Keychain & certificates

How do I stop mail from asking for a keychain password all the time? can it be switched off? Also I have three certificates that come up with a red x and "This root certificate is not trusted" could some one please explain this to me.
Thanks

Launch Keychain Access->login.keychain->find the one for your email, delete it, and quit KA. Launch Mail and put in username and password combo and save it to the keychain. That should fix that issue.
Click on the Desktop->Help->Mac Help->search for certificate and be overwhelmed.

Similar Messages

  • I opened a file on my desktop that I don't remember putting there.  It turned out to be a keychain certificate from a client of ours.  Does this mean that they were spying on me?  What is the deal with that?  Any ideas?

    I opened a file on my desktop that I don't remember putting there. We use many photos and I thought it was a photo file I was looking for. It turned out to be a keychain certificate from a client of ours.  Does this mean that they were spying on me?  What is the deal with that?  Any ideas?

    Interesting tid bit.  I created an AAC of the original file, deleted the original MP3 from my library and also deleted the Clean matched track from the icloud.
    Result is that it matched with the explicit version of Mrs. Officer this time.
    What I am curious about is which songs this is happening for. I've went thru a few batched of about 500 songs at a time and redownloaded in 256k for many tracks. Sadly we don't have people to bring this to our attention and I have so much music that it's impossible to go thru every song to make sure I am getting the right version.

  • Keychain Certificate Assistant User interaction is not allowed

    Hi Guys,
    I have a problem with my keychain certificate assistant and require your help with it.
    hope to have someone who have the same plight as me.
    I am trying to use the certificate assistant to request an certificate from CA.
    However i encount this error.
    USer interaction is not allowed
    I tried to sent to email and failed too witht the same error.
    I have also try to repair via firstaid and all are fine.
    Also tried to unlock my keychain but nope still can't
    Any help?

    Try running a permissions fix routine on your hard drive using Disk Utility, and then try resetting your home folder permissions by booting to the Lion recovery HD partition (reboot with Command-R held down) and then opening the Terminal (in the Utilities menu) and running the command "resetpassword," which will launch a small password and permissions reset tool. In this tool, select your account and then click the button to reset home folder permissions and ACLs.
    After this is done, reboot normally and try creating the certificate again.

  • Preferences and Keychain certificate problems

    I was having a problems with the directory paths on my computer. So I had some IT guy come in and work on my computer at work. Anyway, whatever he did he wiped out all my keychains and preferences. Now I can't save any preferences. I have made sure that they're unlocked, but not matter what I do I can't save any preferences. Desktop, dock, nothing. Also, the keychain certificates are not messed up. When I launch Safari I get the keychain certificate not found. So, I can't save bookmarks or add anything to my bookmarks bar.
    How do I fix this problem?

    To start with you can run Disk Utility and repair permissions.  This may not take care of them all but at least some major preference settings should be adjusted correctly.

  • Reinstall deleted Keychain Certificates

    Hello. I thought it would extremely wise to go ahead and delete all of the x.509 certificates in Keychain. I had a great time doing it and look forward to doing it again someday!
    Okay. Actually I won't do it again. I don't want to discuss it. What I would like to discuss is how do I go about getting the certificates back in there. Is there something on the Tiger install disk? I didn't see any way to just install certificates or just install Keychain.
    My Mac experience is now very annoying without my Keychain certificates. I wish they were back in my Keychain now. I miss them.
    Looking forward to some professional help.
    G
    iMac G5   Mac OS X (10.4.8)  

    kofi567 wrote:
    What I suggest is to ask someone you know to copy the app Keychain Access and send it to you via e-mail
    that's not allowed both by the leopard ULA and by the forum rules.
    to the original poster. open the install disk using Pacifist and enter "Keychain Access" in the Pacifist search window. it will find it for you on the install disk.

  • Signing app with keychain certificate

    I know a CA that issues free certificates on a Mac with
    keychain. I had sent a request for a signed certificate and have
    received it by mail. This is because I don't want to use a
    self-signed cert.
    The file name is certificate.pem
    How do I use this certificate to sign my AIR app ?

