[SOLVED]/etc/ssl/certs/ca-certificates.crt missing from fresh install?

Hi!
I was wondering if any of you could understand why I need to reinstall ca-certificates post-install, so as /etc/ssl/certs/ca-certificates.crt gets generated back?
I'm installing from a netinstall x86_64 image with automatic AIF profile and from [testing] repo?
Since the file gets made when installing post-install, then I thought that it was rather an install issue instead of a [testing] one? I dunno...
I've just run a new install from the usb stick, and still the same, and pacman.log states that ca-certificates is installed fine, but again the file is missing and I get complaints in vt1 when browsing https sites and when using curl and such, unless I do a reinstall of ca-certificates...
Thanks in advance!
-- EDIT --
Problem solved by latest perl from testing repo...
Last edited by mhertz (2012-01-03 01:40:16)

.. Just wanted to add that of course I know that the ca-certificates.crt isn't in the actual package, but that it _should_ be generated by running update-ca-certificates from the packages install script, but just isn't upon install...
The package is also out of testing now and in core I see...
Anyway, to fix this, I guess I just need to add an extra chroot command in my AIF config which runs 'update-ca-certificates --fresh', since atleast that works i.e. generates ca-certificates.crt, but i've only tried it post-install, and I don't want to do another install again, as I did 2 yesterday...
Again, if anybody could help me with some kind of explanation or theory or whatever for this, then I would really appreciate it!
I _do_ think that the update-ca-certificates command is run correctly during install, as else I guess I wouldn't have all these symlinks in my /etc/ssl/certs/ folder, but then why it dosen't generate that additional ca-certificates.crt file, I really do not understand...
Thanks in advance!
(I don't want to report an error before being absolutelly sure that it is an actual error and that I know exactly what i'm talking about in the report...)
-- EDIT --
I just did a "normal" test-install of arch64-net in a VM, i.e. without using AIF's automatic procedure, and just selected the core repo and to install base(wget depends on ca-certificates), and in the output there where reported:
Installing ca-certificates... Error: Command failed to execute correctly.
There weren't anything more specific in /var/log/{pacman,aif}.log about this, and again there where no ca-certificates.crt generated, and it first appeared after manually running update-ca-certificates post-install...
I'm gonna make a bug-report on the bugtracker now then...
Last edited by mhertz (2011-12-21 03:16:40)

Similar Messages

  • Withholding tax certificates numbers missing from Table J_1IEWT_CERTIF_N

    Experts,
    I have followed all the process of Extended withholding tax and printed certificates in the month of Jan 2011 for the period Oct 2010 to Dec 2010. (actually for FY 2010)
    Now I want to repirnt one of these certificates as duplicate certificate and need to gi ve it to my vendor. I have the hard copy of the certificate and the number. But when I go to certificate re print program, it shows me certificate does not exists. I have also checked the tables but few certificate numbers I cannot see in the table.
    When I sorted the certificates I get certificates from sr. 1 to Sr.171 and then from Sr 286  to 341, whereas actually I had printed the certificates which are missing in between.
    I aslo tried to print the certificates for those where I am geting certificate error, and there are system is allowing me to print the certifricate and not showing any message about certificates already printed. In the report J1INMIS as wel I do not get certificate number.
    Kindly advise, what could be reason.
    Shailesh

    Hi
    Give the T.Code J1ICREP to reprint the certificate. Give the certificate number and print it. The new print will come automatically as DUPLICATE.

  • [SOLVED] Gnome 3.6: Battery/power icon missing from panel

    I've recently ressurected an old Arch laptop that had been lying dormant for a year or a half. Everything's been brought up to speed (pacman -Syu plus a lot of systemd study) satisfactorily except I've noticed that the battery/power icon on the panel is missing. Due to the long time since the install, I have no idea if this is due to an error or some old brilliant idea setting from my side a year or more ago :-(
    What I've tried:
    * Disabling all extensions (a lot of posts about the system monitor extension causing this -- I've never used it). Extension turn off registers but still no battery.
    * Checking htop and gnome power  statistics to see if the system knows about my battery. Both report in detail about the battery.
    * Checking /usr/share/gnome-shell/js/ui/panel.js to see if the power applet had been excluded somehow. Nope, it's listed.
    * Checking dconf to see if I could find some setting there. Ubuntu user posts led me to org.gnome.power-manager but unlike those users I found no setting relevant ("icon-policy")
    * Checking gnome settings and tweak settings. Found nothing that seemed relevant.
    A lot of posts about this pops up around gnome 3.2 which apparently had a bug with this problem. I'm not sure what version gnome-shell was before the update but currently it is 3.6.3 and the laptop has been rebooted and had gnome-shell restarted any number of times since then.
    Any suggestions?
    Last edited by nervater (2013-03-23 16:11:17)

    Good point, WonderWoofy.
    I created a guest account and found the icon on the panel when I logged in as guest. A bit of guessing located the problem to my dconf database and using gsettings to locate any power/battery-related settings pointed me to
    org.gnome.settings-daemon.plugins.power
    which had been deactivated. Clicking 'Active' and restarting gnome-shell solved my problem.

  • Why is dataacq.h missing from my installed version of CVI 5.5?

