You can subscribe to this list here.
| 2001 |
Jan
|
Feb
|
Mar
|
Apr
|
May
|
Jun
|
Jul
|
Aug
|
Sep
|
Oct
|
Nov
(1) |
Dec
(3) |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| 2002 |
Jan
(3) |
Feb
(2) |
Mar
(8) |
Apr
(3) |
May
(6) |
Jun
(1) |
Jul
(15) |
Aug
(6) |
Sep
|
Oct
(10) |
Nov
(2) |
Dec
(4) |
| 2003 |
Jan
(1) |
Feb
(7) |
Mar
(3) |
Apr
(6) |
May
(7) |
Jun
(5) |
Jul
(5) |
Aug
(25) |
Sep
(14) |
Oct
(2) |
Nov
|
Dec
(2) |
| 2004 |
Jan
(7) |
Feb
(4) |
Mar
(12) |
Apr
(16) |
May
(43) |
Jun
(56) |
Jul
(43) |
Aug
(40) |
Sep
(66) |
Oct
(12) |
Nov
(26) |
Dec
(10) |
| 2005 |
Jan
(13) |
Feb
(33) |
Mar
(16) |
Apr
(7) |
May
(10) |
Jun
(34) |
Jul
(41) |
Aug
(8) |
Sep
(4) |
Oct
(32) |
Nov
(20) |
Dec
(25) |
| 2006 |
Jan
(30) |
Feb
(101) |
Mar
(5) |
Apr
(75) |
May
(74) |
Jun
(22) |
Jul
(6) |
Aug
(70) |
Sep
(19) |
Oct
(21) |
Nov
(31) |
Dec
(50) |
| 2007 |
Jan
(15) |
Feb
(20) |
Mar
(24) |
Apr
(33) |
May
(13) |
Jun
(18) |
Jul
(13) |
Aug
(7) |
Sep
(63) |
Oct
(68) |
Nov
(29) |
Dec
(68) |
| 2008 |
Jan
(30) |
Feb
(33) |
Mar
(30) |
Apr
(103) |
May
(78) |
Jun
(48) |
Jul
(72) |
Aug
(24) |
Sep
(62) |
Oct
(63) |
Nov
(70) |
Dec
(37) |
| 2009 |
Jan
(34) |
Feb
(35) |
Mar
(64) |
Apr
(34) |
May
(34) |
Jun
(58) |
Jul
(30) |
Aug
(30) |
Sep
(46) |
Oct
(52) |
Nov
(12) |
Dec
(23) |
| 2010 |
Jan
(121) |
Feb
(18) |
Mar
(53) |
Apr
(62) |
May
(62) |
Jun
(20) |
Jul
(33) |
Aug
(20) |
Sep
(36) |
Oct
(35) |
Nov
(44) |
Dec
(63) |
| 2011 |
Jan
(19) |
Feb
(32) |
Mar
(94) |
Apr
(41) |
May
(47) |
Jun
(25) |
Jul
(34) |
Aug
(20) |
Sep
(9) |
Oct
(41) |
Nov
(33) |
Dec
(24) |
| 2012 |
Jan
(12) |
Feb
(36) |
Mar
(48) |
Apr
(32) |
May
(20) |
Jun
(15) |
Jul
(32) |
Aug
(13) |
Sep
(33) |
Oct
(54) |
Nov
(25) |
Dec
(16) |
| 2013 |
Jan
(45) |
Feb
(39) |
Mar
(38) |
Apr
(50) |
May
(29) |
Jun
(30) |
Jul
(33) |
Aug
(12) |
Sep
(9) |
Oct
(25) |
Nov
(29) |
Dec
(20) |
| 2014 |
Jan
(25) |
Feb
(19) |
Mar
(16) |
Apr
(33) |
May
(27) |
Jun
(37) |
Jul
(29) |
Aug
(27) |
Sep
(37) |
Oct
(58) |
Nov
(109) |
Dec
(26) |
| 2015 |
Jan
(4) |
Feb
(35) |
Mar
(22) |
Apr
(35) |
May
(28) |
Jun
(20) |
Jul
(4) |
Aug
(16) |
Sep
(37) |
Oct
(13) |
Nov
(13) |
Dec
(14) |
| 2016 |
Jan
(22) |
Feb
(7) |
Mar
(23) |
Apr
(30) |
May
(10) |
Jun
(10) |
Jul
(15) |
Aug
(12) |
Sep
(22) |
Oct
(31) |
Nov
(5) |
Dec
(5) |
| 2017 |
Jan
(30) |
Feb
(25) |
Mar
(28) |
Apr
(4) |
May
(19) |
Jun
(13) |
Jul
(7) |
Aug
(1) |
Sep
(2) |
Oct
(5) |
Nov
(12) |
Dec
(2) |
| 2018 |
Jan
(7) |
Feb
|
Mar
(7) |
Apr
(2) |
May
(8) |
Jun
(18) |
Jul
(6) |
Aug
(3) |
Sep
(15) |
Oct
(33) |
Nov
(13) |
Dec
(7) |
| 2019 |
Jan
(5) |
Feb
(7) |
Mar
(30) |
Apr
(5) |
May
(4) |
Jun
(69) |
Jul
(86) |
Aug
(22) |
Sep
(6) |
Oct
(7) |
Nov
(5) |
Dec
(3) |
| 2020 |
Jan
(10) |
Feb
(12) |
Mar
(22) |
Apr
(5) |
May
(1) |
Jun
(4) |
Jul
(6) |
Aug
|
Sep
(9) |
Oct
|
Nov
|
Dec
(1) |
| 2021 |
Jan
(4) |
Feb
(11) |
Mar
(7) |
Apr
(7) |
May
|
Jun
(3) |
Jul
(10) |
Aug
(6) |
Sep
|
Oct
|
Nov
(18) |
Dec
(2) |
| 2022 |
Jan
(1) |
Feb
(1) |
Mar
|
Apr
|
May
|
Jun
(2) |
Jul
|
Aug
(4) |
Sep
|
Oct
|
Nov
|
Dec
|
| 2023 |
Jan
|
Feb
|
Mar
|
Apr
(1) |
May
(1) |
Jun
|
Jul
|
Aug
(5) |
Sep
|
Oct
|
Nov
|
Dec
|
|
From: Joan T. i B. <joa...@gm...> - 2012-04-13 14:38:00
|
Many thanks, we will use JBoss 6.1 meanwhiel. Cheers, Joan Tomàs Al 12/04/12 20:19, En/na ejbca-support ha escrit: > On 2012-04-12 20:05, Joan Tomàs i Buliart wrote: >> Hi, >> >> First of all sorry to bother you about that. This is my first post in this list >> and my English isn't good enough. >> >> I've configured EJBCA over JBoss 6.1 without problems (Ubuntu 12.04+JBoss >> 6.1+postgreSQL 9.1.3+EJBCA 4.0.10). >> I've seen in http://www.ejbca.org/installation.html#JBoss that JBoss 7 is not >> supported. Even though, this includes JBoss 7.1? Will it be supported in the >> near future? > We have not yet scheduled Jboss 7 support. The same goes for JDK 7. > Stay tuned! > > Cheers, > Anders > tech support > > >> I've tried to installed to install by means of 'ant bootstrap' and the first >> error has been: >> >> compile-util: >> [javac] Compiling 64 source files to >> /home/jboss/ejbca_4_0_10/modules/ejbca-ejb/build-util >> [javac] X509CA.java:504: package javax.ejb does not exist >> [javac] throw new javax.ejb.EJBException(e); >> [javac] ^ >> [javac] X509CA.java:512: package javax.ejb does not exist >> [javac] throw new javax.ejb.EJBException(e); >> [javac] ^ >> [javac] Note: Some input files use or override a deprecated API. >> [javac] Note: Recompile with -Xlint:deprecation for details. >> [javac] Note: Some input files use unchecked or unsafe operations. >> [javac] Note: Recompile with -Xlint:unchecked for details. >> [javac] 2 errors >> >> >> Many thanks in advance for your feedback. >> >> Best regards, >> >> Joan Tomàs >> >> >> ------------------------------------------------------------------------------ >> For Developers, A Lot Can Happen In A Second. >> Boundary is the first to Know...and Tell You. >> Monitor Your Applications in Ultra-Fine Resolution. Try it FREE! >> http://p.sf.net/sfu/Boundary-d2dvs2 >> _______________________________________________ >> Ejbca-develop mailing list >> Ejb...@li... >> https://lists.sourceforge.net/lists/listinfo/ejbca-develop > > ------------------------------------------------------------------------------ > For Developers, A Lot Can Happen In A Second. > Boundary is the first to Know...and Tell You. > Monitor Your Applications in Ultra-Fine Resolution. Try it FREE! > http://p.sf.net/sfu/Boundary-d2dvs2 > _______________________________________________ > Ejbca-develop mailing list > Ejb...@li... > https://lists.sourceforge.net/lists/listinfo/ejbca-develop |
|
From: ejbca-support <ejb...@pr...> - 2012-04-12 18:19:49
|
On 2012-04-12 20:05, Joan Tomàs i Buliart wrote: > Hi, > > First of all sorry to bother you about that. This is my first post in this list > and my English isn't good enough. > > I've configured EJBCA over JBoss 6.1 without problems (Ubuntu 12.04+JBoss > 6.1+postgreSQL 9.1.3+EJBCA 4.0.10). > I've seen in http://www.ejbca.org/installation.html#JBoss that JBoss 7 is not > supported. Even though, this includes JBoss 7.1? Will it be supported in the > near future? We have not yet scheduled Jboss 7 support. The same goes for JDK 7. Stay tuned! Cheers, Anders tech support > I've tried to installed to install by means of 'ant bootstrap' and the first > error has been: > > compile-util: > [javac] Compiling 64 source files to > /home/jboss/ejbca_4_0_10/modules/ejbca-ejb/build-util > [javac] X509CA.java:504: package javax.ejb does not exist > [javac] throw new javax.ejb.EJBException(e); > [javac] ^ > [javac] X509CA.java:512: package javax.ejb does not exist > [javac] throw new javax.ejb.EJBException(e); > [javac] ^ > [javac] Note: Some input files use or override a deprecated API. > [javac] Note: Recompile with -Xlint:deprecation for details. > [javac] Note: Some input files use unchecked or unsafe operations. > [javac] Note: Recompile with -Xlint:unchecked for details. > [javac] 2 errors > > > Many thanks in advance for your feedback. > > Best regards, > > Joan Tomàs > > > ------------------------------------------------------------------------------ > For Developers, A Lot Can Happen In A Second. > Boundary is the first to Know...and Tell You. > Monitor Your Applications in Ultra-Fine Resolution. Try it FREE! > http://p.sf.net/sfu/Boundary-d2dvs2 > _______________________________________________ > Ejbca-develop mailing list > Ejb...@li... > https://lists.sourceforge.net/lists/listinfo/ejbca-develop |
