Certificate device_cert_key.p12 is near expiration.....
Is there a way I can delete a self assigned local cert so It don't have to worry about it expiring? I had created it for testing purposes. When I tried to delete it using the common name "server.domain.com", it doesn't let me.
Certificate device_cert_key.p12 is near expiration. It is configured as machine cert in global settings
Issued To
Common Name:
server.domain.com
Email:
[email protected]
Organization:
Cisco Systems
Organization Unit:
WAAS
Locality:
San Jose
State:
California
Country:
US
Serial Number:
1279988218916
Issued By
Common Name:
server.domain.com
Email:
[email protected]
Organization:
Cisco Systems
Organization Unit:
WAAS
Locality:
San Jose
State:
California
Country:
US
Validity
Issued On:
Sat Jul 24 16:16:58 UTC 2010
Expires On:
Sun Jul 24 16:16:58 UTC 2011
Fingerprint
SHA1:
E3:04:2E:C0:6A:C4:7C:44:DB:56:C9:3F:51:D8:5F:C7:8E:BA:D1:DA
Base64:
4wQuwGrEfETbVsk/Udhfx4660do=
Key
Type:
SHA1WithRSAEncryption
Size (Bits):
1024
The factory self assign is not the one that has expired. It's the one that I've created for testing purposes. I figured out on how to delete it. Thanks for the info on the bug ID CSCte05426.
Alarm ID Module/Submodule Instance
1 cert_near_expiration sslao/SGS/gsetting cert_near_expiration
Jun 25 01:40:17.657 UTC, Processing Error Alarm, #000076, 26000:26005
Certificate device_cert_key.p12 is near expiration. It is configured as machine cert in global settings
crypto delete pkcs12 device_cert_key.p12
show crypto certificate-detail factory-self-signed
Bag Attributes
localKeyID: 2A 2A BA 01 B8 C0 17 8C 9B A9 7F 23 43 D8 66 DA 3C B3 02 07
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 29 (0x1d)
Signature Algorithm: sha1WithRSAEncryption
Issuer: C=US, ST=California, L=San Jose, OU=ADBU, O=Cisco Systems, CN=NO-HOSTNAME/emailAddress=[email protected]
Validity
Not Before: Jan 15 19:55:12 2009 GMT
Not After : Jan 14 19:55:12 2014 GMT
Similar Messages
-
WAAS 4.2.3 Cert near expiration warning.
I have 6 WAAS NME modules, all running 4.2.3, and all giving this Major warning:
"Certificate waas-self .p12 is near expiration. It is configured as a machine cert in global settings."
How does one go about fixing this warning and getting a new cert?Deleting the cert doesn't work:
BEL-NME-WAE-Edge#crypto delete pkcs12 _waas-self_.p12
Error: File does not exist
BEL-NME-WAE-Edge#
There doesn't seem to be a cert with that name. The only cert that shows up is the new one I just created called BEL.p12. I looked at the 'alerts' area on the WAAS manager GUI and there is a little more to the error alert:
Certigficate _waas-self_.-12 is near expiration. It is configured as a machine cert in global settings.
I don't know what global settings this is talking about, but here is the output of 'sh crypto certificates':
BEL-NME-WAE-Edge#sh crypt certificates
Certificate Only Store:
Managed Store:
File: BEL.p12 Format: PKCS12
EEC: Subject: C=US/ST=Washington/L=Seattle/O=Group Health/OU=IS/CN=www.ghc.org/emailAddress=[email protected]
Issuer: C=US/ST=Washington/L=Seattle/O=Group Health/OU=IS/CN=www.ghc.org/emailAddress=[email protected]
Local Store:
Machine Self signed Certificate
Format: PKCS12
Subject: C=US/ST=California/L=San Jose/OU=ADBU/O=Cisco Systems/CN=NO-HOSTNAME/emailAddress=[email protected]
Issuer: C=US/ST=California/L=San Jose/OU=ADBU/O=Cisco Systems/CN=NO-HOSTNAME/emailAddress=[email protected]
Management Service Certificate
Format: PKCS12
EEC:Subject: C=US/ST=California/L=San Jose/OU=ADBU/O=Cisco Systems/CN=NO-HOSTNAME/emailAddress=[email protected]
Issuer: C=US/ST=California/L=San Jose/OU=ADBU/O=Cisco Systems/CN=NO-HOSTNAME/emailAddress=[email protected]
The WAAS Self Signed Certificate is being used as the Management Service Certificate
BEL-NME-WAE-Edge#
Any other ideas? -
How to delete the alarm "Certificate is near expiration" on multiple WAEs using WAAS CM
Hi,
We are getting "Certificate is near expiration" alarm on more than 200 WAEs . Instead of deleting the expired certificates manually from each device,
how to delete this alarms/certificates on all the devices from WAAS CM ?