    I need the header file dataacq.h for some applications that I am using. I know the file is present on other versions of CVI 5.5 and want to know why the file was not installed (using standard install) on my system (Windows 98)

    Vishnu,
    please take care of the difference between "DAQmx" and "Traditional DAQ": they are completely different products with no interaction between them. The supporting files also are different.
    Since you are looking for "dataacq.h", you absolutely need to install traditional daq: installing DAQmx will not solve any of your problems. BTW, traditional daq is in version 7.4.4 and wont' be updated anymore. It can be downloaded from here, but should be also included in NI-DAQ driver disks and is surely included in Developer Suite distributions.
    Second item: the presence of LabVIEW again has no influence on CVI development environment. A problem may arise if in the same machine a newer CVI is already installed, in which case a new install of traditional daq will not update CVI6 environment.
    At this moment, I can see several scenarios: please let us know which is your exact situation so that we can address it in the proper way.
    Scenario 1
    LabVIEW installed. No other CVI installed apart your CVI6
    In this case simply installing Traditional DAQ will solve your problems: during installation be sure to install CVI support (the setup program whould correctly identify your CVI6IDE)
    Scenario 2
    LabVIEW installed. A newer CVI installed together with CVI6 IDE.
    In this case you should install Traditionl DAQ (which will install support fro the newer IDE) and then copy DAQ files to CVI6 environment. The copy will imply several files, not only dataacq.h.
    Let me know if this is your case and I will list you all the files to copy.
    Proud to use LW/CVI from 3.1 on.
    My contributions to the Developer Zone Community
    If I have helped you, why not giving me a kudos?

  • Kernel missing from default install

    Hi,
    I just installed arch linux in a dual boot configuration with windows xp. During the installation I selected only the base packages and installed the default kernel, the IDE/SCSI one. The kernel installed fine and I installed grub to /dev/sda as I have a single sata hard disk. I have windows on sda1 and a swap on sda2 which is at the end of the disk and sda3 in the middle for my root partition. Once I rebooted after installation however my windows install booted fine but grub gives me and error claiming it cannot find the initrd26.img. I do not know much about the whole boot process of the kernel so I was hoping if someone could help me find a fix. Here is a list of my /boot and /boot/grub directories and my menu.lst file. I noticed there is a file called kernel26.img but I am not sure whether that is the initrd26.img file or the kernel itself.
    bt ~ # cd /mnt/sda3/boot
    bt boot # ls
    System.map26 diag1.img grub/ kconfig26 kernel26-fallback.img kernel26.img vml
    bt boot # ls grub
    e2fs_stage1_5 ffs_stage1_5 jfs_stage1_5 minix_stage1_5 stage1 stage2_eltorito vstafs_stage1_5
    fat_stage1_5 iso9660_stage1_5 menu.lst reiserfs_stage1_5 stage2 ufs2_stage1_5 xfs_stage1_5
    bt boot #
    # Config file for GRUB - The GNU GRand Unified Bootloader
    # /boot/grub/menu.lst
    # DEVICE NAME CONVERSIONS
    # Linux Grub
    # /dev/fd0 (fd0)
    # /dev/hda (hd0)
    # /dev/hdb2 (hd1,1)
    # /dev/hda3 (hd0,2)
    # FRAMEBUFFER RESOLUTION SETTINGS
    # +-------------------------------------------------+
    # | 640x480 800x600 1024x768 1280x1024
    # ----+--------------------------------------------
    # 256 | 0x301=769 0x303=771 0x305=773 0x307=775
    # 32K | 0x310=784 0x313=787 0x316=790 0x319=793
    # 64K | 0x311=785 0x314=788 0x317=791 0x31A=794
    # 16M | 0x312=786 0x315=789 0x318=792 0x31B=795
    # +-------------------------------------------------+
    # general configuration:
    timeout 5
    default 0
    color light-blue/black light-cyan/blue
    # boot sections follow
    # each is implicitly numbered from 0 in the order of appearance below
    # TIP: If you want a 1024x768 framebuffer, add "vga=773" to your kernel line.
    # (0) Arch Linux
    title Arch Linux
    root (hd0,2)
    kernel /boot/vmlinuz26 root=/dev/sda3 ro
    initrd /boot/initrd26.img
    # (1) Windows XP
    title Windows XP calef13 edition
    rootnoverify (hd0,0)
    chainloader +1
    Thanks in advance,
    Calef13

    The regular grub config uses kernel26.img as the initrd (yes, that's what it is). It also has another entry that uses kernel26-fallback.img (a bigger, more generalized initrd) and appropriate options to boot in single-user mode.
    I don't know why yours didn't come out right. There isn't an initrd26.img file any more (though I think there used to be one a while back).

  • ILife missing after fresh install - no option to accept in App Stoer

    Hi
    I recently replaced my HDD with a SSD, and installed Mountain Lion fresh from a bootable USB stick that I made with Lion Dismaker.
    The install all went fine, however I now have no iLife suite (iPhoto, Garageband and iMovie). I have checked the App Store, they are not in my purchases and I can see no option to 'accept' them. I bought my MacBook with Lion and the iLife suite pre-installed so have no disks for them.
    Any help would be appreciated.
    Thankyou

    Go to App Store > Account > Show hidden purchases and see if iMovie, iPhoto, GarageBand are here. If the programs aren't there, contact with App Store > http://www.apple.com/support/mac/app-store/contact

  • How to get OS X to accept an SSL Cert the way other UNIX clients do?

    I'm hoping some of the network gurus can suggest a solution for me. My current config is 10.5.4 on PPC.
    I have a host that I need to connect to using SSL but their certificate has a host name mismatch (they are a small org, and can't afford another SSL cert for the moment). I know the cert is valid, so I'm not worried about the security implications of using it.
    On other *NIX clients, I simply have to add the cert into the root chain (e.g. /etc/ssl/certs/ca-certificates.crt), restart the application, and all apps will then accept it as valid.
    On OS X, I've imported the cert into Keychain Access, marked it as "Always Trusted" and set up a policy to "alias" it to the URL I need to access with my application (not a web browser) (ref: KB article: HT1679) in both the login and the System keychains, yet the client application still errors out and refuses to connect to the URL.
    How can I configure client SSL on OS X to work like other UNIX configurations? There doesn't seem to be a way to override the extremely restricted behavior.
    I have MacPorts installed and am open to an application specific "hack" if necessary, ala "LDLIBRARYPATH", if anyone thinks that's feasible (which is what I am looking at now). Conceivably I could recompile the client application since it's OSS, though I'd rather avoid that if possible.
    Any suggestions would be appreciated.
    Thanks in advance--
    =N=

    when you connect with a web browser to an https site that has a mistmatched cert it warns you and you have to tell the browser to ignore the security issue to let you carry on.
    what unix apps are you using to connect to this server?

