Your key was not certified by CA

I have created new user using CA process but for nearly 4 hours I am not able to push server to certify new id.

  • tell ca show queue shows 0 items in queue

  • tell adminp process all does not help

Looking into log I can see the request was process by CA but when trying to connect to server I still get “Your key was not certified. Try later”.

Any ideas ?

thx

Subject: Your key was not certified by CA

Is the registration server the same as the admin server. If not, then the admin4 requests must be replicated to the admin server to be processed and then replicated down. This will cause a delay.

Things to check:

see if the registration of the user was “Approved by Registration Authority”. This document can be seen in the “Certification Authority Requests\Certificate Requests” view of the admin4.nsf

next- if the CA has processed the request, it will now have a status of “Issued by Certification Authority” and an Admin Request will be created with the Action: “Recertify Person in Domino Directory”. The AdminP task on the Administration server will process this request and update the person document with the signed certificate

other things to look for:

is the CA loaded? is it unlocked?

best thing to do is look in the admin4.nsf to see if any of the reguests failed.