.key.pem file missing from /etc/certificates

Hi all
I purchased an authority certificate from one of the big names.
It's a wildcard cert for mail.domain, ical.domain etc that I want to setup.
I've downloaded the cert from the provider and imported it into Keychain via Server Admin. That side all looks great but the cert will not work with any services. They just hang.
Server log reports that cert.domain.verylongnumber.key.pem is missing from /etc/certificates.
I had a look and indeed it's not there.
.cert.pem and .chain.pem and .concat.pem are all present and correct. So where is .key.pem
Thing is, I was using a self signed cert before and that does have a .key.pem file in /etc/certificates and that works fine....
Cheers
Ryan

Solved.
Turns out that the Certificate supplier (Globalsign in my case) don't supply the private key in the right format for OS X Server to understand - which is probably standard practice.
10.6 Server requires the key in .pem format - mine was supplied as .pkcs12 (.pfx/.p12)
You need to use openssl in Terminal to convert it to .pem as follows
openssl pkcs12 -in mykey.pfx -out mykey.pem -nodes
Then it can be dropped into Certificate Manager in Server Admin

Similar Messages

  • Missing files from /etc/certificates

    Hi, I have a certificate in my keychain for which I miss the .cert.pem, chain.pem, concat.pem and key.pem files in /etc/certificates.
    This results in a problem in server.app as I can't configure all my web-sites correctly and server.app won't write out the correct config files.
    Any idea how I can create the four files?

    So, I solve this issue and one more. I really can't believe nor understand why Apple is unable to create a server.app that can handle the simpelst things. What trainees are working on it?
    You need two fixes:
    1. http://support.apple.com/kb/TS4539 (OS X Server: Saving a certificate identity to the system keychain does not work with Server services)
    The importan part is, that you need (!!) to reboot your machine. Only than the files are generated. I don't understand what's so hard to generate them right when adding the certificate but that's an other story.
    If you than try to use your now finally available certificate, you are hit by this problem:
    2. https://discussions.apple.com/thread/4266473?start=0&tstart=0 (Strange issue with Dovecot (err 89))
    And yes, that's because server.app comments out the SSL stuff in the dovecot config. Which of course makes a lot of sense if you want to use SSL. The bad sideeffect is, that dovecot won't startup with this wrong config.
    Enough hours lost by this Apple botch...

  • Where can I get help re: a file missing from Pages in iCloud?

    Where can I get help re: a file missing from Pages in iCloud?

    If the file was also on a mac, then there was a local copy of the file in ~/Library/Mobile Documents.  If you use Time Machine or any other backup program on your computer, then try restoring the file(s).  Similarly the same thing would be done on a PC, but I'm not sure where the icloud local copies are kept.

  • [svn:fx-trunk] 10506: New TLF file missing from svn 10505.

    Revision: 10506
    Author:   [email protected]
    Date:     2009-09-22 10:43:46 -0700 (Tue, 22 Sep 2009)
    Log Message:
    New TLF file missing from svn 10505.
    Added Paths:
        flex/sdk/trunk/frameworks/projects/textLayout/textLayout_edit/src/flashx/textLayout/opera tions/CopyOperation.as

    Revision: 10506
    Author:   [email protected]
    Date:     2009-09-22 10:43:46 -0700 (Tue, 22 Sep 2009)
    Log Message:
    New TLF file missing from svn 10505.
    Added Paths:
        flex/sdk/trunk/frameworks/projects/textLayout/textLayout_edit/src/flashx/textLayout/opera tions/CopyOperation.as

  • [svn:osmf:] 14905: Adding file missing from previous commit.

    Revision: 14905
    Revision: 14905
    Author:   [email protected]
    Date:     2010-03-22 05:37:59 -0700 (Mon, 22 Mar 2010)
    Log Message:
    Adding file missing from previous commit.
    Added Paths:
        osmf/trunk/apps/samples/framework/OSMFPlayer/src/assets/fonts/
        osmf/trunk/apps/samples/framework/OSMFPlayer/src/assets/fonts/Standard0755.swf
        osmf/trunk/apps/samples/framework/OSMFPlayer/src/assets/fonts/readme.txt

    If you're confident that the DP contains the new file, try deleting the deployment and re-doing it (not the deployment type - just the deployment to your test collection).
    Gerry Hampson | Blog:
    www.gerryhampsoncm.blogspot.ie | LinkedIn:
    Gerry Hampson | Twitter:
    @gerryhampson

  • [svn:osmf:] 14904: Adding file missing from previous commit.

