The maintenance certificate is visible for a system in the SAP Supportporta
Hi Guys,
We are using automatic distribution of maintenance certificates by SAP Solution Manager.
We are ok with prerequisites ( back. jobs , system data , SDCCN jobs etc.) but maintenance certificate is not being applied to the satellite systems.
report RAGS_MK_DISPLAY_FILE does not list down systems and neighter I can see maintenance cert. in SAP support portal.
Can somebody provide hint.
Best Regards,
Tushar
>
TusharC Chavan wrote:
> We are using automatic distribution of maintenance certificates by SAP Solution Manager.
>
> We are ok with prerequisites ( back. jobs , system data , SDCCN jobs etc.) but maintenance certificate is not being applied to the satellite systems.
>
> report RAGS_MK_DISPLAY_FILE does not list down systems and neighter I can see maintenance cert. in SAP support portal.
Hi Tushar,
Have you already checked this SAP Note with hints for trouble shooting?
[SAP Note 1280664 - Distribution of maintenance certificates: Troubleshooting|https://service.sap.com/sap/support/notes/1280664]
General information: http://www.service.sap.com/maintenancecertificate
Report RAGS_MK_DISPLAY_FILE and SAP Support Portal does not show any entries
==> That means, SolMan has not requested successfully Maintenance Certificates.
Hints for trouble shooting:
- check log of job REFRESH_ADMIN_DATA_FROM_SUPPORT
- check whether these SAP Note have been already applied. Both SAP Notes are linked in troubleshooting note.
1293657 - Error in distribution of Maintenance Certificates via SDCCN
1251060 - Error in requirement process of maintenance certificate
Good luck and best regards,
Ruediger
Similar Messages
-
"Automatic Maintenance Certificate" is not updating satellite systems
Hi,
I want to activate Automatic Maintenance Certificate via solution manager to my satellite systems
Solution Manager is 7.01 at SPS23
Satellite systems are all on Netweaver 7.01 SPS06
Right now, Solution Manager receives automatically the maintenance certificate.
Unfortunately, my satellite systems do not receive it.
on my satellite system (PRD - ECC 6.04), in SDCCN, I see that job "Maintenance Package" shows these messages:
Maintenance Package completed
Updating license data completed from destination [Maintenance Package]
No active master Solution Manager destination maintained. [Maintenance Package]
Updating license data not possible [Maintenance Package]
note that I reviewed completely SAP note 1280664 to no avail.Hi Daniel,
This is exactly the solution.
I finally also found another solution from http://forums.sdn.sap.com/post!reply.jspa?messageID=9122507#9122507
In managed system, goto SDCCN, browse through the menu options to reach task specific settings and then edit the RFC destination settings.
In RFC settings you get to see RFC of SM system.
Make the SM destination as master destination. Tick the Master checkox.
Thanks for your help. -
No Maintenance Cycle is open for current system
Hi Experts,
We are facing a peculiar problem in ChaRM implementation.
We have successfully created the maintenance cycle .But when we try to create change transaction & get it approved then it is showing an error : " No Maintenance cycle is open for current system".
We have checked all the configuration like STMS & system landscape too. All are working fine.
Any help will be appreciated.
Pooja Mittal.Hi,
you might have different reasons why it is not working
1 check the status of the tasklist (or cycle) and of your project (service desk document) (via SOLAR_PROJECT_ADMIN)
2. check your authorisation for project
3. check the subject code of the change request (Implementation or Maintenance project ?) check
CRMD_ORDER on your change request
4. check the type of project you have activated (should match the above subject code) via SOLAR_PROJECT_ADMIN
5. check the target system of your change request : it should be a productive environment
I hope it helps
br Xavier -
Hi,
I got this message after importing about ten or so H.264 files that I encoded from Adobe media encoder. "adobe encore the software that's used to decode the media is not available on this system. installing the correct decoders for the file you are working with may help correct the problem."
The files we're shot with HD cameras. Edited in Premiere Pro CS3. I installed the update 3.0.1 with still the same error.
I also tried a brand new project and after about ten or so files being imported into a timeline, the system crash. I tried this twice....