|
From: Joan T. i B. <joa...@gm...> - 2012-04-12 18:05:21
|
Hi, First of all sorry to bother you about that. This is my first post in this list and my English isn't good enough. I've configured EJBCA over JBoss 6.1 without problems (Ubuntu 12.04+JBoss 6.1+postgreSQL 9.1.3+EJBCA 4.0.10). I've seen in http://www.ejbca.org/installation.html#JBoss that JBoss 7 is not supported. Even though, this includes JBoss 7.1? Will it be supported in the near future? I've tried to installed to install by means of 'ant bootstrap' and the first error has been: compile-util: [javac] Compiling 64 source files to /home/jboss/ejbca_4_0_10/modules/ejbca-ejb/build-util [javac] X509CA.java:504: package javax.ejb does not exist [javac] throw new javax.ejb.EJBException(e); [javac] ^ [javac] X509CA.java:512: package javax.ejb does not exist [javac] throw new javax.ejb.EJBException(e); [javac] ^ [javac] Note: Some input files use or override a deprecated API. [javac] Note: Recompile with -Xlint:deprecation for details. [javac] Note: Some input files use unchecked or unsafe operations. [javac] Note: Recompile with -Xlint:unchecked for details. [javac] 2 errors Many thanks in advance for your feedback. Best regards, Joan Tomàs |
|
From: Saeed <sae...@ya...> - 2012-04-12 11:59:06
|
I replaced my database with a working database but the problem still there: my CA token can not be activated and I can not edit the CA. ________________________________ From: ejbca-support <ejb...@pr...> To: Saeed <sae...@ya...>; ejb...@li... Sent: Wednesday, April 11, 2012 11:17 AM Subject: Re: [Ejbca-develop] Problem Activating CA On 2012-04-11 10:10, Saeed wrote: > I tried with clientToolBox to create crl for this CA but it responds with an error message. > > I think when I imported the CA certificate it made a problem, that always the imported CA is considered external > and it has no private keys exists in ejbca. and since the imported CA certificate was the same as the CA that > exists in ejbca, ejbca considered my CA has no keys here, I guess. > I do not wont to remove the CA how this could be handled. If you have a database backup your import should be nullified. Otherwise an option is repairing the database manually. This is done by comparing working CAs with the non-working. CAData seems to be the table... You could also backup the current system, load in a working old copy and save the configuration data. There may be a better way doing this but this is the one I know of :-| Anders tech support > > Saeed > > -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- > *From:* ejbca-support <ejb...@pr...> > *To:* Saeed <sae...@ya...> > *Cc:* ejbca primekey <ejb...@li...> > *Sent:* Tuesday, April 10, 2012 2:27 PM > *Subject:* Re: Problem Activating CA > > On 2012-04-10 13:20, Saeed wrote: > > It sounds like you have destroyed the key or something like that. > Could you try the clientToolBox and see if you get any contact? > If it doesn't work in clientToolBox it won't work in EJBCA. > > The problem with edit CA is new for me. > > I would consider removing the CA if possible. > > Anders > >> >> No I have not upgrade. >> >> What I did before this problem happens, I was testing how to import CA certificate >> Then I imported this CA certificate which is already exists. It gave me a red error message >> of something like "primary key already exist" after that I found the CA token is inactive. >> When I activate it it says CA Activation Successful. >> >> When I restarted the JBOSS it says "activated CA token of type PKCS11" but when I log to the GUI >> it is still inactive. >> >> I also wonder that I can not edit the CA properties and that error appear. >> >> Regards, >> Saeed >> >> -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- >> *From:* Tham Wickenberg <ejb...@pr... <mailto:ejb...@pr...>> >> *To:* Saeed <sae...@ya... <mailto:sae...@ya...>> >> *Cc:* ejbca primekey <ejb...@li... <mailto:ejb...@li...>> >> *Sent:* Tuesday, April 10, 2012 12:53 PM >> *Subject:* Re: Problem Activating CA >> >> Hello, >> >> There is a problem with your configuration. It must have stopped working when you changed the configuration. >> >> It is strange that you would get a CA Activation Successful message though. >> >> Regards, >> Tham Wickenberg - PrimeKey Support Team >> >> On 4/10/12 11:48 AM, Saeed wrote: >>> Pleeeease Help >>> >>> My CA was working properly with Hardtoken HSM. Then suddenly the CA Token Status became offline >>> When I try to activate it, it says CA Activation Successful. But when I check the status again it is still inactive >>> The problem is not with the hardtoken because I have other CA's that uses the same token and working correctly. >>> When I try to Edit this CA the Edit page does not show up it gives the following error: >>> >>> >>> An exception has occurred >>> >>> >>> HardCAToken is not used, configuration error. >>> >>> >>> java.lang.Exception: HardCAToken is not used, configuration error. >>> at org.apache.jsp.ca.editcas.editcas_jsp._jspService(editcas_jsp.java:1924) >>> at org.apache.jasper.runtime.HttpJspBase.service(HttpJspBase.java:70) >>> at javax.servlet.http.HttpServlet.service(HttpServlet.java:803) >>> at org.apache.jasper.servlet.JspServletWrapper.service(JspServletWrapper.java:373) >>> at org.apache.jasper.servlet.JspServlet.serviceJspFile(JspServlet.java:336) >>> at org.apache.jasper.servlet.JspServlet.service(JspServlet.java:265) >>> at javax.servlet.http.HttpServlet.service(HttpServlet.java:803) >>> at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:290) >>> at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:206) >>> at org.jboss.web.tomcat.filters.ReplyHeaderFilter.doFilter(ReplyHeaderFilter.java:96) >>> at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:235) >>> at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:206) >>> at