Please advice..
Regards,
Ameen.Ameen,
I believe there is script that you could use to address this issue on multiple devices at once.
Please open a TAC case so that TAC Engineer would assist with this.
For a single WAE, it is documented here.
https://supportforums.cisco.com/thread/2010020
Thanks
Anil -
The SSL certificate of the server is expired
Today, I accessed Beehive Online via Oracle Beehive Extentions for Explorer.
I cannot use Beehive Online with error message "The SSL certificate of the server is expired".
How should I do?We're looking into it, meanwhile you can use a Webdav connection.
Thanks,
Jereen -
Hi all,
well can i know that how i can grep the cert, public key and private key from the certificate name.p12.
I have imported the certificate in thunderbird, but the issue is i am unable to grep the public and private key out from the name.p12.
As i have to offer my friends with the name.crt so that they can decrypt the emails which i send to them .
i am using sun java messaging server.
regards
Adeeladeelarifbhatti wrote:
well can i know that how i can grep the cert, public key and private key from the certificate name.p12.
I have imported the certificate in thunderbird, but the issue is i am unable to grep the public and private key out from the name.p12.
As i have to offer my friends with the name.crt so that they can decrypt the emails which i send to them .You can extract the public key from a pkcs12 file by using OpenSSL as per the following web-site:
https://ca.cern.ch/ca/Help/?kbid=023010
Regards,
Shane. -
JWSDP 1.5: Certificates for XWS-Security samples expired April 9
The digitial certificates supplied with the XWS-Security samples in JWSDP 1.5 (e.g., JWSDP_HOME/xws-security/etc/client-truststore.jks) expired April 9, 2005. The XWSS sample programs now fail because the certificates are invalid. Are newer versions of the truststores available to replace the existing truststores, or do I need reinstall JWSDP to get newer certificates?
Thanks,
MikeI am having the same problem. I tried creating my own RSA keys with the same aliases, self signing them and putting them into the key/trust stores but still get errors. What procedure is there to replace them? Included below are my steps for dropping the certs and adding in new self signed ones, that I tried.
Josh
keytool -delete -keystore server-keystore.jks -alias s1as -storepass changeit
keytool -delete -keystore client-truststore.jks -alias s1as -storepass changeit
keytool -genkey -keyalg RSA -alias s1as -keystore server-keystore.jks -dname "cn=Client" -keypass changeit -storepass changeit
keytool -selfcert -alias s1as -keystore server-keystore.jks -keypass changeit -storepass changeit
keytool -export -keystore server-keystore.jks -alias s1as -storepass changeit -file s1as
keytool -import -alias s1as -keystore client-truststore.jks -storepass changeit -file s1as
keytool -delete -keystore client-keystore.jks -alias xws-security-client -storepass changeit
keytool -delete -keystore server-truststore.jks -alias xws-security-client -storepass changeit
keytool -genkey -keyalg RSA -alias xws-security-client -keystore client-keystore.jks -dname "cn=Client" -keypass changeit -storepass changeit
keytool -selfcert -alias xws-security-client -keystore client-keystore.jks -keypass changeit -storepass changeit
keytool -export -keystore client-keystore.jks -alias xws-security-client -storepass changeit -file xws-security-client
keytool -import -alias xws-security-client -keystore server-truststore.jks -storepass changeit -file xws-security-client -
I got a request to update Adobe Acrobat before I got onto the internet. When I queried the information it displayed a certificate that expired in July. I exited all. Did I do the correct and safe thing?
That does sound a bit suspicious.
To update Adobe Acrobat or Adobe Reader, I suggest using the Help menu inside your Adobe product and then "Check for Updates." This should reach out directly to Adobe and let you know whether you need an update.
I should note that if you use Mozilla's plugin checker website ([https://www.mozilla.org/plugincheck/]), it only considers Reader/Acrobat XI (11) to be up-to-date. If you prefer Reader/Acrobat X (10), you have to rely on Adobe's internal update checker instead of Mozilla's. -
Version 4.0.1 won't allow certificate exception when it's expired
SSL connection fails with "An error occurred during a connection to 24xx:xxxx::x:xx:443.