Thanks in AdvanceHi Hunt,
Here is the skinny. A window base PC. footage shot with HD sony HD cameras, Project imported to Premiere CS3. Once completed sent file to Adobe media encoder and render them as H.264 widescreen high Quality. Imported them to Adobe Encore CS3. After about ten files or so. I got the error message. Did all the basic trouble shoot like restarting the computer, got latest patch. Even build a new test project with the same problem.
Something else I read in the forums, is the encore will transcoded the project to Mpeg 2 anyway, after looking at my project I realized those few files were indeed untranscoded. So it will be a double compression and I dont want that. So, my new question is, what is H.264 good for ?????????? I was research that Mpeg 2 is a faster render but H.264 is a slower render but better quality.....
what do you think ????
Peter -
I want to see the previous month workload statistics for my system.
Hello,
I want to see the previous month workload statistics for my system. When I go to st03n ->expert mode, go to month view and when I click on previous month workload analysis I see data for 12 days only. However, the data is available in weekly view.
What can be the problem?
Please help.which version of SAP System you are using
try this option ST03N -> Expert mode -> Total -> Choose the month -
Need to change screen colours for each system in the landscape
hi ,
we are in need of having different themes for different systems in the landscape .
that is
if i click development system , the screen with 'theme1'
if i click quality system system , the screen with 'theme2'
if i click production system system , the screen with 'theme3'
how to configure this colour setting in accord to the system for all the usersHi Susin,
You would do this by changing the parameter sapgui/theme for each system. It uses the Tradeshow theme by default as of Web AS 6.40. As long as the SAPgui itself is set to "System Dependant" then it should work fine.
Regards,
Nelis -
The name of the security certificate is invalid or does not match the name of the site error?
I am looking for some help folks. We are in a Outlook 2007/Exchange2010/Windows2008R2 environment.
When users open Outlook off the network, and occasionally on the network, they get the error
The name of the security certificate is invalid or does not match the name of the site error
The CAS hostname is HRECAS.XXX.ORG. The URL that is listed on the SSL certificate (issued by VeriSign) is WEB.XXX.ORG. WEB.XXX.ORG is what users use to get to OWA and such.
When I use testexchangeconnectivity.com, under certificate name validation I see an error that reads:
Host name autodiscover.xxx.org doesn't match any name found on the server certificate CN=web.xxx.org.
Does this mean somehow we have to add autodiscover.xxx.org on the certificate?
I tried to add AutoDiscoverExternalUri using
http://support.microsoft.com/?kbid=940726 &
http://social.technet.microsoft.com/Forums/en-US/exchange2010/thread/2d0c0f5f-e4ec-4f33-a37d-b94fd7a2319f on the CAS server.
Set-ClientAccessServer -identity HRECAS -AutodiscoverServiceExternalUri
https://autodiscover.xxx.org/Autodiscover/Autodiscover.xml
I get an error that says
"a positional parameter cannot be found that accepts argument '-AutoDiscoverExternalUri'.
Can someone point to me what I am doing wrong with the command and whether I should be concerning myself with adding that line? By the way the
InternalUrl information is already configured on the system. Also should I edit the certificate to add autodiscover.xxx.org?
Thank in advance for your support.
TD
TDHi Tapera,
Thanks for the question.
SRV record is a good idea. You can set the SRV to
https://web.abc.com/autodiscover/autodiscover.xml but you must make sure the
url can be resolved from External clients.
In addition, there is still a issue. It is hard coded that Outlook will find the autodiscover by the orders below:
1. Access autodiscover via SCP in AD.
https://web.abc.com/autodiscover/autodiscover.xml
2. If SCP access fails, it will try:
https://abc.com/autodiscover/autodiscover.xml
3. Then
https://autodiscover.abc.com/autodiscover/autodiscover.xml
4. Local XML file
5. SRV record
As you can see, Outlook will try SRV record at last. Therefore, it will still try to access
https://autodiscover.abc.com/autodiscover/autodiscover.xml each time you run Outlook. Then the certificate warning will still persists.