  • [SOLVED] Unknown SSL protocol error in connection

    Hi there. I'm trying to get a website with curl but i'm getting this error:
    [martriay@atila ~]$ curl -v "https://servicios1.afip.gov.ar"
    * Rebuilt URL to: https://servicios1.afip.gov.ar/
    * Hostname was NOT found in DNS cache
    * Adding handle: conn: 0x20412c0
    * Adding handle: send: 0
    * Adding handle: recv: 0
    * Curl_addHandleToPipeline: length: 1
    * - Conn 0 (0x20412c0) send_pipe: 1, recv_pipe: 0
    * Trying 200.1.116.53...
    * Connected to servicios1.afip.gov.ar (200.1.116.53) port 443 (#0)
    * successfully set certificate verify locations:
    * CAfile: /etc/ssl/certs/ca-certificates.crt
    CApath: none
    * SSLv3, TLS handshake, Client hello (1):
    * Unknown SSL protocol error in connection to servicios1.afip.gov.ar:443
    * Closing connection 0
    curl: (35) Unknown SSL protocol error in connection to servicios1.afip.gov.ar:443
    And when i try with SSLv3:
    [martriay@atila ~]$ curl -3 -v "https://servicios1.afip.gov.ar"
    * Rebuilt URL to: https://servicios1.afip.gov.ar/
    * Hostname was NOT found in DNS cache
    * Adding handle: conn: 0x8032c0
    * Adding handle: send: 0
    * Adding handle: recv: 0
    * Curl_addHandleToPipeline: length: 1
    * - Conn 0 (0x8032c0) send_pipe: 1, recv_pipe: 0
    * Trying 200.1.116.53...
    * Connected to servicios1.afip.gov.ar (200.1.116.53) port 443 (#0)
    * Unsupported SSL protocol version
    * Closing connection 0
    curl: (35) Unsupported SSL protocol version
    That's from my archlinux server, while on my desktop's fedora it works just fine. Both computers are within the same network.
    openssl version:
    [martriay@atila ~]$ openssl version
    OpenSSL 1.0.1e 11 Feb 2013
    openssl connection attempt
    [martriay@atila ~]$ openssl s_client -connect servicios1.afip.gov.ar:443
    CONNECTED(00000003)
    write:errno=104
    no peer certificate available
    No client certificate CA names sent
    SSL handshake has read 0 bytes and written 322 bytes
    New, (NONE), Cipher is (NONE)
    Secure Renegotiation IS NOT supported
    Compression: NONE
    Expansion: NONE
    If I add the -ssl3 option:
    [martriay@atila ~]$ openssl s_client -connect servicios1.afip.gov.ar:443 -ssl3
    CONNECTED(00000003)
    depth=1 C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO High-Assurance Secure Server CA
    verify error:num=20:unable to get local issuer certificate
    verify return:0
    Certificate chain
    0 s:/C=AR/postalCode=1086/ST=Ciudad Autonoma de Buenos Aires/L=Capital Federal/street=Hipolito Yirigoyen 370/O=ADMINISTRACION FEDERAL DE INGRESOS PUBLICOS/OU=Issued through ADMINISTRACION FEDERAL DE INGRESOS PUBLICOS E-PKI/OU=InstantSSL/CN=servicios1.afip.gov.ar
    i:/C=GB/ST=Greater Manchester/L=Salford/O=COMODO CA Limited/CN=COMODO High-Assurance Secure Server CA
    1 s:/C=GB/ST=Greater Manchester/L=Salford/O=COMODO CA Limited/CN=COMODO High-Assurance Secure Server CA
    i:/C=SE/O=AddTrust AB/OU=AddTrust External TTP Network/CN=AddTrust External CA Root
    Server certificate
    -----BEGIN CERTIFICATE-----
    -----END CERTIFICATE-----
    subject=/C=AR/postalCode=1086/ST=Ciudad Autonoma de Buenos Aires/L=Capital Federal/street=Hipolito Yirigoyen 370/O=ADMINISTRACION FEDERAL DE INGRESOS PUBLICOS/OU=Issued through ADMINISTRACION FEDERAL DE INGRESOS PUBLICOS E-PKI/OU=InstantSSL/CN=servicios1.afip.gov.ar
    issuer=/C=GB/ST=Greater Manchester/L=Salford/O=COMODO CA Limited/CN=COMODO High-Assurance Secure Server CA
    No client certificate CA names sent
    SSL handshake has read 3048 bytes and written 485 bytes
    New, TLSv1/SSLv3, Cipher is RC4-MD5
    Server public key is 2048 bit
    Secure Renegotiation IS NOT supported
    Compression: NONE
    Expansion: NONE
    SSL-Session:
    Protocol : SSLv3
    Cipher : RC4-MD5
    Session-ID: F34244E0C2E402103FC9B7216E504E89761FDAF31CC1AC3A7939BE99AD8D0C57
    Session-ID-ctx:
    Master-Key: 146C91E59E259AD38C1E7A0B8E5DBEAE2D768622DE4045CD927D60A40FF8CA527A2694E227FEE30CC0909ADE0B72B0C8
    Key-Arg : None
    PSK identity: None
    PSK identity hint: None
    SRP username: None
    Start Time: 1389232087
    Timeout : 7200 (sec)
    Verify return code: 20 (unable to get local issuer certificate)
    Any ideas?
    Last edited by martriay (2014-01-09 14:05:02)

    Downgrade curl to 7.33.0-3. There is a known bug that is now fixed and should be released with the next version. I got bit by this too
    Scott

  • What is missing from Photoshop CS6 ???