org.apache.catalina.core.StandardWrapperValve.invoke(StandardWrapperValve.java:230) >>> at org.apache.catalina.core.StandardContextValve.invoke(StandardContextValve.java:175) >>> at org.jboss.web.tomcat.security.SecurityAssociationValve.invoke(SecurityAssociationValve.java:182) >>> at org.apache.catalina.authenticator.AuthenticatorBase.invoke(AuthenticatorBase.java:524) >>> at org.jboss.web.tomcat.security.JaccContextValve.invoke(JaccContextValve.java:84) >>> at org.apache.catalina.core.StandardHostValve.invoke(StandardHostValve.java:127) >>> at org.apache.catalina.valves.ErrorReportValve.invoke(ErrorReportValve.java:102) >>> at org.jboss.web.tomcat.service.jca.CachedConnectionValve.invoke(CachedConnectionValve.java:157) >>> at org.apache.catalina.core.StandardEngineValve.invoke(StandardEngineValve.java:109) >>> at org.apache.catalina.connector.CoyoteAdapter.service(CoyoteAdapter.java:262) >>> at org.apache.coyote.http11.Http11Processor.process(Http11Processor.java:844) >>> at org.apache.coyote.http11.Http11Protocol$Http11ConnectionHandler.process(Http11Protocol.java:583) >>> at org.apache.tomcat.util.net.JIoEndpoint$Worker.run(JIoEndpoint.java:446) >>> at java.lang.Thread.run(Thread.java:636) >>> >>> >>> >> >> >> > > > > > > ------------------------------------------------------------------------------ > Better than sec? Nothing is better than sec when it comes to > monitoring Big Data applications. Try Boundary one-second > resolution app monitoring today. Free. > http://p.sf.net/sfu/Boundary-dev2dev > > > > _______________________________________________ > Ejbca-develop mailing list > Ejb...@li... > https://lists.sourceforge.net/lists/listinfo/ejbca-develop |
|
From: ejbca-support <ejb...@pr...> - 2012-04-11 08:17:40
|
On 2012-04-11 10:10, Saeed wrote: > I tried with clientToolBox to create crl for this CA but it responds with an error message. > > I think when I imported the CA certificate it made a problem, that always the imported CA is considered external > and it has no private keys exists in ejbca. and since the imported CA certificate was the same as the CA that > exists in ejbca, ejbca considered my CA has no keys here, I guess. > I do not wont to remove the CA how this could be handled. If you have a database backup your import should be nullified. Otherwise an option is repairing the database manually. This is done by comparing working CAs with the non-working. CAData seems to be the table... You could also backup the current system, load in a working old copy and save the configuration data. There may be a better way doing this but this is the one I know of :-| Anders tech support > > Saeed > > -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- > *From:* ejbca-support <ejb...@pr...> > *To:* Saeed <sae...@ya...> > *Cc:* ejbca primekey <ejb...@li...> > *Sent:* Tuesday, April 10, 2012 2:27 PM > *Subject:* Re: Problem Activating CA > > On 2012-04-10 13:20, Saeed wrote: > > It sounds like you have destroyed the key or something like that. > Could you try the clientToolBox and see if you get any contact? > If it doesn't work in clientToolBox it won't work in EJBCA. > > The problem with edit CA is new for me. > > I would consider removing the CA if possible. > > Anders > >> >> No I have not upgrade. >> >> What I did before this problem happens, I was testing how to import CA certificate >> Then I imported this CA certificate which is already exists. It gave me a red error message >> of something like "primary key already exist" after that I found the CA token is inactive. >> When I activate it it says CA Activation Successful. >> >> When I restarted the JBOSS it says "activated CA token of type PKCS11" but when I log to the GUI >> it is still inactive. >> >> I also wonder that I can not edit the CA properties and that error appear. >> >> Regards, >> Saeed >> >> -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- >> *From:* Tham Wickenberg <ejb...@pr... <mailto:ejb...@pr...>> >> *To:* Saeed <sae...@ya... <mailto:sae...@ya...>> >> *Cc:* ejbca primekey <ejb...@li... <mailto:ejb...@li...>> >> *Sent:* Tuesday, April 10, 2012 12:53 PM >> *Subject:* Re: Problem Activating CA >> >> Hello, >> >> There is a problem with your configuration. It must have stopped working when you changed the configuration. >> >> It is strange that you would get a CA Activation Successful message though. >> >> Regards, >> Tham Wickenberg - PrimeKey Support Team >> >> On 4/10/12 11:48 AM, Saeed wrote: >>> Pleeeease Help >>> >>> My CA was working properly with Hardtoken HSM. Then suddenly the CA Token Status became offline >>> When I try to activate it, it says CA Activation Successful. But when I check the status again it is still inactive >>> The problem is not with the hardtoken because I have other CA's that uses the same token and working correctly. >>> When I try to Edit this CA the Edit page does not show up it gives the following error: >>> >>> >>> An exception has occurred >>> >>> >>> HardCAToken is not used, configuration error. >>> >>> >>> java.lang.Exception: HardCAToken is not used, configuration error. >>> at org.apache.jsp.ca.editcas.editcas_jsp._jspService(editcas_jsp.java:1924) >>> at org.apache.jasper.runtime.HttpJspBase.service(HttpJspBase.java:70) >>> at javax.servlet.http.HttpServlet.service(HttpServlet.java:803) >>> at org.apache.jasper.servlet.JspServletWrapper.service(JspServletWrapper.java:373) >>> at org.apache.jasper.servlet.JspServlet.serviceJspFile(JspServlet.java:336) >>> at org.apache.jasper.servlet.JspServlet.service(JspServlet.java:265) >>> at javax.servlet.http.HttpServlet.service(HttpServlet.java:803) >>> at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:290) >>> at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:206) >>> at org.jboss.web.tomcat.filters.ReplyHeaderFilter.doFilter(ReplyHeaderFilter.java:96) >>> at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:235) >>> at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:206) >>> at org.apache.catalina.core.StandardWrapperValve.invoke(StandardWrapperValve.java:230) >>> at org.apache.catalina.core.StandardContextValve.invoke(StandardContextValve.java:175) >>> at org.jboss.web.tomcat.security.SecurityAssociationValve.invoke(SecurityAssociationValve.java:182) >>> at org.apache.catalina.authenticator.AuthenticatorBase.invoke(AuthenticatorBase.java:524) >>> at org.jboss.web.tomcat.security.JaccContextValve.invoke(JaccContextValve.java:84) >>> at org.apache.catalina.core.StandardHostValve.invoke(StandardHostValve.java:127) >>> at org.apache.catalina.valves.ErrorReportValve.invoke(ErrorReportValve.java:102) >>> at org.jboss.web.tomcat.service.jca.CachedConnectionValve.invoke(CachedConnectionValve.java:157) >>> at org.apache.catalina.core.StandardEngineValve.invoke(StandardEngineValve.java:109) >>> at org.apache.catalina.connector.CoyoteAdapter.service(CoyoteAdapter.java:262) >>> at org.apache.coyote.http11.Http11Processor.process(Http11Processor.java:844) >>> at org.apache.coyote.http11.Http11Protocol$Http11ConnectionHandler.process(Http11Protocol.java:583) >>> at org.apache.tomcat.util.net.JIoEndpoint$Worker.run(JIoEndpoint.java:446) >>> at java.lang.Thread.run(Thread.java:636) >>> >>> >>> >> >> >> > > > > > > ------------------------------------------------------------------------------ > Better than sec? Nothing is better than sec when it comes to > monitoring Big Data applications. Try Boundary one-second > resolution app monitoring today. Free. > http://p.sf.net/sfu/Boundary-dev2dev > > > > _______________________________________________ > Ejbca-develop mailing list > Ejb...@li... > https://lists.sourceforge.net/lists/listinfo/ejbca-develop |
