
    thanks...................................        plz reply                                                                
    Nokia E72-1 Black
    firmware : 053.001
    of 26 of nov 2010

    That message always jumps up in WinXP so I'd guess that Nokia has included it in the new FW. Repeats might reflect cookey-blocking. As I said, I am only guessing. Nokia??

  • Untrusted certificate!!!!!!help

    Eevry page that i want to open i recive this message "" Wesite has sent an untrusted certificate.Accept anyway ""
    when i accpet it i have only this two options !
    1" Accept this time only
    2 Certificate details

    Just accept this time only, it won't cause you a problem, you can't pick up a virus on your phone
    Good Luck
    If I have helped at all, a click on the White Star is always appreciated :
    you can also help others by marking 'accept as solution' 

  • Can anyone recommend a duplicate file finder application for OS10.6 systems?  All the apps I find on the App Store are only for 10.7 and later.  I don't know how to filter a search by operating system (if this is even possible).

    Can anyone recommend a duplicate file finder application for OS10.6 systems?  All the apps I find on the App Store are only for 10.7 and later.  I don't know how to filter a search on the App Store by operating system (if this is even possible).  I currently have a MacBook running OS10.6.8.   If you can recommend an app,  please post the URL.     Would appreciate any helpful suggestions....  
    <Email Edited By Host>

    Launch the Console application in any of the following ways:
    ☞ Enter the first few letters of its name into a Spotlight search. Select it in the results (it should be at the top.)
    ☞ In the Finder, select Go ▹ Utilities from the menu bar, or press the key combination shift-command-U. The application is in the folder that opens.
    ☞ Open LaunchPad. Click Utilities, then Console in the icon grid.
    Make sure the title of the Console window is All Messages. If it isn't, select All Messages from the SYSTEM LOG QUERIES menu on the left. If you don't see that menu, select
    View ▹ Show Log List
    from the menu bar.
    Click the Clear Display icon in the toolbar. Then try the action that you're having trouble with again. Select any messages that appear in the Console window. Copy them to the Clipboard by pressing the key combination command-C. Paste into a reply to this message by pressing command-V.
    When posting a log extract, be selective. In most cases, a few dozen lines are more than enough.
    Please do not indiscriminately dump thousands of lines from the log into this discussion.
    Important: Some private information, such as your name, may appear in the log. Anonymize before posting.

  • Re: Cant open system preferences or other apps

    I opened up my mac book pro and i cant open my system preferences or other apps like photo booth and iphoto etc....when i try open system preferences error message comes up with may be damaged or incomplete. Please Help!

    10.6.8 does not meet the system requirements for most (if not all) of the latest Creative Cloud applications.  You would have to upgrade your system to be able to work with them.  Here are a few links so that you can see for yourself for some of the more popular programs...
    Premiere Pro - http://helpx.adobe.com/premiere-pro/system-requirements.html
    After Effects - http://helpx.adobe.com/after-effects/system-requirements.html
    Photoshop - http://helpx.adobe.com/photoshop/system-requirements.html
    InDesign - http://helpx.adobe.com/indesign/system-requirements.html
    Flash - http://helpx.adobe.com/flash/system-requirements.html
    Illustrator - http://helpx.adobe.com/illustrator/system-requirements.html
    Dreamweaver - http://helpx.adobe.com/dreamweaver/system-requirements.html

  • System Prefs, Mail Prefs, App Prefs, etc, not saving in Lion?

    My System Prefs, Mail Prefs, App Prefs, etc, are not saving since I have upgraded to Lion? I have repaired permissions, reinstalled, the OS all to no avail!! Please help?

    i had the same problem, i fix the system prefs problem with this:
    chmod -RN ~/Library/Preferences
    but still having trouble with the mail prefs

Maybe you are looking for