         I tried the new PhotoShop CS6 (beta) but aside from some innovations of which my favorite is the interface (The interface is one of the best innovation that Adobe have made finally an interface that does not make you eyes hurt) and content aware move tool (content aware is definitely the best technology in Photoshop, may in the future in Photoshop CS20 will be voice-activated and will do exactly what you say even to draw for you) and maybe the new brushis, nothing that new, especially for those who draw in Photoshop concept artists, Ilustrators and so on ... etc
          In my opinion what is missing from the famous Photoshop CS 6 and should have been is :
         1 : Live symmetry drawing (horizontal and vertical) even the simplest programs like Alchemy / Sketchbook Pro and new Painter 12 has the function they have gone beyond the horizontal and vertical with the function of Kaleidoscope. I really like how the brush works in Alchemy especially in symmetry, in Sketchbook Pro are not so good in symmetry, unless thei are round but if you have a strange shapes thei tend to function as a parallel very strange but it is ther why the famous Photoshop does not have this function ??? I hoped that in PS CS6 (beta) to be, but no, I do hope maybe in the CS7 will be,
         2: I would like to make several sets of brushes, but in different windows on the screen at the same time not only a big one something like Corel Painter 12
         3: If you put a 3d function why do you tried to do something like the Google SketchUP fast, simple to use and easy to learn, or a simplified version of ZBrush sculpture in 3d clay ???
         Ok now let's talk about Bridge CS6: same functions, nothing so new, I hope that in the cs6 to implement something like the function of ACDSee Photo Manager 12 for example:
         Preview Thumbnails in a files, shortcuts that can be modified, such as double click I want to open fullscreen preview not send in photoshop or Camera Raw etc, why not the same as Photoshop, to make what I want to what I want, preview window to have the option of framing the image even if it is small or large (fit image, reduce or enlarge) the same for full screen mode the image will be framed by the edges of the screen (fit image height or widthand reduce or enlarge) from there if you want 100%, 200% etc. and many others
         What is right, there are many other features that I like and love in Bridge much more than ACDSee 12 such as preview multiple images at the same time in preview window and Review Mode (one of my favorite) and many others but ...   ... What was more important to me I said maybe for someone else is something else missing ...

    Trevor.Dennis wrote:
    …Why on earth would you want to restrict Photoshop?…
    Because I may consider it to be bloated already?
    Because I don't need to be driving around in a motor home when my car fills my needs?
    Because I don't need a hammer that doubles as a screwdriver or water-heater when I need to drive a nail?
    Because a scalpel may be more useful for my purposes than a Swiss-army knife?
    Because I would prefer the engineering team to work on refining existing features and improving stability rather than add features that are better served in drawing and painting applications?
    Because I'm not particularly impressed by some of the new "features"?
    Because I would prefer to see improvements to the History panel as have been suggested and requested over the years?
    I could think of many more such reasons why.
    Trevor.Dennis wrote:
    …I suspect there are a great many features in existing versions of Photoshop that you don't use…
    Duh!    Precisely! 
    Software bloat adds to the cost of developing and maintaining an application, delays the release of bug fixes and genuine improvements of existing features and eventually demands greater hardware resources.
    I have no clue as to what the he!! your "Prime Minister" quote is supposed to mean in the context of this discussion, unless you're implying that you feel like a 21-year-old whippersnapper who knows everything.  From your avatar picture you look younger than I am.  Besides, I know of very few "prime ministers" who are, were or have been particularly knowledgeable about "everything", so that may not even be a requirement for the job. 

  • Attachments missing from emails after iCloud sync

    Hi there
    I am running Outlook 2010 in Windows 7 Home premium to access a POP mail address. I have created rules on Outlook to forward my emails from the POP account into the relevant IMAP folders of my @icloud.com account which enables me to access my emails on an iPhone and iPad.
    This system has been running smoothly for some time, however I have recently noticed a problem that has developed over the last month or so:
    Every now and then, attachments on emails that I have received do not sync onto my peripheral devices ie. the iPhone and iPad.
    This is not specific to a particular sender or file type and seems to occur at random.
    When I view the email in Outlook, and via the iCloud web interface the attachment is there and can be viewed/downloaded etc.
    The attachments are only missing from the iPad and iPhone. Has anybody ever encountered an issue like this? Perhaps there is something that I am overlooking?
    Thanks in advance

    Well. I make an export Archive from iCal.
    Then deactivate from the iPhone (Adjusts - iCloud) the Calendars.
    For now, I will not use iCloud for calendars. I do not understand why we end with two Calendars. One from iCloud and one from the iPhone or the Mac itselves.
    We must have just ONE calendar for all.
    I use CalAlarm app from Devart and with the iPhone icon selected on iTunes I had to uncheck and check on Information label Sincronize Calendars of iCal.

  • Illustrator CC 2014 won't launch (Could not complete the requested operation) even after fresh install (3 times), anyone know how to solve? (Windows 8.1)

    Hi guys, my Illustrator CC 2014 won't launch, getting an error message "Could not complete the requested operation", this is not a specific file issue I can't launch Illustrator stand alone.  I've un-installed and re-installed about 3 times and contacted support but they haven't been able to solve as of yet.  It's a relatively fresh install of windows 8.1 and no custom fonts have been added.  I've tried deleting the preferences folders and launching and that has not had any effect.  No idea what else I can do, any help would be greatly appreciated.
    Edit: Forgot to mention I have also tried running Illustrator as administrator and that Illustrator was running perfectly fine on this computer since install (about 2 weeks) before this started happening.
    Thanks
    Chris