    Got the solution:
    -alias AIRcert -storetype KeychainStore -providerName Apple

  • I deleted all my Keychain Certificates

    Must have been during a rabid senior moment. Now I get all these untrusted certificate messages in email and Safari, and they are going into Keychain. However as best as I can tell, I need to obtain a Root Certificate from the Certificate Authority (CA) or the Issuer who appears to be VeriSign. Evidently one can spot the Root Certificate because they have nice golden borders vice the plain blue borders, and they are supposed to live in the X509Anchors. This is what I THINK that I understand. However, when I tried an online chat with a VeriSign rep. it rapidly went down hill and he talked about thousands of certificates and CAs etc. I did mention that to date every certificate that I have seen appears to have been issued by them; _VeriSign Class 3 Public Primary Certification Authority - G5.cer_
    I did get an email address and have tried the Keychain Access Certificate Assistant - Request a certificate from an existing CA. I am waiting to see what that will result in.
    However, I am curious to see if there are others out there who have experienced this and if they have gotten a real fix.
    Thanks,
    DN

    Hi DN, I've seen this a few times, the cure is to restore from a backup, copy from another machine, do an Archive & install, or try these...
    http://web.fastermac.net/~bdaqua/X509Anchors.zip
    http://web.fastermac.net/~bdaqua/X509Certificates.zip

  • FIXED! How I fixed Mail not remembering passwords, keychains, certificates

    As noted in this lengthy thread, hundreds of users who upgraded to Leopard were experiencing their email accounts not remembering their passwords in Mail. Since the upgrade to Leo, I was seeing this, too. Every hour or so, I'd need to reenter all the passwords to all 8 emails that I had. I also was seeing odd keychain behavior with Safari. I'd need to re-enter passwords and certificates over and over again.
    From reading the above thread, a couple posters had come up with a fix. I modified it slightly, and for the past 3 days, everything has worked perfectly. Note that I'm no geek, don't really get why it worked, and basically attacked this like a man with a shotgun shooting a mouse. So what I did may break your system or cause you to die from cancer. But here's the steps I did that eliminated the problem
    1. I quit Mail & Safari.
    2. I opened up Keychain Access (in Utilities) and deleted everything I possibly could. I initially tried to just delete Mail and Safari-related stuff, but that didn't work, so I deleted everything the system allowed me to delete.
    3. I ran Keychain First Aid (Menu: Keychain Access). I re-ran it about 4 times until it couldn't repair anything further (there was a dozen things it said it couldn't change, but there you go).
    4. I then hooked up a second Mac, via Firewire, that had recently had a clean install of Leopard on it. I dragged the Mail app file over into the applications folder had it replace the existing Mail app.
    5. I did the same with Safari, replacing the existing Safari app file.
    (NOTE: I hear you can do essentially the same thing for steps 4 and 5, using your original Leopard install discs and a program called Pacifist, but that was more techie than I felt comfortable with. But I hear it does the same thing as copying over clean virgin copies of Mail and Safari, as I did in steps 4 and 5)
    6. I then repaired permissions (via the Disk Utility in Utilities). I think this step is a little like smudging with sage, or chanting, but in fact both the new Safari and the Mail app needed thousands of repairs, so perhaps this wasn't as voodoo as suspected.
    7. I then restarted the Mac. Upon opening up Mail, I did, of course, need to re-enter all of the passwords again. But that was it. That was 3 days ago, and I've been groovy ever since. I've restarted the apps, and restarted the Mac numerous times. So far, all passwords and keychains and certificates have remained solid.
    So there you go. How I Fixed a Hair-Pulling Glitch in my Otherwise Nice Leopard System.
    Scott
    http://www.braintoniq.com

    Did you copy both key3.db and signons.sqlite to the profile folder?
    You can use this button to go to the Firefox profile folder:
    *Help > Troubleshooting Information > Profile Directory: Open Containing Folder
    It is possible that there is a problem with the files key3.db and signons.sqlite that store the encrypted names and passwords in Firefox.<br />
    Rename the files key3.db and signons.sqlite in the Firefox profile folder.<br />
    You can add .old to the file names (key3.db.old and signons.sqlite.old) or move them to another folder to make it possible to undo the action.<br />
    You need to set a new Master Password after renaming or deleting key3.db and all currently saved passwords are lost.<br />
    If that has worked then you can remove the renamed files that are no longer needed.<br />
    * "Troubleshooting" in http://kb.mozillazine.org/Password_Manager

  • Root keychain certificates

    Hi, i've run into a little problem where my root certificates have gone missing from /System/Library/Keychains. Found this out by doing the Keychain First Aid which can't repair it.
    Found an article on it here: http://discussions.apple.com/thread.jspa?threadID=1889818
    I've asked other ppl I know with Mac's to send me their folder but they have older versions of Mac OS X, so they don't have those files.
    I also can't find the restore CD's...
    So i'm falling back on asking does anyone have these files available that I can use?
    Thanks in advance...