|
From: Saeed <sae...@ya...> - 2012-04-11 08:10:25
|
I tried with clientToolBox to create crl for this CA but it responds with an error message. I think when I imported the CA certificate it made a problem, that always the imported CA is considered external and it has no private keys exists in ejbca. and since the imported CA certificate was the same as the CA that exists in ejbca, ejbca considered my CA has no keys here, I guess. I do not wont to remove the CA how this could be handled. Saeed ________________________________ From: ejbca-support <ejb...@pr...> To: Saeed <sae...@ya...> Cc: ejbca primekey <ejb...@li...> Sent: Tuesday, April 10, 2012 2:27 PM Subject: Re: Problem Activating CA On 2012-04-10 13:20, Saeed wrote: It sounds like you have destroyed the key or something like that. Could you try the clientToolBox and see if you get any contact? If it doesn't work in clientToolBox it won't work in EJBCA. The problem with edit CA is new for me. I would consider removing the CA if possible. Anders > > No I have not upgrade. > > What I did before this problem happens, I was testing how to import CA certificate > Then I imported this CA certificate which is already exists. It gave me a red error message > of something like "primary key already exist" after that I found the CA token is inactive. > When I activate it it says CA Activation Successful. > > When I restarted the JBOSS it says "activated CA token of type PKCS11" but when I log to the GUI > it is still inactive. > > I also wonder that I can not edit the CA properties and that error appear. > > Regards, > Saeed > > -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- > *From:* Tham Wickenberg <ejb...@pr...> > *To:* Saeed <sae...@ya...> > *Cc:* ejbca primekey <ejb...@li...> > *Sent:* Tuesday, April 10, 2012 12:53 PM > *Subject:* Re: Problem Activating CA > > Hello, > > There is a problem with your configuration. It must have stopped working when you changed the configuration. > > It is strange that you would get a CA Activation Successful message though. > > Regards, > Tham Wickenberg - PrimeKey Support Team > > On 4/10/12 11:48 AM, Saeed wrote: >> Pleeeease Help >> >> My CA was working properly with Hardtoken HSM. Then suddenly the CA Token Status became offline >> When I try to activate it, it says CA Activation Successful. But when I check the status again it is still inactive >> The problem is not with the hardtoken because I have other CA's that uses the same token and working correctly. >> When I try to Edit this CA the Edit page does not show up it gives the following error: >> >> >> An exception has occurred >> >> >> HardCAToken is not used, configuration error. >> >> >> java.lang.Exception: HardCAToken is not used, configuration error. >> at org.apache.jsp.ca.editcas.editcas_jsp._jspService(editcas_jsp.java:1924) >> at org.apache.jasper.runtime.HttpJspBase.service(HttpJspBase.java:70) >> at javax.servlet.http.HttpServlet.service(HttpServlet.java:803) >> at org.apache.jasper.servlet.JspServletWrapper.service(JspServletWrapper.java:373) >> at org.apache.jasper.servlet.JspServlet.serviceJspFile(JspServlet.java:336) >> at org.apache.jasper.servlet.JspServlet.service(JspServlet.java:265) >> at javax.servlet.http.HttpServlet.service(HttpServlet.java:803) >> at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:290) >> at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:206) >> at org.jboss.web.tomcat.filters.ReplyHeaderFilter.doFilter(ReplyHeaderFilter.java:96) >> at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:235) >> at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:206) >> at org.apache.catalina.core.StandardWrapperValve.invoke(StandardWrapperValve.java:230) >> at org.apache.catalina.core.StandardContextValve.invoke(StandardContextValve.java:175) >> at org.jboss.web.tomcat.security.SecurityAssociationValve.invoke(SecurityAssociationValve.java:182) >> at org.apache.catalina.authenticator.AuthenticatorBase.invoke(AuthenticatorBase.java:524) >> at org.jboss.web.tomcat.security.JaccContextValve.invoke(JaccContextValve.java:84) >> at org.apache.catalina.core.StandardHostValve.invoke(StandardHostValve.java:127) >> at org.apache.catalina.valves.ErrorReportValve.invoke(ErrorReportValve.java:102) >> at org.jboss.web.tomcat.service.jca.CachedConnectionValve.invoke(CachedConnectionValve.java:157) >> at org.apache.catalina.core.StandardEngineValve.invoke(StandardEngineValve.java:109) >> at org.apache.catalina.connector.CoyoteAdapter.service(CoyoteAdapter.java:262) >> at org.apache.coyote.http11.Http11Processor.process(Http11Processor.java:844) >> at org.apache.coyote.http11.Http11Protocol$Http11ConnectionHandler.process(Http11Protocol.java:583) >> at org.apache.tomcat.util.net.JIoEndpoint$Worker.run(JIoEndpoint.java:446) >> at java.lang.Thread.run(Thread.java:636) >> >> >> > > > |
|
From: ejbca-support <ejb...@pr...> - 2012-04-11 03:28:50
|
On 2012-04-11 02:33, Jaime Hablutzel Egoavil wrote:
> When you go to option "Create Browser Certificate" from public web using Mozilla Firefox then the initial message is something like this:
>
>
> EJBCA Firefox Certificate Enrollment
>
> --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
>
> Welcome to certificate enrollment.
>
> If you want to, you can manually install the CA certificate(s) in your browser, otherwise this will be done automatically when your certificate is retrieved.
>
>
> The red marked isn't happening automatically, at least in my Mozilla Firefox 11.0, is that a misconception in the description??
As far as I know CA certificates are installed but not activated.
You have to manually activate trust anchors in Firefox ("Edit trust").