    Hi Jacob, I decided to completely remove the entire creative suite from my computer, ran the cleaning tool (although some errors showed in the log file) and it now works! Let's just pray it stays this way haha.  Thanks for the suggestion.
    Log File:
    [Thu Mar 05 10:18:58 2015] Choose from one of the following options to clean up :
    [Thu Mar 05 10:18:58 2015] 1.  All
    [Thu Mar 05 10:18:58 2015] 2.  Adobe Flash Player 10.2
    [Thu Mar 05 10:18:58 2015] 3.  Creative Cloud 2014 , Creative Cloud & CS6 Products
    [Thu Mar 05 10:18:58 2015] 4.  Creative Cloud 2014 only
    [Thu Mar 05 10:18:58 2015] 5.  Creative Cloud only
    [Thu Mar 05 10:18:58 2015] 6.  CS6 only
    [Thu Mar 05 10:18:58 2015] 7.  CS5-CS5.5-CS6
    [Thu Mar 05 10:18:58 2015] 8.  CS5-CS5.5
    [Thu Mar 05 10:18:58 2015] 9.  CS3, CS4
    [Thu Mar 05 10:18:58 2015] 10.  Adobe Id credentials
    [Thu Mar 05 10:18:58 2015] 11.  Quit
    [Thu Mar 05 10:18:58 2015] Choice :>
    [Thu Mar 05 10:19:00 2015] User selected: All
    [Thu Mar 05 10:19:00 2015] Opened DB connection with path: C:\Program Files (x86)\Common Files\Adobe\caps\pdb.db
    [Thu Mar 05 10:19:00 2015] Opened DB connection with path: C:\Program Files (x86)\Common Files\Adobe\caps\Media_db.db
    [Thu Mar 05 10:19:00 2015] Opened DB connection with path: C:\Program Files (x86)\Common Files\Adobe\caps\caps.db
    [Thu Mar 05 10:19:00 2015] List of products installed on this machine
    [Thu Mar 05 10:19:00 2015] Listing products for cleanup:
    [Thu Mar 05 10:19:00 2015] Please enter the option number of the product you wish to remove; enter (q) to quit ... >>
    [Thu Mar 05 10:19:04 2015] Are you sure you want to clean all the listed products and associated files?
    [Thu Mar 05 10:19:04 2015] Type (y) to confirm and remove or (n) to quit ... >>
    [Thu Mar 05 10:19:06 2015] Please wait for Adobe Creative Cloud Cleaner Tool to finish........
    [Thu Mar 05 10:19:06 2015] OSVersion : 64-bit
    [Thu Mar 05 10:19:06 2015] Deleting registry root:HKLM key:Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Run value:Adobe Creative Cloud
    [Thu Mar 05 10:19:06 2015] Exception during deleting key : (2, 'RegDeleteValue', 'The system cannot find the file specified.')
    [Thu Mar 05 10:19:06 2015] Deleting registry root:HKLM key:Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Run value:AdobeCEPServiceManager
    [Thu Mar 05 10:19:06 2015] Exception during deleting key : (2, 'RegDeleteValue', 'The system cannot find the file specified.')
    [Thu Mar 05 10:19:06 2015] Deleting registry root:HKLM key:Software\Wow6432Node\Adobe\CSXS.4 value:SmsManifestBaseURL
    [Thu Mar 05 10:19:06 2015] Exception during deleting key : (2, 'RegOpenKeyEx', 'The system cannot find the file specified.')
    [Thu Mar 05 10:19:06 2015] Deleting registry root:HKLM key:Software\Wow6432Node\Adobe\CSXS.4 value:SmsUpdateCheckInterval
    [Thu Mar 05 10:19:06 2015] Exception during deleting key : (2, 'RegOpenKeyEx', 'The system cannot find the file specified.')
    [Thu Mar 05 10:19:06 2015] Deleting registry root:HKLM key:Software\Wow6432Node\Adobe\CSXS.4 value:LogLevel
    [Thu Mar 05 10:19:06 2015] Exception during deleting key : (2, 'RegOpenKeyEx', 'The system cannot find the file specified.')
    [Thu Mar 05 10:19:06 2015] Deleting registry root:HKLM key:Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Creative Cloud
    [Thu Mar 05 10:19:06 2015] Exception during deleting key : (2, 'RegDeleteTree', 'The system cannot find the file specified.')
    [Thu Mar 05 10:19:06 2015] Deleting registry root:HKCR key:AAM
    [Thu Mar 05 10:19:06 2015] Exception during deleting key : (2, 'RegDeleteTree', 'The system cannot find the file specified.')
    [Thu Mar 05 10:19:06 2015] Deleting registry root:HKCR key:AdobeAAMDetect.AdobeAAMDetect
    [Thu Mar 05 10:19:06 2015] Exception during deleting key : (2, 'RegDeleteTree', 'The system cannot find the file specified.')
    [Thu Mar 05 10:19:06 2015] Deleting registry root:HKCR key:AdobeAAMDetect.AdobeAAMDetect.1
    [Thu Mar 05 10:19:06 2015] Exception during deleting key : (2, 'RegDeleteTree', 'The system cannot find the file specified.')
    [Thu Mar 05 10:19:06 2015] Deleting registry root:HKCR key:AdobeAAMDetect.AdobeAAMDetect.2
    [Thu Mar 05 10:19:06 2015] Exception during deleting key : (2, 'RegDeleteTree', 'The system cannot find the file specified.')
    [Thu Mar 05 10:19:06 2015] ACC shortcut was not found C:\Users\Public\Desktop\Adobe Creative Cloud.lnk
    [Thu Mar 05 10:19:06 2015] ACC shortcut was not found C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk
    [Thu Mar 05 10:19:06 2015] CoreSync custom hook not found
    [Thu Mar 05 10:19:06 2015] Warning: Failed to remove file,folder trying again
    [Thu Mar 05 10:19:06 2015] Warning: Failed again to remove file,folder
    [Thu Mar 05 10:19:06 2015] Warning: Failed to remove file,folder trying again
    [Thu Mar 05 10:19:06 2015] Warning: Failed again to remove file,folder
    [Thu Mar 05 10:19:06 2015] Warning: Failed to remove file,folder trying again
    [Thu Mar 05 10:19:06 2015] Warning: Failed again to remove file,folder
    [Thu Mar 05 10:19:06 2015] Retry deleting the folder since folder still exists
    [Thu Mar 05 10:19:06 2015] Warning: Failed to remove file,folder trying again
    [Thu Mar 05 10:19:06 2015] Warning: Failed again to remove file,folder
    [Thu Mar 05 10:19:06 2015] Warning: Failed to remove file,folder trying again
    [Thu Mar 05 10:19:06 2015] Warning: Failed again to remove file,folder
    [Thu Mar 05 10:19:06 2015] Warning: Failed to remove file,folder trying again
    [Thu Mar 05 10:19:06 2015] Warning: Failed again to remove file,folder
    [Thu Mar 05 10:19:06 2015] Some files could not be cleaned up. Please try closing your internet/web browser, and rerun the Cleaner Tool to complete your clean-up.
    [Thu Mar 05 10:19:06 2015] :: Cleaning-up left over inventories ::
    [Thu Mar 05 10:19:06 2015] Inventory: 'AdobeApplicationManager-1.0' Type: SelfUpdate, Action: NoDelete
    [Thu Mar 05 10:19:06 2015] Found AAMref : ACC.aamref
    [Thu Mar 05 10:19:06 2015] Atleast one Non-RIBS Inventory : False, Atleast one AAMRef: True
    [Thu Mar 05 10:19:06 2015] Removing content of Product : CS5Installer, Version : CS5
    [Thu Mar 05 10:19:07 2015] Deleting file : C:\Program Files (x86)\Common Files\Adobe\caps\pdb.db
    [Thu Mar 05 10:19:07 2015] Deleting file : C:\Program Files (x86)\Common Files\Adobe\caps\Media_db.db
    [Thu Mar 05 10:19:07 2015] Warning: Failed to remove file,folder trying again
    [Thu Mar 05 10:19:07 2015] Warning: Failed again to remove file,folder
    [Thu Mar 05 10:19:07 2015] Warning: Failed to remove file,folder trying again
    [Thu Mar 05 10:19:07 2015] Warning: Failed again to remove file,folder
    [Thu Mar 05 10:19:07 2015] LOG FILE SAVED TO: C:\Users\Chris\AppData\Local\Temp\Adobe Creative Cloud Cleaner Tool.log
    [Thu Mar 05 10:19:07 2015] Adobe Creative Cloud Cleaner Tool completed successfully
    [Thu Mar 05 10:19:07 2015]
    [Thu Mar 05 10:19:07 2015] *-*-*-*-*-*- ::START:: - SUMMARY OF Warnings -*-*-*-*-*-*
    [Thu Mar 05 10:19:06 2015] Warning: Failed to remove file,folder trying again
    [Thu Mar 05 10:19:06 2015] Warning: Failed again to remove file,folder
    [Thu Mar 05 10:19:06 2015] Warning: Failed to remove file,folder trying again
    [Thu Mar 05 10:19:06 2015] Warning: Failed again to remove file,folder
    [Thu Mar 05 10:19:06 2015] Warning: Failed to remove file,folder trying again
    [Thu Mar 05 10:19:06 2015] Warning: Failed again to remove file,folder
    [Thu Mar 05 10:19:06 2015] Warning: Failed to remove file,folder trying again
    [Thu Mar 05 10:19:06 2015] Warning: Failed again to remove file,folder
    [Thu Mar 05 10:19:06 2015] Warning: Failed to remove file,folder trying again
    [Thu Mar 05 10:19:06 2015] Warning: Failed again to remove file,folder
    [Thu Mar 05 10:19:06 2015] Warning: Failed to remove file,folder trying again
    [Thu Mar 05 10:19:06 2015] Warning: Failed again to remove file,folder
    [Thu Mar 05 10:19:07 2015] Warning: Failed to remove file,folder trying again
    [Thu Mar 05 10:19:07 2015] Warning: Failed again to remove file,folder
    [Thu Mar 05 10:19:07 2015] Warning: Failed to remove file,folder trying again
    [Thu Mar 05 10:19:07 2015] Warning: Failed again to remove file,folder
    [Thu Mar 05 10:19:07 2015] *-*-*-*-*-*- :: END :: - SUMMARY OF Warnings -*-*-*-*-*-*
    [Thu Mar 05 10:19:07 2015] ---------------------------------------------------------
    [Thu Mar 05 10:19:07 2015] *=*=*=*=*=*=*=*=* :: End Session :: *=*=*=*=*=*=*=*=*=*=*
    [Thu Mar 05 10:19:07 2015] ---------------------------------------------------------