I have a workaround solution. You can do a local policy to disable the autodiscover to access the
https://autodiscover.abc.ocom/autodiscover/autodiscover.xml by:
1.
On the Outlook client machine, open regedit and add the following key:
HKEY_CURRENT_USER\Software\Microsoft\Office\12.0\Outlook\Autodiscover
"ExcludeHttpsAutodiscoverDomain"
"ExcludeHttpsRootDomain"
2.
Then set the value to “1” on the above two keys.
Thanks,
Simon -
I've completed an upgrade from Exchange 2003 to Exchange 2013 and I have one last SSL message that I can't get rid of. I've installed a 3rd party cert that is working great for webmail and cell phone access but for some reason the Outlook 2010/2013
clients get prompted for a security warning. I just implemented the SSL cert yesterday and I've noticed that new installs of Outlook seem to work just fine. My Outlook 2013 client doesn't prompt me with the message but I have other users who are
still getting the "The name of the security certificate is invalid or does not match the name of the site" error. The domain on the cert error show up as server.mydomain.local. I've gone through all the virtual directories and pointed
all of my internal and external URL's to https://mail.mydomain.com. This made one of the two warnings go away but not the second. I've dug around on google and gone through everything I could find here and as far as I can tell my internal
and external url's are configured properly and I can't figure out where this error is originating from. Any ideas on where I should look outside of the virtual directories?
I'm including a good link I found that contains all of the virtual directories I updated. I've checked them through both CLI and GUI and everything looks good.
http://www.mustbegeek.com/configure-external-and-internal-url-in-exchange-2013/
http://jaworskiblog.com/2013/04/13/setting-internal-and-external-urls-in-exchange-2013/Hi,
When the Outlook connect to Exchange 2013/Exchange 2010, the client would connect to Autodiscover service to retrieve Exchange service automatically from server side. This feature is not available in Exchange 2003 Outlook profile.
Generally, when mailbox is moved to Exchange 2013, the Outlook would connect to server to automatically update these information. It needs time to detect and update the changes in server side. I suggest we can do the following setting For autodiscover service:
Get-ClientAccessServer | Set-ClientAccessServer –AutodiscoverServiceInternalUri https://mail.mydomain.com/autodiscover/autodiscover.xml
Please restart IIS service by running IISReset in a Command Prompt window after all configuraions.
Regards,
Winnie Liang
TechNet Community Support -
Due to our company changing names, we recently moved to a new domain. All users were at first getting a certificate error when opening Outlook "the name on the security certificate is invalid or does not match the name of the site." After our network
admin made some changes, nobody receives this error anymore except one user. The URL at the top of the security alert is the old domain, mail.olddomain.com. I checked the users Exchange Proxy Settings in Outlook, everything is showing the URL's of the new
domain so I'm not sure where this is coming from. I'm assuming it has to be something on her local machine since she is the only one who still gets the error.
Thanks in advance for any help.
Exchange server 2008
Outlook 2010Hi,
Please follow all above suggestions to confirm whether the issue happens in OWA. And run Test E-mail AutoConfiguration in Outlook to check whether there is any URL settings using the old domain.
If the issue doesn’t happen in OWA and your URL configurations are all same as others and set correctly, please create a new Outlook profile to have a try.
Thanks,
Winnie Liang
TechNet Community Support -
Good day Guys
First of all I am not an Exchange Expert, and I might be asking a very stupid question, but please bare with me. :)
While I was on leave our Mail server fell over and The company got a Specialist to help out for the time being.
We where\are on Microsoft Exchange 2007 , which Fell over, and the specialist was able to recover as much data as he could.
They then installed Exchange 2013 and tried to migrate everything from 2007 to 2013 and not everything migrated over.
But the problem is, Outlook Anywhere was enable on 2007 and worked a 100% (before the disaster)
With Exchange 2013 I get the following error message when trying to connect With Outlook 2013, using an external connection:
"There is a problem with the proxy server's security certificate. The name on the security certificate is invalid or does not match the name of the target site "Mailserver"
Outlook is unable to connect to the Proxy server. (Error Code 0)"
Has anyone had the Similar when migrating over from 2007 to 2013 or is this an Issue on IIS and nothing to do with Exchange migration?