    Revision: 14904
    Revision: 14904
    Author:   [email protected]
    Date:     2010-03-22 05:32:49 -0700 (Mon, 22 Mar 2010)
    Log Message:
    Adding file missing from previous commit.
    Added Paths:
        osmf/trunk/libs/ChromeLibrary/org/osmf/chrome/hint/
        osmf/trunk/libs/ChromeLibrary/org/osmf/chrome/hint/Hint.as

    If you're confident that the DP contains the new file, try deleting the deployment and re-doing it (not the deployment type - just the deployment to your test collection).
    Gerry Hampson | Blog:
    www.gerryhampsoncm.blogspot.ie | LinkedIn:
    Gerry Hampson | Twitter:
    @gerryhampson

  • [svn:osmf:] 10540: Adding file missing from previous commit.

    Revision: 10540
    Author:   [email protected]
    Date:     2009-09-23 11:39:41 -0700 (Wed, 23 Sep 2009)
    Log Message:
    Adding file missing from previous commit.
    Added Paths:
        osmf/trunk/framework/MediaFrameworkFlexTest/org/openvideoplayer/gateways/TestHTMLGateway. as

    If you're confident that the DP contains the new file, try deleting the deployment and re-doing it (not the deployment type - just the deployment to your test collection).
    Gerry Hampson | Blog:
    www.gerryhampsoncm.blogspot.ie | LinkedIn:
    Gerry Hampson | Twitter:
    @gerryhampson

  • UCM 11g File missing from search result although file is accessable

    When I do search without any criteria in UCM 11g, some files missing from search result although I know the files were checked into UCM already since I'm able to see these files using url similar to:
    http://ucm/cs/idcplg?idcService=GET_FILE&dID=12345
    or use following url to get document information:
    http://ucm/cs/idcplg?idcService=DOC_INFO&dID=12345
    the file is not in the search resule even search by ID.
    also, the seach result say "displaying 1-20" but only display few files (e.g. 2 files, less than 20)
    Is this a known problem? the same search was working in UCM 10 perfectly.
    Thanks

    The query seems able to retrieve the missing document. for example, I search by content ID, in the audit log (eanbled as you mentioned) give th efollowing information:
    fusionappsattachments/6     09.13 06:22:03.878     IdcServer-3474     --- @ResultSet SearchResults ---
    fusionappsattachments/6     09.13 06:22:03.878     IdcServer-3474     numFields=66,*numRows=1*,currentRow=0
    also, the infomation following above give the deteail field information which match with the missing document.
    I looks like UCM just did not bring it to UI as part of search result.
    This seems match with my another finding as I mentioned earlier: the seach result say "displaying 1-20" but only display few files (e.g. 2 files, less than 20)
    it seems query did find the documents but UI did not show it.
    Not sure if this is a known bug.

  • [svn:osmf:] 13186: Adding files missing from previous commit.

    Revision: 13186
    Revision: 13186
    Author:   [email protected]
    Date:     2009-12-23 05:26:07 -0800 (Wed, 23 Dec 2009)
    Log Message:
    Adding files missing from previous commit.
    Added Paths:
        osmf/trunk/libs/ChromeLibrary/assets/images/qualityAuto_disabled.png
        osmf/trunk/libs/ChromeLibrary/assets/images/qualityAuto_down.png
        osmf/trunk/libs/ChromeLibrary/assets/images/qualityAuto_up.png
        osmf/trunk/libs/ChromeLibrary/assets/images/qualityManual_disabled.png
        osmf/trunk/libs/ChromeLibrary/assets/images/qualityManual_down.png
        osmf/trunk/libs/ChromeLibrary/assets/images/qualityManual_up.png

    I just checked my original file and it is 30fps...
    Also other clips from the same camera were correctly finalized, just this one clip "disappeared".
    Any ideas anyone?
    Thanks.