  • .key.pem file missing from /etc/certificates

    Hi all
    I purchased an authority certificate from one of the big names.
    It's a wildcard cert for mail.domain, ical.domain etc that I want to setup.
    I've downloaded the cert from the provider and imported it into Keychain via Server Admin. That side all looks great but the cert will not work with any services. They just hang.
    Server log reports that cert.domain.verylongnumber.key.pem is missing from /etc/certificates.
    I had a look and indeed it's not there.
    .cert.pem and .chain.pem and .concat.pem are all present and correct. So where is .key.pem
    Thing is, I was using a self signed cert before and that does have a .key.pem file in /etc/certificates and that works fine....
    Cheers
    Ryan

    Solved.
    Turns out that the Certificate supplier (Globalsign in my case) don't supply the private key in the right format for OS X Server to understand - which is probably standard practice.
    10.6 Server requires the key in .pem format - mine was supplied as .pkcs12 (.pfx/.p12)
    You need to use openssl in Terminal to convert it to .pem as follows
    openssl pkcs12 -in mykey.pfx -out mykey.pem -nodes
    Then it can be dropped into Certificate Manager in Server Admin

  • Generate SSL cert with stronger signature algorithm such as RSA-SHA 1 or SHA 2 from Certificate Authority Version: 5.2.3790.3959

    We have a Certificate Authority (Version: 5.2.3790.3959) configured on  Windows 2003 R2 server in our environment. How do i generated SSL cert with stronger signature algorithm such as with SHA1 or SHA2
    Currently i am only able to generate SSL cert with md5RSA.