The certificate issuer's certificate has expired. Check your system date and time.
(Error code: sec_error_expired_issuer_certificate).
Previous versions of Firefox allows me to add an exception. This one doesn't. I get the same error with Get Certificate. I've deleted the previous certificate info and it won't reset on a new connection attempt. Is this a bug? I get in fine with IE.You're welcome
-
Missing $20 Certificate! Need ASAP. Expires 3/14/15
I am trying to check out and would like to use my $20 certificate that expires 3/14/15.
It says I currently have $0 in certificates.
I need to make this purchase ASAP and would like to use my certificate.Hello tonithetiger15,
Welcome to the Best Buy forum, and thank you for posting.
A certificate will not usually just vanish unless it has expired or perhaps already been redeemed. I looked over your My Best Buy™ account and can see that a $20 certificate was issued on 3/7/2014 with an expiration date of 3/14/2015, but it looks like the certificate has already been redeemed. That $20 certificate was applied to a BestBuy.com order back on 9/6/2014.
With that being said, please feel free to send me a private message if you would like some additional information about the BestBuy.com order in-question and I will see what I can do. You can send a private message by clicking on the blue button found within my signature.
I hope you have wonderful day!
Derek|Social Media Specialist | Best Buy® Corporate
Private Message -
Adobe's certificate used for security patch expired
I was advised to install a security patch for Acrobat XI Pro (11.0.07 --> 11.0.08). But when verifying Adobe's certificate of the downloaded file I realized that the signature has expired already. How can I trust in a security patch which hasn't got a valid signature? Did they hack Adobe's website?
No. Please see a detailed response here:
latest update reader installed today (8/13/14) 11.0.08 but certificate expired 7/25/14. Is it okay? -
Annual Line Rental nearly expired, so DD doubled.
I've just received my latest bill; the first thing it tells me is that BT is raising my DD from £32pm to £60.60. There are two reasons for this :
1. My annual line rental expires 19/2/13. Fine, I intend to renew it this weekend. However, I've been charged for line rental from 26/1 to 25/4 (with a credit from 26/1 to 19/2).
2. We've been paying about £15-20 per qtr for calls to our son's mobile. He's just had BT phone and internet installed this month, so they'll disappear.
My first reaction was to try to have the DD reduced, even if just to £40. Using 0800 443311, you go through a long series of options, the last two being "amend your DD" and finally "Increase your DD". No other option, no chance to speak to anyone.
So I then rang 0800 800 150. Alas, after finally getting through, we had difficulty understanding each other. However, it seemed to come down to :
a) The only way to decrease my DD is to pay off the £90 debit. I have no problem with that, except that I'd then be paying the £33 line rental.
b) If I renew my annual line rental, it seems I'll have the £33 credited - in my next bill.
Obviously, it would all work out, because the debit would disappear, including the line rental. The credit would then be applied against the total of the next bill (wouldn't it?).
Again, I'd have had no problems taking these steps, in either order, provided that I could have a revised bill sent to me fairly soon. Alas, I'd have to wait three months, until my next bill arrived, to ensure everything had gone through smoothly.
Does anyone with experience of these things have any advice on the best course of action?
Solved!
Go to Solution.I've now read a few earlier threads on this, and I think I've grasped the situation (which probably means I haven't).
I'm happy to renew my Annual Lline Saver (ALS), and move to monthly billing.
Presumably, to move to monthly billing, I'd have to pay off my credit balance, which includes £33 line rental. There's no mention of outstanding balances in the ALS T&C.
The situation I want to avoid is that of paying the £33 twice; once when I renew the ALS, and again when I pay off the credit balance.
While I'm sure any problems would be resolved eventually, I'd just like to avoid them if I can.
Does anyone who's made this move have any advice? I assume that everyone whose ALS termination date didn't coincide with their billing date would have the same problem. -
Is the 9i certificate update exams going to expire very soon
I know oracle 9i exam will expire very soon, but I do not want take the update exams right now. So, I am wondering, is the update exams (to 10g or 11g) also going to expire very soon?
thanksuser8117130 wrote:
I know oracle 9i exam will expire very soon, but I do not want take the update exams right now. So, I am wondering, is the update exams (to 10g or 11g) also going to expire very soon?
thanksNo. I woud not expect them to retire very soon.
I know oracle 9i exam will expire very soon, Do you have a credible source for this statement?