  • Files missing from install directory

    not sure what's happened to my computer but I can no longer install programs or updates for programs as I get the message "files missing from install directory"
    How did they get corrupt in the first place? I get this when trying to download yahoo messenger of all programs...duh!  I'm getting pretty frustrated since this has only started a month ago and I've been hoping something would fix itself but no....the last time my Toshiba service station updated was Jan 24 and now it says unable to connect with server....yet I got here to post a message and can get to the internet so don't understand why the updates can get in?
    any advice?

    that can be a problem with your windows.. your OS..
    rebuilding your OS should be able to fix it.
    oOo
    *Read EULA before installing any software.

  • Audio file missing from MOV when exported as a quicktime movie.

    Using Keynote 9, I imported video into presentation that was edited in iMovie 9.  When I export the presentation to quicktime movie the audio is missing from the video file.  The audio file plays fine in the standard keynote presentation mode. 

    This is STRICTLY a work around!  Official fix will come from Apple as an update more than likely.
    Duplicate item first (File > Duplicate). On newly duplicated project change file association type (File > get info). Under name and extension section take out .key). Close Get Info and save with removing .key.  Double click to open the file (now a compression).  Open uncompressed folder (same name as original file, now shows as a folder).  Now in the Data folder find a .mov file named "Recording" with randomly generated letters and numbers behind it.  Drag .mov file to desktop or any other directory. Open extracted .mov file with QuickTime to verify integrity. Save as audio file only.  Get Info on file again and place .key value at end of file/extension for project. Open project. Under Play menu option delete the recording.   Under Audio inspector drag the .mov of audio only to recording back in. Test play project to see if its accurate.  Export to QuickTime and see if issue is resolved.
    If issue persists:
    Export with corrupted audio as QuickTime.  Separate the audio from video track.  Delete audio.  Import the extracted .mov audio file.  Share > File. Enjoy.

  • 1 song file missing from my library. Sync & recovery questions.

    I found 1 song missing from my iTunes library. File recovery software doesn't find it. It's still on the iPod.
    If I do a sync, will I loose it from the iPod too? It's still present in my iTunes song list, but shows up as not found.
    After I've done a sync IIRC I can put the iPod into hard-drive mode. Will that let me copy the song to my PC?
    Since it's only for a $.99 song, I'd gladly use a free 3rd party application, but only want to buy software for this sort of thing if I have a bigger need.

    I've never had the need to do it myself but, from what I've heard, the aggravation is worth more than 99 cents. However,
    *Courtesy of PT...*
    Copying from iPod to Computer threads...
    http://discussions.apple.com/thread.jspa?messageID=5044027&#5044027
    http://discussions.apple.com/thread.jspa?threadID=893334&tstart=0
    http://discussions.apple.com/thread.jspa?messageID=797432&#797432
    Also these useful internet articles...
    http://www.engadget.com/2004/11/02/how-to-get-music-off-your-ipod/
    http://playlistmag.com/secrets/2006/12/twowaystreet20/index.php
    http://playlistmag.com/help/2005/01/2waystreet/

  • Class file missing from war file deployment

    I have a web application that is being deployed to a war file. I have deployed several times successfully. Then with the latest changes, there is a class file that does not get included into the war file. It does get compiled and does exist in the project directory.
    The class file is in a seperate project from the project where the war file deployment profile is; however both projects are in the same workspace.
    There are several other classes in the project that contains the missing class file that does get included in the war file. I don't see anywhere in the profile where these files are selected individually.
    I'm at a loss as to how to fix this problem other than add the file after deployment.
    Appreciate any help or ideas...
    Keith...