    Never mind, went to an apple store and copied the files off a display model. All working now!

  • Keychain/certificates problem

    This question pertains to my husband's G4, running OSX 10.4.6-
    In a separate user folder ( not admin. acct.) I was attempting to set up,
    I wanted to completely clean out Keychain...and deleted (stupidly) the certificates in the X509 Anchors of Keychain (I may have logged into admin. acct. to do so).
    Now, I can't login to .Mac, and keep getting a warning about untrusted sites. What is the best way to fix this?
    iBook G3 12   Mac OS X (10.2.x)  

    We called Applecare support.....and after many attempts to resolve.....we resorted to a clean install.

  • Keychain Assistant: A possible Keychain Lockup?

    Hello, Community.
    After some time of using Keychains, Certificates and relevant materials, I have come across a problem, which only just struck me. I tried to fix it myself, before I posted, and will continue to do so. A search through the internet did not resolve anything, so far.
    The issue: I cannot unlock my Keychain anymore. Why, is unknown. I discovered this by trying to send an e-mail, using a profile I have used frequently.
    My attempts: I tried to create a different Keychain a few times over (using the same and different names alike) and a scan through my Keychain First Aid did not resolve anything, either.
    Keychain First Aid report: (the problem resides in ManthaDesigns.keychain)
    Verification started
    Checking keychain configuration for root (user ID=0)
    Home directory is /var/root
    Checked login keychain
    Checked default keychain
    Checked keychain search list
    Checked contents of ~/Library/Keychains/login.keychain
    Checked contents of /Library/Keychains/ManthaDesigns.keychain
    No problems found
    Verification completed
    Background profile: I use my System Administrator User profile (root) for management and arrangement of Keychains and Certificates, which are then distributed in my industrial appliances (User profiles, other computers' User profiles, pass cards, keys, etc.) via various ways.
    Is it necessary to contact Apple Support for this issue, or can it be resolved using any other methods? I will be needing the Keychain by dawn, as our industry will then open again.
    Thank you for your time.
    Kashidom Nenakh
    Mantha Designs incorporated
    http://www.manthadesigns.net
    [email protected]