Your assistance will be greatly appreciated.Hi,
Firstly, I would suggest we use Exchange 2013 FE as the Outlook Anywhere proxy server.
For the certificate issue, it mostly occurs because the host name that Outlook are trying to access does not match the certificate SAN. Please check with this point. If they do not match, you
can change the host name by referring to the following article:
https://support.microsoft.com/kb/940726/en-us?wa=wsignin1.0
Thanks,
Simon Wu
TechNet Community Support -
Scenario - Two Domains in different forests in production
Domain ABC.com - Contains Exchange Server 2010 + Windows 2008 R2 AD Domain controllers
Domain XYZ.com - Windows 2008 R2 Domain controllers + Contains all users + Desktop compuer accounts.
User logs in to the domain XYZ.com from a desktop and he configures outlook using the user ID in domain ABC.com.
When he opens Outlook it is getting connected and he gets an error message pop -up saying 'The name on the security
certificate is invalid or does not match the name of the site'
I am using an external certificate from Thawte for autodiscover.ABC.com & webmail.ABC.com
I read about one solution provided in MS KB article - http://support.microsoft.com/kb/2772058
But in my scenarion there are two domain involved. Pls guide how to clear this.
Hi,
How about logon [email protected] on ABC domain via OWA?
If OWA works well, it seems and issue on the Autodiscover side.
Please run "Test E-mail AutoConfiguration" on Outlook to check whether this issue caused by Certificate Mismatch.
1.
Firstly make sure how many host name in your certificate the certificate. Run “Get-ExchangeCertificate | select certificatedomain”.
2.
Secondly, check the web services URLs which Outlook are trying to connect to. Run “Test Email AutoConfiguration”.
3.
In this scenario, you need to check the host name for the following services:
Autodiscover, EWS, OAB, ECP, UM
4.
If any of the urls above does not match the one in the certificate, refer to the following article to change it via EMS:
http://support.microsoft.com/kb/940726
More details to see following FAQ on "Checklist for Exchange Certificate issues":
http://social.technet.microsoft.com/Forums/en-US/fa78799b-5c55-4c71-973b-0e186612ff6f/checklist-for-exchange-certificate-issues?forum=exchangesvrgeneral
Thanks
Mavis Huang
TechNet Community Support -
Hi,
I know this question has been asked a ton of times, but I haven't found any instance of this question asked for exchange 2013. Yes, I've seen Exchange 2010, Exchange 2007, but not Exchange 2013. The symptoms are all similar. Here is a description:
1 Exchange 2013 server, all roles installed.
External domain name: associates.com
Internal AD domain name: associates.local
Client installed a third party SSL certificate, but did not purchase a SAN or UC certificate, so there is one namespace on the SSL cert, and that represents the external OWA name: mail.associates.com
Now, when internal OUtlook 2010 clients start, they get the "The name of the security certificate is invalid or does not match the name of the site."
I'm just wondering if http://support.microsoft.com/kb/940726 still applies to Exchange 2013 to fix this issue. Does this article apply to Exchange 2013? If so, I will follow the above
article. If not, please direct me to any articles for Exchange 2013 that addresses this.
the autodiscoverserviceuri points to:
https://netbiosnameofmailserver.associates.local/Autodiscover/Autodiscover.xml
Thanks!
AYes, the http://support.microsoft.com/kb/940726 still applies to Exchange2013.
As per my understanding on this post;
- Poster's Exchange2013 has no SAN certificate.. (usually used for local address like; NETBIOS.Domain.lan). Be reminded that SSL providers will no longer accepts .LAN or .LOCAL in very near future.
- By default it uses local url for EWS, Autodiscover, etc.. (if you don't have SAN certificate installed in your CAS server, you would see the certi warning)
Anyway, I just want to share my case after applying the said work around long time ago (maybe some of you might encounter it as well): my Outlook still showed the certificate warning (I was just keep clicking the YES button).. I was wondering
that time what was wrong with my virtual directory settings.. until I decided to click "NO" for an answer to that certificate warning message, then voila! it didn't bug me anymore. Oh by the way, the certificate warning usually give you a hint
what triggers it like; "autodiscover.Domain.lan" on the first line of message, but in my case it just "NETBIOS.Domain.lan" (didn't make any sense, did it?).. Well, unfortunately I didn't have the chance to figure out what triggered that event.. -
In the midst of Exchange 2013/2007 coexistence configuration.