Anders
tech support
>
> --
> Jaime Hablutzel - 9-9956-3299
>
> (tildes omitidas intencionalmente)
>
>
> ------------------------------------------------------------------------------
> Better than sec? Nothing is better than sec when it comes to
> monitoring Big Data applications. Try Boundary one-second
> resolution app monitoring today. Free.
> http://p.sf.net/sfu/Boundary-dev2dev
>
>
>
> _______________________________________________
> Ejbca-develop mailing list
> Ejb...@li...
> https://lists.sourceforge.net/lists/listinfo/ejbca-develop
|
|
From: Jaime H. E. <hab...@gm...> - 2012-04-11 00:34:20
|
When you go to option "Create Browser Certificate" from public web using Mozilla Firefox then the initial message is something like this: EJBCA Firefox Certificate Enrollment ------------------------------ Welcome to certificate enrollment. If you want to, you can manually install the CA certificate(s) in your browser, otherwise this will be done automatically when your certificate is retrieved. The red marked isn't happening automatically, at least in my Mozilla Firefox 11.0, is that a misconception in the description?? -- Jaime Hablutzel - 9-9956-3299 (tildes omitidas intencionalmente) |
|
From: ejbca-support <ejb...@pr...> - 2012-04-10 11:27:19
|
On 2012-04-10 13:20, Saeed wrote: It sounds like you have destroyed the key or something like that. Could you try the clientToolBox and see if you get any contact? If it doesn't work in clientToolBox it won't work in EJBCA. The problem with edit CA is new for me. I would consider removing the CA if possible. Anders > > No I have not upgrade. > > What I did before this problem happens, I was testing how to import CA certificate > Then I imported this CA certificate which is already exists. It gave me a red error message > of something like "primary key already exist" after that I found the CA token is inactive. > When I activate it it says CA Activation Successful. > > When I restarted the JBOSS it says "activated CA token of type PKCS11" but when I log to the GUI > it is still inactive. > > I also wonder that I can not edit the CA properties and that error appear. > > Regards, > Saeed > > -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- > *From:* Tham Wickenberg <ejb...@pr...> > *To:* Saeed <sae...@ya...> > *Cc:* ejbca primekey <ejb...@li...> > *Sent:* Tuesday, April 10, 2012 12:53 PM > *Subject:* Re: Problem Activating CA > > Hello, > > There is a problem with your configuration. It must have stopped working when you changed the configuration. > > It is strange that you would get a CA Activation Successful message though. > > Regards, > Tham Wickenberg - PrimeKey Support Team > > On 4/10/12 11:48 AM, Saeed wrote: >> Pleeeease Help >> >> My CA was working properly with Hardtoken HSM. Then suddenly the CA Token Status became offline >> When I try to activate it, it says CA Activation Successful. But when I check the status again it is still inactive >> The problem is not with the hardtoken because I have other CA's that uses the same token and working correctly. >> When I try to Edit this CA the Edit page does not show up it gives the following error: >> >> >> An exception has occurred >> >> >> HardCAToken is not used, configuration error. >> >> >> java.lang.Exception: HardCAToken is not used, configuration error. >> at org.apache.jsp.ca.editcas.editcas_jsp._jspService(editcas_jsp.java:1924) >> at org.apache.jasper.runtime.HttpJspBase.service(HttpJspBase.java:70) >> at javax.servlet.http.HttpServlet.service(HttpServlet.java:803) >> at org.apache.jasper.servlet.JspServletWrapper.service(JspServletWrapper.java:373) >> at org.apache.jasper.servlet.JspServlet.serviceJspFile(JspServlet.java:336) >> at org.apache.jasper.servlet.JspServlet.service(JspServlet.java:265) >> at javax.servlet.http.HttpServlet.service(HttpServlet.java:803) >> at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:290) >> at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:206) >> at org.jboss.web.tomcat.filters.ReplyHeaderFilter.doFilter(ReplyHeaderFilter.java:96) >> at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:235) >> at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:206) >> at org.apache.catalina.core.StandardWrapperValve.invoke(StandardWrapperValve.java:230) >> at org.apache.catalina.core.StandardContextValve.invoke(StandardContextValve.java:175) >> at org.jboss.web.tomcat.security.SecurityAssociationValve.invoke(SecurityAssociationValve.java:182) >> at org.apache.catalina.authenticator.AuthenticatorBase.invoke(AuthenticatorBase.java:524) >> at org.jboss.web.tomcat.security.JaccContextValve.invoke(JaccContextValve.java:84) >> at org.apache.catalina.core.StandardHostValve.invoke(StandardHostValve.java:127) >> at org.apache.catalina.valves.ErrorReportValve.invoke(ErrorReportValve.java:102) >> at org.jboss.web.tomcat.service.jca.CachedConnectionValve.invoke(CachedConnectionValve.java:157) >> at org.apache.catalina.core.StandardEngineValve.invoke(StandardEngineValve.java:109) >> at org.apache.catalina.connector.CoyoteAdapter.service(CoyoteAdapter.java:262) >> at org.apache.coyote.http11.Http11Processor.process(Http11Processor.java:844) >> at org.apache.coyote.http11.Http11Protocol$Http11ConnectionHandler.process(Http11Protocol.java:583) >> at org.apache.tomcat.util.net.JIoEndpoint$Worker.run(JIoEndpoint.java:446) >> at java.lang.Thread.run(Thread.java:636) >> >> >> > > > |
|
From: Saeed <sae...@ya...> - 2012-04-10 11:20:32
|
No I have not upgrade.
What I did before this problem happens, I was testing how to import CA certificate
Then I imported this CA certificate which is already exists. It gave me a red error message
of something like "primary key already exist" after that I found the CA token is inactive.
When I activate it it says CA Activation Successful.
When I restarted the JBOSS it says "activated CA token of type PKCS11" but when I log to the GUI
it is still inactive.
I also wonder that I can not edit the CA properties and that error appear.
Regards,
Saeed
________________________________
From: Tham Wickenberg <ejb...@pr...>
To: Saeed <sae...@ya...>
Cc: ejbca primekey <ejb...@li...>
Sent: Tuesday, April 10, 2012 12:53 PM
Subject: Re: Problem Activating CA
Hello,
There is a problem with your configuration. It must have stopped
working when you changed the configuration.
It is strange that you would get a CA Activation Successful message
though.
Regards,
Tham Wickenberg - PrimeKey Support Team
On 4/10/12 11:48 AM, Saeed wrote:
Pleeeease Help
>
>
>
>My CA was working properly with Hardtoken HSM. Then suddenly the CA Token Status became offline
>When I try to activate it, it says CA Activation Successful. But when I check the status again it is still inactive
>The problem is not with the hardtoken because I have other CA's that uses the same token and working correctly.
>When I try to Edit this CA the Edit page does not show up it gives the following error:
>
>
>An exception has occurred
>HardCAToken is not used, configuration error.