From my viewpoint:
1: Generally Oracle give 3 months notice of an exam retirement; though they have the right to reduce that notice or suspend the exam in special circumstances
2: [http://www.oracle.com/support/library/brochure/lifetime-support-technology.pdf] indicates extended support for 9i to Jul 2010. This is not directly linked to the exam, but previously certification exams have remained valid until up to or past that point.
3: There is still a demand for 9i certification, and retirement of the exam may be demand driven
4: 9i is stil being taught by the WDP programme.
5: There are a number of people part way studying for this certification, and the certification respect people's need to plan.
6: I am fairly sure (through my possibly faulty memory) a while ago the was an authorative to the effect statement there are no plans to retire 9i exams as present. (Plans will have changd with time though).
7: Currently the following page lists exam retirements: [http://education.oracle.com/pls/web_prod-plq-dad/db_pages.getpage?page_id=206]
So I'd expect 9i exams to be arround to Jul 2010 at least, with retirement beween then and 2012 at a guess.
but I do not want take the update exams right now. So, I am wondering, is the update exams (to 10g or 11g) also going to expire very soon?The upgrade exams typically remain unexpired with the version being upgraded to, for example 1z0-035 (cuirrently unexpired) allows upgrade from 7.3 DBA OCP to 9i OCP. -
All of a sudden I am getting the following message in my mail program. I have opted "to continue," as I don't really grasp the significance of all this. As far as I know I haven't done anything to cause this, though I did recently upgrade to 10.4.8.
I'm not very technically advanced so I need help in words of one syllable.
Thanks ~ Jane
"Mail was unable to verify the identity of this server, which has a certificate issued to "smtp.mac.com". The error was:
The certificate for this server has expired.
You might be connecting to a computer that is pretending to be "smtp.mac.com", and putting your confidential information at risk. Would you like to continue anyway?"
Mac OS X (10.1.x)The only help I can offer you is to confirm that I am also getting that error message starting today. I posted a more detailed description in the dotmac forum, but since I saw your message here, I decided to also post a reply here. I don't think this has to do with 10.4.8 but probably with some problem with Apple's smtp mail servers. Hope they can correct this problem soon.
-
How do you determine when certificates will expire?
I recently started at a company and my predecessor left no information on licenses and certificates. I need to determine when the certificates expire so I can be prepared to update them with limited downtime.
If we are talking about the application server SSL certs, then by opening the adminui with https in browser, click on lock icon (In Firefox, More Information -> View Certificate ) as below :
Check out Expires on field.
Hope this helps.
Thanks,
Wasil -
Preorderin​g game with reward certificat​e set to expire
Hello,
Thanks for all the help with the other questions so far. I have a reward certificate that is set to expire. Am I allowed to apply that certificate to a pre-order even though the game releases after the certificate expires?
Thank youHey again Kyle5575,
Good question! When placing an order on BestBuy.com, funds aren't normally collected until the requested items have been shipped or picked up at one of our U.S. retail stores. Any portion of the order total paid for using gift cards or reward certificates, however, is collected when the order is submitted. These payment types do not follow the same authorization process as traditional debit or credit cards and are instantly redeemed when used.
In other words: no need to worry! Your certificate will be automatically applied to your order as soon as it's been placed.
Let me know if you have any other questions.
Aaron|Social Media Specialist | Best Buy® Corporate
Private Message
Maybe you are looking for
-
I have the macbook pro early 2011 15inch. i7 processor, 500gb hard drive, and 4gb ram and have Moutain lion installed. The computer takes a good minute to boot to the login screen and then probably another 30 - 45 seconds to actually login and be abl
-
Time Machine doesn't recognize my external hard drive
My external hard drive is no longer recognized by my iMac. I have had this problem before and had to repartition the drive. There is not a drive that is available when I go into Time Machine preferences. Any ideas?
-
What can I do yo?
-
Table compatibility mode nw04plus and dependent OVS-es in the row
Hello, I have a following problem. Lets say I have a table, whose compatibility mode is set to nw04plus, so the user can input values in the table cells without changing lead selection. Lets assume that this table has three columns: colA, colB, colC.
-
ITunes shuts down randomly after 3.2.1 update
Among other problems after updating to 3.2.1 yesterday, now my iTunes keeps shutting itself down. It will show a "Updating Library--this may take a few minutes" message and then will shut down. Sometimes it will let me play a few songs and then shut