Currently:
Exchange 2007:
2 CAS\HUB
1 Mailbox server
Exchange 2013 (2 sites):
LA:
1 CAS
2 MBX servers
MKE:
1 CAS
2 MBX servers.
We purchased a certificate from Digicert and added every SAN name we could think of including "legacy.companyname.com", just to be sure. Added certificate to Exchange 2013 CAS servers and 2007 CAS\HUB boxes. Configured virtual directories on Exchange
2013 MKE-CAS01 but not on Exchange 2013 LA-CAS01. Configured virtual directories to on Exchange 2007 CAS\HUB to point to "legacy.companyname.com".
Mailboxes have not been moved yet. I just wanted to get the coexistence between Exchange 2013/2007 up first but some users (not all) receiving
"The name of the security certificate is invalid or does not match the name of the site" for
"LEGACY.COMPANYNAME.COM". I remember configuring the AUTODISCOVER virtual directory for Exchange 2007. Any ideas? Thank you.Hi,
Please make sure that the certificate with "legacy.companyname.com" name is enabled for IIS service. We can check it by running the following command in Exchange server 2007:
Get-ExchangeCertificate | FL
Thanks,
Winnie Liang
TechNet Community Support -
I cannot get my Acrobat Pro to open. I already uninstalled it and re installed it. But still does not open. The program pops to ask for permission to open the program, but it never actually opens. I trouble shoot it and it says incompatible application.
It sounds like an issue of trying to run XI on VISTA. That combination does not work. Info on both the Acrobat full version (including sub-version) and OS would help. It might also be an issue of running 11.0.0 on a system that needs the updates to work.
-
The name on the security certificate is invalid or does not match the name of the site exchange 2010
We did an update to SP1 to SP3 for Exchange 2010 over the weekend and now I am seeing the following errors.
"The name on the security certificate is invalid or does not match the name of the site"
Any ideas why an update would effect this. I have looked at the names and everything seems to match up.Hi,
Does the issue happen to all users? If it is, please run the following command to check your certificate configuration:
Get-ExchangeCertificate | fl
Generally, the certificate mismatch issue is caused by the name in URLs doesn't match the certificate names with IIS service. Please make sure all URLs that used to connect Exchange from internal and external should match the certificate names with proper
services.
http://support.microsoft.com/kb/940726
Best Regards,
Winnie Liang
TechNet Community Support
Maybe you are looking for
-
I'm seeing the "No" sign on Startup, and my internal drive doesn't show up.
Good day to you all. It's my first post here and I come to you in desperation. Last night, i was browsing the internet and syncing my iPhone. Suddenly my iMac froze and there's no way to restart it but to press the back button. Upon restarting, it sh
-
How to pass where clause in lov's
Dear all i have creation page in that three lov's are there 1.customername 2,person name 3.address my requirement is person name and adress will come based on customername(companyid) and also orgid in my case i taken 3 lov vo's for lov's whet should
-
Hi everyone. This is my first time in here or any other forum actually. I am looking for answers like most of us are. I had never opened my safari window on my iphone must before but noticed that it had a option called databases. Can anyone explain t
-
Hi All - We are planning to go for CUCM direct upgrade from 7.1.3 - 9.1.2 Also for UCCX from 7.0.1 SR5 ---> 8.5.1 --> 8.5.1 SU3 --> 9.0.2 During upgarde of UCCX 8.5.1 on UCS Machine it will ask to eneter CUCM AXL user Credentails which is in 9.1.2, S
-
How to repair a void character?
my macbook air 13" I am using for aImost two years but how sad I discovered this month, I found out one character is void. I don't know how it happenned. I have two kids , 13 and 7 years old, who are using the laptop as well, but of course, they don'