>
>java.lang.Exception: HardCAToken is not used, configuration error. at org.apache.jsp.ca.editcas.editcas_jsp._jspService(editcas_jsp.java:1924) at org.apache.jasper.runtime.HttpJspBase.service(HttpJspBase.java:70) at javax.servlet.http.HttpServlet.service(HttpServlet.java:803) at org.apache.jasper.servlet.JspServletWrapper.service(JspServletWrapper.java:373) at org.apache.jasper.servlet.JspServlet.serviceJspFile(JspServlet.java:336) at org.apache.jasper.servlet.JspServlet.service(JspServlet.java:265) at javax.servlet.http.HttpServlet.service(HttpServlet.java:803) at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:290) at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:206) at org.jboss.web.tomcat.filters.ReplyHeaderFilter.doFilter(ReplyHeaderFilter.java:96) at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:235) at
org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:206) at org.apache.catalina.core.StandardWrapperValve.invoke(StandardWrapperValve.java:230) at org.apache.catalina.core.StandardContextValve.invoke(StandardContextValve.java:175) at org.jboss.web.tomcat.security.SecurityAssociationValve.invoke(SecurityAssociationValve.java:182) at org.apache.catalina.authenticator.AuthenticatorBase.invoke(AuthenticatorBase.java:524) at org.jboss.web.tomcat.security.JaccContextValve.invoke(JaccContextValve.java:84) at org.apache.catalina.core.StandardHostValve.invoke(StandardHostValve.java:127) at org.apache.catalina.valves.ErrorReportValve.invoke(ErrorReportValve.java:102) at org.jboss.web.tomcat.service.jca.CachedConnectionValve.invoke(CachedConnectionValve.java:157) at org.apache.catalina.core.StandardEngineValve.invoke(StandardEngineValve.java:109) at org.apache.catalina.connector.CoyoteAdapter.service(CoyoteAdapter.java:262) at
org.apache.coyote.http11.Http11Processor.process(Http11Processor.java:844) at org.apache.coyote.http11.Http11Protocol$Http11ConnectionHandler.process(Http11Protocol.java:583) at org.apache.tomcat.util.net.JIoEndpoint$Worker.run(JIoEndpoint.java:446) at java.lang.Thread.run(Thread.java:636) |
|
From: Saeed <sae...@ya...> - 2012-04-10 11:04:00
|
Yes Tham that is correct. It does not issue the certificate and the error message does not tell what the problem is. Saeed ________________________________ From: Tham Wickenberg <ejb...@pr...> To: ejb...@li... Cc: Saeed <sae...@ya...> Sent: Tuesday, April 10, 2012 1:56 PM Subject: Re: [Ejbca-develop] Problem with ejbca 3.11 Hi, As I understand it does NOT allow issuing a certificate that breaks either the Certificate Profile or End Entity Profile. As I understand, the problem as you see it is that you are not notified from the GUI that the EE Profile and the Certificate Profile are conflicting. Furthermore the error message you are getting when you are trying to issue the certificate is not very informative. Have I understood you correctly? If so, then this is a known limitation in EJBCA. We may add some functionality to verify profile compatibility directly from their editing window but probably not until the next GUI generation of EJBCA. Regards, Tham Wickenberg On 4/10/12 12:02 PM, ejbca-support wrote: > On 2012-04-10 08:46, Saeed wrote: >> Hi >> >> I have experienced a problem with ejbca 3.11 most probably it is a bug >> I don't know if it has been fixed in later releases or not. >> >> That when you create an end entity profile that uses a specific certificate profile >> and a specific CA. there might be a conflict between the CA's that is used by the >> certificate profile that is selected and the CA's that is used by the end entity profile i.e >> For example, the end entity profile might use a CA that is not allowed to be used by the Certificate profile. >> Ejbca does not resolve the conflict and do not warn you. Then you add your entities >> normally and you discover that you can not retrieve the entity certificate for unknown reason. > I'm not aware of this problem but I would recommend an upgrade. > Did I got it right? You *can* issue a certificate that violates the setup? > If not, it is a GUI bug and the GUI will be rewritten later this year. > > Cheers, > Anders > tech support > >> Saeed >> >> >> ------------------------------------------------------------------------------ >> Better than sec? Nothing is better than sec when it comes to >> monitoring Big Data applications. Try Boundary one-second >> resolution app monitoring today. Free. >> http://p.sf.net/sfu/Boundary-dev2dev >> >> >> >> _______________________________________________ >> Ejbca-develop mailing list >> Ejb...@li... >> https://lists.sourceforge.net/lists/listinfo/ejbca-develop > > ------------------------------------------------------------------------------ > Better than sec? Nothing is better than sec when it comes to > monitoring Big Data applications. Try Boundary one-second > resolution app monitoring today. Free. > http://p.sf.net/sfu/Boundary-dev2dev > _______________________________________________ > Ejbca-develop mailing list > Ejb...@li... > https://lists.sourceforge.net/lists/listinfo/ejbca-develop |
|
From: Tham W. <ejb...@pr...> - 2012-04-10 10:56:29
|
Hi, As I understand it does NOT allow issuing a certificate that breaks either the Certificate Profile or End Entity Profile. As I understand, the problem as you see it is that you are not notified from the GUI that the EE Profile and the Certificate Profile are conflicting. Furthermore the error message you are getting when you are trying to issue the certificate is not very informative. Have I understood you correctly? If so, then this is a known limitation in EJBCA. We may add some functionality to verify profile compatibility directly from their editing window but probably not until the next GUI generation of EJBCA. Regards, Tham Wickenberg On 4/10/12 12:02 PM, ejbca-support wrote: > On 2012-04-10 08:46, Saeed wrote: >> Hi >> >> I have experienced a problem with ejbca 3.11 most probably it is a bug >> I don't know if it has been fixed in later releases or not. >> >> That when you create an end entity profile that uses a specific certificate profile >> and a specific CA. there might be a conflict between the CA's that is used by the >> certificate profile that is selected and the CA's that is used by the end entity profile i.e >> For example, the end entity profile might use a CA that is not allowed to be used by the Certificate profile. >> Ejbca does not resolve the conflict and do not warn you. Then you add your entities >> normally and you discover that you can not retrieve the entity certificate for unknown reason. > I'm not aware of this problem but I would recommend an upgrade. > Did I got it right? You *can* issue a certificate that violates the setup? > If not, it is a GUI bug and the GUI will be rewritten later this year. > > Cheers, > Anders > tech support > >> Saeed >> >> >> ------------------------------------------------------------------------------ >> Better than sec? Nothing is better than sec when it comes to >> monitoring Big Data applications. Try Boundary one-second >> resolution app monitoring today. Free. >> http://p.sf.net/sfu/Boundary-dev2dev >> >> >> >> _______________________________________________ >> Ejbca-develop mailing list >> Ejb...@li... >> https://lists.sourceforge.net/lists/listinfo/ejbca-develop > > ------------------------------------------------------------------------------ > Better than sec? Nothing is better than sec when it comes to > monitoring Big Data applications. Try Boundary one-second > resolution app monitoring today. Free. > http://p.sf.net/sfu/Boundary-dev2dev > _______________________________________________ > Ejbca-develop mailing list > Ejb...@li... > https://lists.sourceforge.net/lists/listinfo/ejbca-develop |
|
From: ejbca-support <ejb...@pr...> - 2012-04-10 10:03:06
|