    Thank you for your elaborate reply.
    The issue has only been partially solved, but they are two different problems, related to the same issue. For those who did not see the other thread, I quote:
    "Now, I am facing a new problem: I wish to add a new Certificate to the Keychain, but whenever I try, it tells me the item exists, and does not add it to the Keychain. It adds the keys perfectly fine, both public and private, but not the Certificate.
    What can I do to have multiple Certificates, signed by the same CA.
    I cannot add them to my Keychain, so that will be of no help. And I have tried to create every Certificate anew in the same Keychain, but this will not work, either. I created they Certificates and exported them before I went on to the next and they are now on my desktop. This is very inconvenient, as the keychain is distributed over a network as a shared Keychain and resides in a Snow Leopard Server (Domestic version, not Snow Leopard Server). Our business is one day behind, but since it is now weekend, I hope to get this issue resolved by Monday morning, send out the e-mails we should have and update our register with sales.
    Could I please have some advice?
    Also, if this topic is handled in full in another thread, please post the links, so I can read up on this topic and try to find a solution." (end of quote)
    Also, I do not own any backups of any data, since the hard drive ceased to work a few months ago and we are working up for a RAID system.
    As I read the links in your reply, I note:
    #1: This document did not resolve anything, the Certificates are not added to the list.
    #2: This document provided me with every bit of information I already know about the Keychain Access application and its works.
    #3: This document was rather interesting, though we do not use Secure Notes. It is logical that the identifier does not update, as this is meant to be an easily trackable identifier for that Note. Though, when adding Notes, one would think the identifier and name are separate fields.
    #4: This document is rather illogical, as the author might not be aware of shared Keychains, which are easily exported between computers and shared among users of that computer. We share a single Keychain over our network, within our company and have not had any sharing issues, so far.
    #5: This document covers the steps it takes to set up an SSL Server over HTTPS as is done by us for each individual computer already. Although, it should be noted that in Snow Leopard, this requires a bit more work, as you need to define the DNS or IP address (we do both, sine our computers have fixed IP addresses).
    #6: I do not see any use to this document, as it features development using Objective-C. We do not create our own Certificate Software, but rather resort to Apple's Defaults.
    As a means of helping you out with further understandings:
    I create Certificates using the Certificate Assistant, filling in every field. I override defaults and set the country and other information to the appropriate one, as our business is located in Belgium, Europe, not the U.S.A.
    Here is some example information: (this applies under "Create a certificate for yourself" or "Use your CA to create a certificate for someone else")
    Name: Firstname Lastname
    Identity type: Leaf
    Certificate Type: S/MIME or SSL Server
    [√] Let me override defaults
    Serial Number: increasing number since last addition; digits of 1-9 for Company components, digits 10 and up for inside Users, Computers, Servers and more.
    Validity Period (days): 365
    Email Address: User e-mail address
    Name (Common Name): Firstname Lastname
    Organization: Mantha Designs incorporated
    Organizational Unit: the appropriate unit or blank
    City (Locality): blank
    State/Province: blank
    Country: BE
    Select Mantha Designs Certificate Authority root CA
    Key Size: 1024 or 2048 bits
    Algorithm: RSA
    [√] Include KUE
    [√] This extension is critical
    [√] Signature, Non Repudiation, Data Encipherment, CRL signing for SSL Servers
    [√] Include EKU Extension
    [√] This extension is critical
    [√] SSL Client or Server, Code signing, PKINIT Client/Server, Email Protection
    [x] Include BCE
    [√] Include SANE
    [√] This extension is critical
    rfc822Name: e-mail address
    URI: the appropriate domain name for the SSL Server, if public. User profile if available and not SSL Server
    dNSName: the appropriate DNS Name for SSL Server or blank
    iPAddress: the appropriate IP Address for SSL Server, if local. Blank if not
    Keychain: ManthaDesigns
    Thank you for your time. Hope to have helped you understand better.
    I believe I noticed that the Certificates are created using the same identifier, but this is uncertain as it cannot be tested, since I cannot add any Certificates.

  • Certificate Assistant and iChat

    Hi,
    I would like to know if it is possible to use the keychain certificate assistant to generate a certificate to be used with iChat to encrypt messages without purchasing a dot mac account? I noticed that while creating a certificate there is an option for encrypting/decrypting iChat. Not sure why this is provided.
    Thanks
    John

    Hi
    Then you might have better success posting in the .mac forum http://discussions.apple.com/category.jspa?categoryID=116

  • System Keychain Question

    Since purchasing my macbook pro three years ago there has been two certificate entries in the system keychain that are marked with a red-x...meaning they are self signed certificates.  One is com.apple.kerberos.kds and the other is called com.apple.sysdefault.  I just assumed this was normal.  So, since creating an iCloud account there are multiple problems with the login keychain always asking to unlock it for just about every application opened. 
    I was just wondering if the red-x certificates in the system keychain could be causing this or is it just something going on with iCloud.  I talked to applecare technical support and they said I need to change the trust settings on these system keychain certificates, but was not sure why, so, I did and the applications are still asking for the login keychain unlocked everytime I open one. 
    Is anyone else experiencing this?

    sorry, lost track of this thread.
    Carlton Chin wrote:
    No problem. I was going to follow the instructions to the "T." I just wanted to make sure about the "short user name" since the steps outlined had hyphens in between the words.
    It did work. Thanks for the instructions!! Saved me a lot of headaches of doing and archive and install. Just a few more follow up questions...
    1. Does it make sense to create a second admin account as back up or would that get hosed too?
    I always keep a second admin account just in case. however, this would not have helped you in this particular case because the problem was with the whole admin group not with any individual accounts in it.
    2. I am pretty much the only person using the computer. Is it better that I created a "Standard" account to work in and leave the admin alone? The only minor inconvenience is that I would have to type the admin login and password every time I need to install or change things that are on an admin level.
    this is often recommended for more security.
    3. Disabling the root user (System Administrator). Rebooting off the Mac OS X Install CD, if select "Disable Root User" from the menu will it still retain the password?
    you can disable root user using directory utility without booting from the install dvd. the root password will NOT be retained.
    You also mentioned the option to reset the root user account?
    ? I never said that and there is no such thing as "root user" account. Not sure what you are talking about here.
    Is that the option in the same window pane at the bottom that starts off with "Reset file permission and access control lists (ACLs)..?
    no this has nothing to do with root.