    Hi,
    Since you are using Windows Server 2003 R2 as CA, the hash algorithm cannot be changed, while in Windows 2008 and 2008 R2, changing the hash algorithm is possible.
    Therefore, you need to build a new CA to use a new algorithm.
    More information for you:
    Is it possible to change the hash algorithm when I renew the Root CA
    http://social.technet.microsoft.com/Forums/windowsserver/en-US/91572fee-b455-4495-a298-43f30792357e/is-it-possible-to-change-the-hash-algorithm-when-i-renew-the-root-ca?forum=winserversecurity
    Changing public key algorithm of a CA certificate
    http://social.technet.microsoft.com/Forums/windowsserver/en-US/0fd19577-4b21-4bda-8f56-935e4d360171/changing-public-key-algorithm-of-a-ca-certificate?forum=winserversecurity
    modify CA configuration after Migration
    http://social.technet.microsoft.com/Forums/windowsserver/en-US/0d5bcb76-3a04-4bcf-b317-cc65516e984c/modify-ca-configuration-after-migration?forum=winserversecurity
    Best Regards,
    Amy Wang

  • Webserver refuses to take SSL cert

    My SSL cert is installed on my server and when I go to Settings pane in Server.app for the host and edit "SSL Certificate" and choose my cert, the UI will collapse the pane below showing the various services. This is because it applies the cert to all services. When I click OK to accept the setting, it should show my cert right after "SSL Cert:" because should now be applied to all services.
    Instead it shows "Custom". When click th "Edit" button again to see whats going on, it shows that all services are using my cert - except the last one - "Websites (Server Website - SSL)"
    For that, is simply shows "None". Changing it to my cert then clicking OK, has no effect. It just reverts back to "None".
    Apache wont start because there is no cert specified and specifying it manually in ..
    "/Library/Server/Web/Config/apache2/sites/0000_any_443_.conf"
    ..does no good because OS X simply overwrites it from some place.
    So at this point it's impossible to get Apache going on this host. The Server application refuses to accept my cert for the website. I dont get any errors and I dont see any in the logs either pertaining to some failure to apply the setting.
    Any ideas?

    I forgot to mention that when the Certificate Assistant ask for the Issuer in one of its screen, choose the Intermediate CA certificate. Also, the four PEM files is created in /etc/certificates.
    On a fresh Server app install after your get OD Master running or after you have done the web:command=restoreFactorySettings, visit Server app Certificates screen and Custom select the just created Leaf SSL Certificate next to the Web (Default Server - SSL). This will create the default SSL certificate in the Web service window.
    Also, if any one of the three *conf files are missing in the sites folder, Server app will hose the folder by renaming it as sites-unusable-nnnn and recreate a fresh sites folder with fresh copies of the *.conf files. In addition, if you read the comments within the 0000_any_80_.conf and 0000_any_443_.conf files, there are certain apache http directives which are off-limits to administrator as Server app will modify their values. It suggests that you create a .conf files with your amendments (of course, they must be within the Virtual Host context) and use an Include directive or through the use of the WebApps mechanism.
    Furthermore, you must not set a specific IP address for all your virtual hosts but use Any instead. Since I want to use the built-in Wiki service, I have added wiki.domain.com as Additional Domains for both the Default Servers (since the Default Servers refuse to use ServerName). For my case, since I have multiple IP addresses, I have to specifically amend the virtual_host_global.conf file with a static IP address for the Listen 80 and 443 directives, and since Server app will undo the amendment within the sites folder, I have to bring the virtual_host_global.conf file up one level to the apache2/ folder, amend httpd_server_app.conf to load this virtual_host_global.conf file instead...see below the relevant section of my httpd_server_app.conf file:
    <IfDefine WEBSERVICE_ON>
        Include /Library/Server/Web/Config/apache2/sites/0000_*.conf     <--- instead of "*.conf"
    </IfDefine>
    <IfDefine !WEBSERVICE_ON>
    #    Include /Library/Server/Web/Config/apache2/sites/virtual_host_global.conf
        Include /Library/Server/Web/Config/apache2/sites/0000_any_80_.conf
        Include /Library/Server/Web/Config/apache2/sites/0000_any_443_.conf
    </IfDefine>
    Include /Library/Server/Web/Config/apache2/virtual_host_global.conf
    Include /Library/Server/Web/Config/apache2/httpd_server_app_tweaks.conf
    The httpd_server_app_tweaks.conf file is my performance tweaks (e.g. StartServers, MinSpareServers, etc.)
    So Server app can happily modify the virtual_host_global.conf file within the sites folder but my settings remain safe one level up.

  • SSL Cert requiring intermediate CA chain breaks 10.5.8 caldavd?