    Hi Keith,
    You may want to follow this thread....
    class object missing from ear file
    Brigette

  • Files missing from library after archive and install

    Hi forum folk
    any help you could give would be much appreciated.
    I can't seem to verify my permissions on HD. I have run disk utility both from finder and from my OSX startup disk and consistently get the error message "Disk Utility has lost its connection with the Disk Management Tool and cannot continue." I then reinstalled the operating system all together making sure to archive and install as well as archive previous network and preference settings. This means I am running 10.3.4 at the moment (and I can't verify any of the software updates at the moment). After reinstalling I still cannot verify my permissions, so now I am trying to back up all my files so that I can reinstall the OSX again, erase everything, and start from scratch. But I'm running into some very strange problems while doing this. select files are missing from ~/library. there is no Safari file, for example. I tried looking in HD/previous systems/library where my library files were saved before I reinstalled the operating system but there is no such folder in there either. this means all of my bookmarks are gone. additionally, under library/preferences (in both the old and new library folders) there is no file named com.apple.itunes.plst. so all of my itunes playlists are gone as well. these are the only missing files I have found thus far and i can't explain why they selectively would not have been saved after the archive and install. Everything else seems to be intact. Any ideas?
    thanks
    jb
    powerbookG4   Mac OS X (10.3.9)   running 10.3.4 at the moment - can't verify permissions on 10.3.9

    jbeep:
    my HD has a capacity of 8.85 GB available. When I reinstalled panther I had little more than 3 GB available (I deleted a bunch of unneeded things since then)
    Thanks for this update. What is the total formatted capacity of your HDD? I ask because I suspected that you might be cutting it pretty close. The rule of thumb is that you should have 10-15% of your total capacity available as free space. My personal rule is 15%-20%. This allows for more efficient perfomrance of OS X.
    I am in the process of backing up everything on my seagate combo USB 2.0/firewire 200 GB external (I am using the firewire cord)
    Having an up-to-date backup is one of the primary rules, often observed more in the breach than not. Since you have an HDD that supports Firewire, I suggest that you make a bootable clone of your entire HDD using SuperDuper. You can then use this backup as an emergency boot drive. However, it must be Firewire, as PPC Macs don't boot from USB devices.
    I also have heard that it is advisable to reinstall the OS "every now and again" and I hadn't done this for at least two years. was I ill-advised?
    Most experienced Mac users never re-install, except under dire circumstances. Since installing my new HDD in this computer I have never re-installed. Re-installation is the utlimate intrusive measure, and it exposes one to all kinds of issues, from lost data, to flawed installaton, to installations that fail midstream. Re-installation is not an effective maintenace procedure. Here are some helpful links in terms of maintenance:
    Mac OS X 10.3/10.4: System maintenance
    Macintosh OS X Routine Maintenance
    Maintaining OS X.
    I'm going to restart now and try and verify my permissions again using the procedure on the above link. I'll let you know what happens.
    Instead of verifying permissions, just go ahead and Repair Disk Permissions. Verifying permissions does nothing, and wastes your time, as it is difficult to tell whether you need to repair, and you have to repair anyway.
    Do post back with an update of your progress and any further questions or comments.
    Good luck.
    cornelius
    Message was edited by: cornelius

