Unable to add account in Receiver using SHA512 certificate

Unable to add account in Receiver using SHA512 certificate

book

Article ID: CTX212883

calendar_today

Updated On:

Description

Unable to add account in Receiver using SHA512 certificate

Resolution

Apply Microsoft patch kb2973337 to both the Windows server and the client.

Problem Cause

SHA512 is disabled in Windows when you use TLS 1.2.

About this update: After you apply this update, the signature and hash algorithm combinations for RSA\SHA512 and ECDSA\SHA512 are enabled for the Transport Layer Security (TLS) 1.2 protocol. This means that you can now use SHA512 certificates on your computer.

If you currently use SHA512 certificates, and do not have this update installed, you may have problems in one or more of the following scenarios by using TLS 1.2:
Internet Protocol security (IPsec) stand-alone
IPSec with DirectAccess
Microsoft Lync Server 2013
Remote Desktop Services (RDP)
SSL websites
SSL based VPN
Web applications

Additional Information

http://www.michaelm.info/blog/?p=1273
https://social.technet.microsoft.com/Forums/office/en-US/857c6804-8ce1-4f09-b657-00554055da16/tls-12-and-sha512?forum=winserversecurity