    Mac OS X Server 10.5.8
    I just upgraded from a self-signed cert to a cert from StartCom, which requires use of an intermediate certificate on the server. I imported it using Server Admin. It and the intermediate cert are present in the /Library/Keychains/System.keychain and in /etc/certificates. Mail (Both postfix and cyrus) are happy with it. Apache is happy with it.
    caldavd, however, reports the following:
    +2009-10-25 22:42:11-0700 [-] [caldav-8008] [startup] Adding server at :8008+
    +2009-10-25 22:42:11-0700 [-] [caldav-8008] [startup] Adding SSL server at :8443+
    +2009-10-25 22:42:11-0700 [-] [caldav-8008] [-] Traceback (most recent call last):+
    +2009-10-25 22:42:11-0700 [-] [caldav-8008] [-] File "/usr/share/caldavd/bin/twistd", line 21, in <module>+
    +2009-10-25 22:42:11-0700 [-] [caldav-8008] [-] run()+
    +2009-10-25 22:42:11-0700 [-] [caldav-8008] [-] File "/usr/share/caldavd/lib/python/twisted/scripts/twistd.py", line 27, in run+
    +2009-10-25 22:42:11-0700 [-] [caldav-8008] [-] app.run(runApp, ServerOptions)+
    +2009-10-25 22:42:11-0700 [-] [caldav-8008] [-] File "/usr/share/caldavd/lib/python/twisted/application/app.py", line 379, in run+
    +2009-10-25 22:42:11-0700 [-] [caldav-8008] [-] runApp(config)+
    +2009-10-25 22:42:11-0700 [-] [caldav-8008] [-] File "/usr/share/caldavd/lib/python/twisted/scripts/twistd.py", line 23, in runApp+
    +2009-10-25 22:42:11-0700 [-] [caldav-8008] [-] _SomeApplicationRunner(config).run()+
    +2009-10-25 22:42:11-0700 [-] [caldav-8008] [-] File "/usr/share/caldavd/lib/python/twisted/application/app.py", line 157, in run+
    +2009-10-25 22:42:11-0700 [-] [caldav-8008] [-] self.application = self.createOrGetApplication()+
    +2009-10-25 22:42:11-0700 [-] [caldav-8008] [-] File "/usr/share/caldavd/lib/python/twisted/application/app.py", line 202, in createOrGetApplication+
    +2009-10-25 22:42:11-0700 [-] [caldav-8008] [-] ser = plg.makeService(self.config.subOptions)+
    +2009-10-25 22:42:11-0700 [-] [caldav-8008] [-] File "/usr/share/caldavd/lib/python/twistedcaldav/tap.py", line 754, in makeService+
    +2009-10-25 22:42:11-0700 [-] [caldav-8008] [-] service = serviceMethod(options)+
    +2009-10-25 22:42:11-0700 [-] [caldav-8008] [-] File "/usr/share/caldavd/lib/python/twistedcaldav/tap.py", line 727, in makeService_Slave+
    +2009-10-25 22:42:11-0700 [-] [caldav-8008] [-] passwdCallback=_getSSLPassphrase+
    +2009-10-25 22:42:11-0700 [-] [caldav-8008] [-] File "/usr/share/caldavd/lib/python/twistedcaldav/tap.py", line 423, in _init_+
    +2009-10-25 22:42:11-0700 [-] [caldav-8008] [-] sslmethod=sslmethod+
    +2009-10-25 22:42:11-0700 [-] [caldav-8008] [-] File "/usr/share/caldavd/lib/python/twisted/internet/ssl.py", line 79, in _init_+
    +2009-10-25 22:42:11-0700 [-] [caldav-8008] [-] self.cacheContext()+
    +2009-10-25 22:42:11-0700 [-] [caldav-8008] [-] File "/usr/share/caldavd/lib/python/twistedcaldav/tap.py", line 437, in cacheContext+
    +2009-10-25 22:42:11-0700 [-] [caldav-8008] [-] ctx.usecertificate_chainfile(self.certificateChainFile)+
    +2009-10-25 22:42:11-0700 [-] [caldav-8008] [-] OpenSSL.SSL.Error: [('x509 certificate routines', 'X509check_privatekey', 'key values mismatch')]+
    But the key and the certificate do match, as confirmed by the other apps working fine and openssl x509/rsa -modulus.
    /etc/caldavd/caldavd.plist contains:
    <key>SSLAuthorityChain</key>
    <string>/etc/certificates/osxserver.example.com.chcrt</string>
    <key>SSLCertificate</key>
    <string>/etc/certificates/osxserver.example.com.crt</string>
    <key>SSLPort</key>
    <integer>8443</integer>
    <key>SSLPrivateKey</key>
    <string>/etc/certificates/osxserver.example.com.key</string>
    <key>ServerHostName</key>
    <string>osxserver.example.com</string>
    Using openssl I verified that those three files are, in fact, correct.
    If I remove the filename from the SSLAuthorityChain attribute, the server starts normally but, naturally, connections fail unless I add the intermediate certificate to the local client's keychain.
    Not sure where to go next. I haven't been able to check Server 10.6.1 yet.

    The point that it's breaking on is obviously an Apple modification because Twisted does not and has never supported loading intermediate CA certs from a chain file.
    http://twistedmatrix.com/trac/log/trunk/twisted/internet/ssl.py?rev=26525
    I would suggest creating a little test script that does what the caldavd file does. The related documentation is http://packages.python.org/pyOpenSSL/openssl-context.html

Maybe you are looking for

  • How do I get Mail to download mail and delete it from the server?

    I don't think Mail is downloading my E-mail from my server to my computer. My main e-mail account is set up as a POP mail account and I have it set to: "remove a copy from server after receiving message: right away" I have a couple of years of e-mail

  • IPhone 6 Plus display supersized. I can't even log on. How do I reboot and bring back to normal size window

    my iphone 6plus display zoomed to a super size so much so I can't even log on now or get to the controls. How do I correct this?

  • Is it worth to get a used macbook pro

    hi, guys. I am looking at a used macbook pro from early 2009 with configuration 2.66Ghz Core 2 Duo 8GB of DDR3 RAM (2x4GB) 500 GB SSD hard-drive [which advertisement said it was upgraded at Apple Store for 600 dollars] Nvidia GeForce 9600M GT (512MB)

  • Resetting the UIViewRoot

    I am navigating between a non JSF page and a JSFpage. The JSF page is backed by a session scoped bean. This is the scenario: 1. In the non JSF page, user clicks a button which navigates to a JSF page (I do a sendRedirect at the server side.. in my se

  • Peoplesoft integration with solution manager

    Hi Experts, I would like to know whether peoplesoft can be integrated with SAP solution manager and whether other third party applications can be integrated with Solman... it can be helpdesk, monitoring or any other scenario... Please pass on any inf