Certificates Services error
I have a Certification Authority server (subord CA)running w2k3 Enterprise R2 with SP2. Recently, I'm getting a Event ID: 22 error. The description is as follows: Certificate Services could not process request 64208 due to an error: The revocation function was unable to check revocation because the revocation server was offline. 0x80092013 (-2146885613). The request was for E=tom.martin@xyz.com, CN=tom.martin, OU=users, OU=ATL, DC=XYZ, DC=com. Additional information: Error Verifying Request Signature or Signing Certificate.Besides that, I realized that the Issued Certificates in the Certification Authority has not issued anynew certificates for the past few days. Usually I see at least one new certificate a day but not the last 3 days.I have also right mouse click on the Revoked Certificates in the Certification Authority, All Tasks, Published and select New CRL to re-publish a new cert. with no success.Your help is very much appreciated.Thanks in advance.
June 24th, 2009 1:24am

Hi, This error may be caused by expired CRL of your issuing CA certificate. Open pkiview.msc, find if there is any certificate expired, if any, please try to renew the CRL. Or run the command below to disable the feature that checks revocation on all certificates in the PKI hierarchy. certutil setreg ca\CRLFlags +CRLF_REVCHECK_IGNORE_OFFLINE Restart the CA and test. For your reference: Custom CA Configuration--->Ignore Offline CRL Errors on the CA: http://technet.microsoft.com/en-us/library/cc784789(WS.10).aspx Online Enterprise Issuing CAs: http://technet.microsoft.com/en-us/library/cc737481(WS.10).aspx Thanks. This posting is provided "AS IS" with no warranties, and confers no rights.
Free Windows Admin Tool Kit Click here and download it now
June 25th, 2009 6:08am

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics