PKI entities connection test intermittently fails to connect to CA server via cloud connector    

 PKI entities connection test intermittently fails to connect to CA server via cloud connector    

book

Article ID: CTX226809

calendar_today

Updated On:

Description

The cloud connectors could not connect to PKI server. The below error is generated: 

2017-08-08T13:55:39.253+0000 | 467782B2FC0AB30F | ERROR | http-nio-14443-exec-15 | MsCertSrvConnector | TestConnection to pki url [ certnew.cer] failed with response Headers: {null=[HTTP/1.1 401 Unauthorized],
and Response Error: System.Net.WebException: The underlying connection was closed: Could not establish trust relationship for the SSL/TLS secure channel. 
System.Security.Authentication.AuthenticationException: The remote certificate is invalid according to the validation procedure.

Resolution

We found that on the CA server had six Intermediate certificates within the MMC snap in.
Removing all certs and replacing this with a single certificate fixed the issue

Problem Cause

The intermediate certificates within the intermediate store on the CA server had six certificates.