Error: "Certificate import error: Server certificate chain is missing!"
search cancel

Error: "Certificate import error: Server certificate chain is missing!"

book

Article ID: 405388

calendar_today

Updated On:

Products

CAS-VA ISG Content Analysis CAS-S200-A1 CAS-S400 CAS-S400-A1 CAS-S400-A2 CAS-S400-A3 CAS-S400-A4 CAS-S500 CAS-S500-A1

Issue/Introduction

Attempt to upload certificate used for HTTPS Access (web management console) results with an error "failure".

When reviewing CAS audit log following error is observed:

"Certificate import error: Server certificate chain is missing!"

Environment

  • Content Analysis

Cause

CA certificates are missing from certificate file.

Resolution

CA certificate, intermediate certificate and hostname certificate should be present in a single certificate file.

Certificates and private key should be converted to .pfx file.

Following OpenSSL command can be used:

Note: This requires operating system with OpenSSL utility installed

openssl pkcs12 -export -out certificate.pfx -inkey private.key -in fullchain.crt

Where:

  • "certificate.pfx" is output file that should be used for certificate upload to CAS
  • "private.key" is a file containing private key
  • "fullchain.crt" is a file containing all required certificates

Additional Information