On 2012-04-10 08:46, Saeed wrote: > Hi > > I have experienced a problem with ejbca 3.11 most probably it is a bug > I don't know if it has been fixed in later releases or not. > > That when you create an end entity profile that uses a specific certificate profile > and a specific CA. there might be a conflict between the CA's that is used by the > certificate profile that is selected and the CA's that is used by the end entity profile i.e > For example, the end entity profile might use a CA that is not allowed to be used by the Certificate profile. > Ejbca does not resolve the conflict and do not warn you. Then you add your entities > normally and you discover that you can not retrieve the entity certificate for unknown reason. I'm not aware of this problem but I would recommend an upgrade. Did I got it right? You *can* issue a certificate that violates the setup? If not, it is a GUI bug and the GUI will be rewritten later this year. Cheers, Anders tech support > > Saeed > > > ------------------------------------------------------------------------------ > Better than sec? Nothing is better than sec when it comes to > monitoring Big Data applications. Try Boundary one-second > resolution app monitoring today. Free. > http://p.sf.net/sfu/Boundary-dev2dev > > > > _______________________________________________ > Ejbca-develop mailing list > Ejb...@li... > https://lists.sourceforge.net/lists/listinfo/ejbca-develop |
|
From: ejbca-support <ejb...@pr...> - 2012-04-10 09:55:48
|
It seems to me that something else must have happened as well. Did you upgrade? Cheers, Anders tech support On 2012-04-10 11:48, Saeed wrote: > Pleeeease Help > > My CA was working properly with Hardtoken HSM. Then suddenly the CA Token Status became offline > When I try to activate it, it says CA Activation Successful. But when I check the status again it is still inactive > The problem is not with the hardtoken because I have other CA's that uses the same token and working correctly. > When I try to Edit this CA the Edit page does not show up it gives the following error: > > > An exception has occurred > > > HardCAToken is not used, configuration error. > > > java.lang.Exception: HardCAToken is not used, configuration error. > at org.apache.jsp.ca.editcas.editcas_jsp._jspService(editcas_jsp.java:1924) > at org.apache.jasper.runtime.HttpJspBase.service(HttpJspBase.java:70) > at javax.servlet.http.HttpServlet.service(HttpServlet.java:803) > at org.apache.jasper.servlet.JspServletWrapper.service(JspServletWrapper.java:373) > at org.apache.jasper.servlet.JspServlet.serviceJspFile(JspServlet.java:336) > at org.apache.jasper.servlet.JspServlet.service(JspServlet.java:265) > at javax.servlet.http.HttpServlet.service(HttpServlet.java:803) > at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:290) > at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:206) > at org.jboss.web.tomcat.filters.ReplyHeaderFilter.doFilter(ReplyHeaderFilter.java:96) > at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:235) > at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:206) > at org.apache.catalina.core.StandardWrapperValve.invoke(StandardWrapperValve.java:230) > at org.apache.catalina.core.StandardContextValve.invoke(StandardContextValve.java:175) > at org.jboss.web.tomcat.security.SecurityAssociationValve.invoke(SecurityAssociationValve.java:182) > at org.apache.catalina.authenticator.AuthenticatorBase.invoke(AuthenticatorBase.java:524) > at org.jboss.web.tomcat.security.JaccContextValve.invoke(JaccContextValve.java:84) > at org.apache.catalina.core.StandardHostValve.invoke(StandardHostValve.java:127) > at org.apache.catalina.valves.ErrorReportValve.invoke(ErrorReportValve.java:102) > at org.jboss.web.tomcat.service.jca.CachedConnectionValve.invoke(CachedConnectionValve.java:157) > at org.apache.catalina.core.StandardEngineValve.invoke(StandardEngineValve.java:109) > at org.apache.catalina.connector.CoyoteAdapter.service(CoyoteAdapter.java:262) > at org.apache.coyote.http11.Http11Processor.process(Http11Processor.java:844) > at org.apache.coyote.http11.Http11Protocol$Http11ConnectionHandler.process(Http11Protocol.java:583) > at org.apache.tomcat.util.net.JIoEndpoint$Worker.run(JIoEndpoint.java:446) > at java.lang.Thread.run(Thread.java:636) > > > > > > > ------------------------------------------------------------------------------ > Better than sec? Nothing is better than sec when it comes to > monitoring Big Data applications. Try Boundary one-second > resolution app monitoring today. Free. > http://p.sf.net/sfu/Boundary-dev2dev > > > > _______________________________________________ > Ejbca-develop mailing list > Ejb...@li... > https://lists.sourceforge.net/lists/listinfo/ejbca-develop |
|
From: Tham W. <ejb...@pr...> - 2012-04-10 09:54:12
|
Hello, There is a problem with your configuration. It must have stopped working when you changed the configuration. It is strange that you would get a CA Activation Successful message though. Regards, Tham Wickenberg - PrimeKey Support Team On 4/10/12 11:48 AM, Saeed wrote: > Pleeeease Help > > My CA was working properly with Hardtoken HSM. Then suddenly the CA > Token Status became offline > When I try to activate it, it says CA Activation Successful. But when > I check the status again it is still inactive > The problem is not with the hardtoken because I have other CA's that > uses the same token and working correctly. > When I try to Edit this CA the Edit page does not show up it gives the > following error: > > > An exception has occurred > > > HardCAToken is not used, configuration error. > > > java.lang.Exception: HardCAToken is not used, configuration error. > at org.apache.jsp.ca.editcas.editcas_jsp._jspService(editcas_jsp.java:1924) > at org.apache.jasper.runtime.HttpJspBase.service(HttpJspBase.java:70) > at javax.servlet.http.HttpServlet.service(HttpServlet.java:803) > at org.apache.jasper.servlet.JspServletWrapper.service(JspServletWrapper.java:373) > at org.apache.jasper.servlet.JspServlet.serviceJspFile(JspServlet.java:336) > at org.apache.jasper.servlet.JspServlet.service(JspServlet.java:265) > at javax.servlet.http.HttpServlet.service(HttpServlet.java:803) > at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:290) > at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:206) > at org.jboss.web.tomcat.filters.ReplyHeaderFilter.doFilter(ReplyHeaderFilter.java:96) > at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:235) > at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:206) > at org.apache.catalina.core.StandardWrapperValve.invoke(StandardWrapperValve.java:230) > at org.apache.catalina.core.StandardContextValve.invoke(StandardContextValve.java:175) > at org.jboss.web.tomcat.security.SecurityAssociationValve.invoke(SecurityAssociationValve.java:182) > at org.apache.catalina.authenticator.AuthenticatorBase.invoke(AuthenticatorBase.java:524) > at org.jboss.web.tomcat.security.JaccContextValve.invoke(JaccContextValve.java:84) > at org.apache.catalina.core.StandardHostValve.invoke(StandardHostValve.java:127) > at org.apache.catalina.valves.ErrorReportValve.invoke(ErrorReportValve.java:102) > at org.jboss.web.tomcat.service.jca.CachedConnectionValve.invoke(CachedConnectionValve.java:157) > at org.apache.catalina.core.StandardEngineValve.invoke(StandardEngineValve.java:109) > at org.apache.catalina.connector.CoyoteAdapter.service(CoyoteAdapter.java:262) > at org.apache.coyote.http11.Http11Processor.process(Http11Processor.java:844) > at org.apache.coyote.http11.Http11Protocol$Http11ConnectionHandler.process(Http11Protocol.java:583) > at org.apache.tomcat.util.net.JIoEndpoint$Worker.run(JIoEndpoint.java:446) > at java.lang.Thread.run(Thread.java:636) > > > |
|
From: Saeed <sae...@ya...> - 2012-04-10 09:48:32
|
