Home » Categories » Multiple Categories

SSL Certificate does not validate properly

Issue:

The SSL certificate won't validate properly because the certificate didn't include any subject alternative names. Adding SAN (Subject Alternative Name” into “Additional Attributes” field on a Microsoft Certificate Authority certificate request form does not generate a certificate with a SAN entry.

Solution:

Solution 1

Please review the this article that describes the problem and solution. Essentially, you must run a script to correct the issue that the issuance policy of the Microsoft CA is not configured to accept the Subject Alternative Name(s) attribute via the CA Web enrollment page.

Then, when using the web certsrv, add this under the attributes:

san:dns=your.fqdn.xxx

Solution 2

Another possible solution is to pass the config file below (include your information) to openssl.

[ req ]
default_bits = 2048
prompt = no
distinguished_name = req_distinguished_name
req_extensions = req_ext
[ req_distinguished_name ]
countryName = US
stateOrProvinceName = XXXX
localityName = XXXX
organizationName = XXXXXXX
commonName = your.fqdn.com
[ req_ext ]
subjectAltName = @alt_names
[ alt_names ]
DNS.1 = your.fqdn.com

Then, this when doing the CSR (Certificate Signing Request):

openssl req -new -key nagiosxi.key -out nagiosxi.csr -config thefile
0 (0)
Article Rating (No Votes)
Rate this article
  • Icon PDFExport to PDF
  • Icon MS-WordExport to MS Word
Attachments Attachments
There are no attachments for this article.
Related Articles RSS Feed
Nagios XI - MK Livestatus Problems With Mod-Gearman
Viewed 2244 times since Thu, Feb 25, 2016
Backups are not being generated due to tar creation errors
Viewed 1140 times since Thu, Feb 27, 2020
Nagios Core - Failed to register iobroker
Viewed 2402 times since Wed, Sep 20, 2017
Pages Not Displaying Correctly
Viewed 2714 times since Mon, Jan 25, 2016
Nagios XI - Resolving "Cannot connect to database" Error - Core Config Manager
Viewed 3000 times since Mon, Jan 25, 2016
Nagios XI - Disabling Database UTF8 Connectivity
Viewed 2050 times since Thu, Mar 8, 2018
Nagios XI - MSSQL Wizards - Adaptive Server connection failed
Viewed 4620 times since Thu, Aug 3, 2017
Nagios XI - HTTP 500 Error / PHP Parse error - Unexpected $end
Viewed 3072 times since Mon, Jan 25, 2016
Nagios XI - Core 4 Load Spikes on 1.75 and 7 Hour Intervals
Viewed 1864 times since Mon, Jan 25, 2016
Nagios XI - Troubleshooting Reports
Viewed 2537 times since Wed, Dec 5, 2018