  • Certificate Problems

    Ok, so I know that this problem has been beaten to death but I have read all the other discussions and websites and tried everything that I have found, and nothing seems to fix the problem. I don't code really, but I wanted to try again, and I wanted to on my MacBook Pro. For what I used to try to do, I did on my iMac, and never had any problems. Now, I want to code on my MBP and I get the "Valid signing identity not found." So far, I have exported the keychain certificates from my iMac to my MBP, and then exported the certificates right out of Xcode Organizer and straight into the Xcode Organized on my MBP. I have deleted the derived data from my projects, and deleted and removed the certificates from my iPhone and reloaded them on. I have no idea what to do anymore. I don't know why its not working, I have done everything that I think I should have done, but for some reason I can't get it to work. I am also having the problem that when I try to run my app on my iPhone, it says that 'Build Failed' and gives "Code sign error: The identity 'iPhone Developer' doesn't match any valied, non-expired certificate/private key pair in your keychains." The following pictures show the errors.
    FYI - I built this app using DAPP.
    Any help will be GREATLY APPRECIATED!!!    
    Spencer

    Are you a member of the iOS developer program?

  • Adobe cc wants me to enter a serial number for my student cc 2014 but i can't enter the license site...

    hi folks,
    i am a student from berlin, germany. i chose the cc 2014 student subscription for 19,99€ monthly ( mac OSX 10.9.3 ). i had an adobe ID before and i continue using it now. i installed some programs from the CC2014. after that i wanted to try out muse, started the program and was asked whether i wanted to test the program for 30 days, or if i wanted to license it. i clicked the license button and went to https://licensing.adobe.com as suggested. there it said "Sie konnten nicht als autorisierter Anwender dieser Website identifiziert werden. Wenden Sie sich bitte an Adobe." translation: "it was impossible to identify you as an authorised user of this website. contact adobe". what now?
    i went to adobe support ( the written support, because chat and telefone-support is from 9:00 to 17:00 - my working hours ). there i did everything that was suggested: correcting the hosts file, keychain certificates etc. nothing helped.
    has anybody an idea what i could do next?
    thank you all

    Hi Jeff,
    yes, I completed each and every step listed in Sign in, activation, or connection errors | CC, CS6, CS5.5. It didn't help. The forum told me to change the language of the CC application to english international, which i did - didn't help, still there was a serial number required.
    now i deleted the hosts file completely from my computer ( still have it in my trashbin ). now the programs work fine but i am concerned if i did something wrong/illegal by deleting the hosts file.

Maybe you are looking for

  • Java Web Start- Cannot launch Application. Pls help

    HI Ia m beginner in java web start. I creaate a simple swing application and try to launch it through web start. But I failed. My application jar file (sample.jar)contains only class files. No menifest file. Then I sign my "sample.jar" file and place

  • Making Upper Limit in FICO ,ECS Report

    Hi!! I am Creating one ECS Report in FICO. I have Given Total amount at the footer. now i want to display Upper Limit of amount Means Greatest amount amongst all amount. I am Using REGUH-RWBTR Field for Displaying my amount. can anybody tel me how to

  • OSB Email Can't find wsdl for Proxy?

    Hi, OSB 11G Req: System A will invoke OSB Service and OSB should send an email. I have created a Business Service and Proxy Service for Email in OSB like:- Business Service: 1.Selected Service Type as Message Service. 2. Req Message Type as Text 3.Se

  • Resize a person in a composite photo

    I am new to CS5 and I just cant figure out how to do this. I have removed the person from one photo and have her isolated on her own layer. I have all the other people on the background photo which I have made into another layer. The problem is that

  • My computer crashed and I did not have the opportunity to deactivate.

    My computer crashed and I did not have the opportunity to deactivate and nowhere can find the answer on how to reinstall. When I reinstall the software on the replacement computer the software says I have used up my installations and did not deactiva