Pleeeease Help My CA was working properly with Hardtoken HSM. Then suddenly the CA Token Status became offline When I try to activate it, it says CA Activation Successful. But when I check the status again it is still inactive The problem is not with the hardtoken because I have other CA's that uses the same token and working correctly. When I try to Edit this CA the Edit page does not show up it gives the following error: An exception has occurred HardCAToken is not used, configuration error. java.lang.Exception: HardCAToken is not used, configuration error. at org.apache.jsp.ca.editcas.editcas_jsp._jspService(editcas_jsp.java:1924) at org.apache.jasper.runtime.HttpJspBase.service(HttpJspBase.java:70) at javax.servlet.http.HttpServlet.service(HttpServlet.java:803) at org.apache.jasper.servlet.JspServletWrapper.service(JspServletWrapper.java:373) at org.apache.jasper.servlet.JspServlet.serviceJspFile(JspServlet.java:336) at org.apache.jasper.servlet.JspServlet.service(JspServlet.java:265) at javax.servlet.http.HttpServlet.service(HttpServlet.java:803) at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:290) at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:206) at org.jboss.web.tomcat.filters.ReplyHeaderFilter.doFilter(ReplyHeaderFilter.java:96) at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:235) at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:206) at org.apache.catalina.core.StandardWrapperValve.invoke(StandardWrapperValve.java:230) at org.apache.catalina.core.StandardContextValve.invoke(StandardContextValve.java:175) at org.jboss.web.tomcat.security.SecurityAssociationValve.invoke(SecurityAssociationValve.java:182) at org.apache.catalina.authenticator.AuthenticatorBase.invoke(AuthenticatorBase.java:524) at org.jboss.web.tomcat.security.JaccContextValve.invoke(JaccContextValve.java:84) at org.apache.catalina.core.StandardHostValve.invoke(StandardHostValve.java:127) at org.apache.catalina.valves.ErrorReportValve.invoke(ErrorReportValve.java:102) at org.jboss.web.tomcat.service.jca.CachedConnectionValve.invoke(CachedConnectionValve.java:157) at org.apache.catalina.core.StandardEngineValve.invoke(StandardEngineValve.java:109) at org.apache.catalina.connector.CoyoteAdapter.service(CoyoteAdapter.java:262) at org.apache.coyote.http11.Http11Processor.process(Http11Processor.java:844) at org.apache.coyote.http11.Http11Protocol$Http11ConnectionHandler.process(Http11Protocol.java:583) at org.apache.tomcat.util.net.JIoEndpoint$Worker.run(JIoEndpoint.java:446) at java.lang.Thread.run(Thread.java:636) |
|
From: ejbca-support <ejb...@pr...> - 2012-04-10 07:00:33
|
On 2012-04-10 02:45, Jaime Hablutzel Egoavil wrote: > I a new fan to github... I have been using subversion for some time now but lately I have been using some github and its features like "pulling request" that I find really really useful for a open > source project... have you considered to move your source base to github, as I see that could help to improve open source activity and collaboration in the project Hi Jaime, Using GIT has been considered but using GITHUB is currently not an option due to Common Criteria Certification requirements. I believe it is relatively difficult contributing to a huge and rather monolithic project like EJBCA without becoming a part of the development team. Is it something particular you have in mind? Cheers, Anders tech support > > -- > Jaime Hablutzel - 9-9956-3299 > > (tildes omitidas intencionalmente) > > > ------------------------------------------------------------------------------ > Better than sec? Nothing is better than sec when it comes to > monitoring Big Data applications. Try Boundary one-second > resolution app monitoring today. Free. > http://p.sf.net/sfu/Boundary-dev2dev > > > > _______________________________________________ > Ejbca-develop mailing list > Ejb...@li... > https://lists.sourceforge.net/lists/listinfo/ejbca-develop |
|
From: Saeed <sae...@ya...> - 2012-04-10 06:50:01
|
Hi I would like to ask what is the suitable settings for certificate profile that will be used with OpenVPN server and OpenVPN client. Thanks Saeed |
|
From: Saeed <sae...@ya...> - 2012-04-10 06:46:13
|
Hi I have experienced a problem with ejbca 3.11 most probably it is a bug I don't know if it has been fixed in later releases or not. That when you create an end entity profile that uses a specific certificate profile and a specific CA. there might be a conflict between the CA's that is used by the certificate profile that is selected and the CA's that is used by the end entity profile i.e For example, the end entity profile might use a CA that is not allowed to be used by the Certificate profile. Ejbca does not resolve the conflict and do not warn you. Then you add your entities normally and you discover that you can not retrieve the entity certificate for unknown reason. Saeed |
|
From: ejbca-support <ejb...@pr...> - 2012-04-10 06:42:13
|
http://www.ejbca.org/userguide.html#Requesting%20a%20cross%20or%20bridge%20certificate This seems to require that the CAs are on different installations. Virtual machines is the proper (and currently only) way ahead. Anders tech support On 2012-04-10 08:32, Saeed wrote: > > Hi > > I want to make a cross certification between two different CA's > both of them in the same EJBCA server. How Can I do that? > > Thank you. > Saeed > > ------------------------------------------------------------------------------ > For Developers, A Lot Can Happen In A Second. > Boundary is the first to Know...and Tell You. > Monitor Your Applications in Ultra-Fine Resolution. Try it FREE! > http://p.sf.net/sfu/Boundary-d2dvs2 > _______________________________________________ > Ejbca-develop mailing list > Ejb...@li... <mailto:Ejb...@li...> > https://lists.sourceforge.net/lists/listinfo/ejbca-develop > > > > > ------------------------------------------------------------------------------ > Better than sec? Nothing is better than sec when it comes to > monitoring Big Data applications. Try Boundary one-second > resolution app monitoring today. Free. > http://p.sf.net/sfu/Boundary-dev2dev > > > _______________________________________________ > Ejbca-develop mailing list > Ejb...@li... > https://lists.sourceforge.net/lists/listinfo/ejbca-develop |
|
From: Saeed <sae...@ya...> - 2012-04-10 06:32:54
|
Hi I want to make a cross certification between two different CA's both of them in the same EJBCA server. How Can I do that? Thank you. Saeed ------------------------------------------------------------------------------ For Developers, A Lot Can Happen In A Second. Boundary is the first to Know...and Tell You. Monitor Your Applications in Ultra-Fine Resolution. Try it FREE! http://p.sf.net/sfu/Boundary-d2dvs2 _______________________________________________ Ejbca-develop mailing list Ejb...@li... https://lists.sourceforge.net/lists/listinfo/ejbca-develop |
|
From: Jaime H. E. <hab...@gm...> - 2012-04-10 00:45:51
|
I a new fan to github... I have been using subversion for some time now but lately I have been using some github and its features like "pulling request" that I find really really useful for a open source project... have you considered to move your source base to github, as I see that could help to improve open source activity and collaboration in the project -- Jaime Hablutzel - 9-9956-3299 (tildes omitidas intencionalmente) |
|
From: Saeed <sae...@ya...> - 2012-04-08 11:57:36
|
Hi I want to make a cross certification between two different CA's both of them in the same EJBCA server. How Can I do that? Thank you. Saeed |
|
From: ejbca-support <ejb...@pr...> - 2012-03-28 10:20:49
|
On 2012-03-28 08:27, Saeed wrote: > Hi all > > I want to use ejbca certificates in encrypting email > using email clients like Thunderbird and Outlook > what is the recommended certificate profile settings. The built-in ENDUSER profile should work fine. Anders > > Thanks > Saeed > > > ------------------------------------------------------------------------------ > This SF email is sponsosred by: > Try Windows Azure free for 90 days Click Here > http://p.sf.net/sfu/sfd2d-msazure > > > > _______________________________________________ > Ejbca-develop mailing list > Ejb...@li... > https://lists.sourceforge.net/lists/listinfo/ejbca-develop |
|
From: Saeed <sae...@ya...> - 2012-03-28 06:28:05
|
Hi all I want to use ejbca certificates in encrypting email using email clients like Thunderbird and Outlook what is the recommended certificate profile settings. Thanks Saeed |