  • Name of .crl and .crt file missing from HTTP URL in certificate details

    Hello Everyone,
    I am in the process of building a 2-tier Windows Server 2012 R2 PKI. The CA name of both the offline standalone root CA and enterprise subordinate CA have spaces in it (we'll call the CA name, 'Test Lab Root CA' for point of reference).
    When I submitted the certificate request for the subordinate CA to the root CA and viewed the attributes/extensions of the pending request, I noticed the HTTP URL is missing the name of the .crt and .crl file.
    The AIA extension reads URL=http://test.domainname.com/pki/.crt
    in the issued certificate details.
    The CDP extension reads URL=http://test.domainname.com/pki/.crl
    in the issued certificate details.
    The AIA and CDP location HTTP URLs are configured as http://test.domainname.com/pki/<CertificateName>.crt and  http://test.domainname.com/pki/<CRLNameSuffix><DeltaCRLAllowed>.crl, respectively on the
    root CA. 
    The LDAP URL shows the .crt and .crl file name (with %20 replacing the spaces) perfectly fine. The LDAP URL is configured using variables as well. It's just the HTTP URL that is missing the name of the file altogether. 
    I have read about the issue where spaces are not being replaced with %20 in the URL on Windows Server 2012 and a hotfix is available for that issue. But this issue seems to be slightly different and I'm running Windows Server 2012 R2. I tried installing
    the hotfix to see if it would help, but the hotfix can't install because it doesn't apply to Server 2012 R2.
    I've been trying to find a technet discussion or blog article for a week to see if anyone has seen this and what the fix is, but I'm coming up empty. I only find talks about %20 not replacing the space in the name.
    Does anyone have any insight to my particular issue? I don't want to issue the subordinate CA certificate until I know the HTTP URL populates the CRL and CRT file name correctly. I can get around this by typing out the name of the file (with spaces and not
    %20... e.g. http://test.domainname.com/pki/Test Lab Root CA.crl) in the URL via the registry and the URL displays the name of the file (with %20 in the name) when I do another certificate request and check the attributes/extensions in the
    pending request. However, I prefer to avoid manually typing out the name of the file in the registry. I'd like to use the variables if at all possible. 
    Any help/guidance would be greatly appreciated.
    Thank you.

    On Fri, 27 Mar 2015 03:42:28 +0000, Brian Komar [MVP] wrote:
    You have totally messed up the URLs.
    If you run certutil -getreg ca\CRLPublicationURLs and certutil -getreg ca\CACertPublicationURLs, you will see that you do not have correct use of variables when compared to the settings that follow:
    The URLs should be set to the following for an offline CA:
    certutil -setreg CA\CRLPublicationURLs "1:%WINDIR%\system32\CertSrv\CertEnroll\%%3%%8%%9.crl\n2:http://test.domainname.com/pki/%%3%%8%%9.crl"
    *certutil -setreg CA\CACertPublicationURLs  "1:%WINDIR%\system32\CertSrv\CertEnroll\%%1_%%3%%4.crt\n2:http://*test.domainname.com*/pki/%%1_%%3%%4.crt"*
    For an issuing CA, they should be set to:
    The URLs should be set to the following for an offline CA:*certutil -setreg CA\CRLPublicationURLs "65:%WINDIR%\system32\CertSrv\CertEnroll\%%3%%8%%9.crl\n6:http://test.domainname.com/pki/%%3%%8%%9.crl"*
    *certutil -setreg CA\CACertPublicationURLs  "1:%WINDIR%\system32\CertSrv\CertEnroll\%%1_%%3%%4.crt\n2:http://**test.domainname.com**/pki/%%1_%%3%%4.crt"*
    Just a clarification here, if you're running the above certutil commands at
    the command prompt you only need single % characters in the command line.
    The double % characters are only required if the commands are being run in
    a batch file.
    Paul Adare - FIM CM MVP

Maybe you are looking for

  • What is the Best Safari Version for OS 10.9.5 Maverick on a MacBookPro, 2.4Ghz, 8 GB Mem.?

    What is the best Safari Version for OS 19.9.5 Maverick on a MacBook Pro. 2.4 Ghz, with 8 gb memory?

  • Interactive PDFs won't scale in Acrobat Reader

    Once I create an interactive PDF using InDesign CS5 and view it in Acrobat Reader 10, the functionality works fine but when I scale the page size in Acrobat Reader from 100% to larger or smaller, the interactive elements stay at 100% and are cropped

  • [SOLVED] (hopefully) USB Hard drive disconnects

    I have a 2TB SATA drive which I used in a stationary computer (as a server). The drive is encrypted using LUKS and for a filesystem I use xfs. Unfortunately that computer died, so I figured I'd migrate everything over to a laptop instead. I put the 2

  • ABAP Program Question

    Hi. I have made a small program to read material nr. and extrapolate data from MARA-MSTAE into T141-MMSTA when certain conditions are met. My problem is that I am not able to see material nr., it starts off with material '1000' but then the material

  • LR5 Can't read my files and import!

    I just got a new macbook pro. I installed creative cloud and LR5. Yesterday, I could import photos. Today, I could import them onto my external hard drive but not onto my internal HD. It just keeps saying files cannot be read. Please help! I've resta