search cancel

Error "The target principal name is incorrect." during ENC certificate validation


Article ID: 106077


Updated On:


CA Client Automation - IT Client Manager CA Client Automation


ENC Clients belonging to a known working ENC Server can sometimes fail if not configured with the exact FQDN of the ENC Server used in the ENC Server's Client Certificate


any supported ENC environment


Reviewing ENC Client log, the following error can be seen:

|ERROR  | EncInitializeSecurityContext: The target principal name is incorrect.


ENC Client is likely pointing to an incorrect or invalid FQDN that does not match the FQDN specified in the Alternate Subject Name portion of the client certificate on the ENC Server.

Run a command like the following to correct the issue:

encutilcmd client -state enabled -server <proper ENC Server FQDN>

If the command runs successfully you will see the following after hitting enter:

INFO: Command completed successfully

Now recycle ENC Client (CAF STOP ENC CLIENT / CAF START ENCCLIENT) and test.