IBM Support

LO67807: THE SIGNATURE ON THE CERTIFICATE WAS FOUND TO BE INVALID. CHECK THE LOG FILE FOR DETAILS.

Subscribe

You can track all active APARs for this component.

 

APAR status

  • Closed as user error.

Error description

  • Domino Settings
    a) set up domino server as a CA server using the following
    steps
    - Set up a Domino certification authority
    - Create Domino Certificate Authority database and create CA key
    ring.
    (CAKey.kyr)
    NOTE:
    It doesn't need to create a key ring (keyfile.kyr and
    keyfile.sth) files..
    
    b) Server configuration document
    [Lotus iNotes] tab -> Encryption mail support: Enabled
    [Lotus iNotes] tab -> Require SSL to access secure mail
    features: No  (Change
    from Both)
    
    c) Import Notes ID to mail database.  (Mail file contains Notes
    ID)
    
    d) Create cross-certificate in Domino directory
    
    e) Add Internet Cert to Selected People
    e-1) Access to Domino Directory, and move to People view, and
    select your test
    user.
    e-2) Click [Action] - [Add Internet Cert to Selected People]
    e-3) Choose Certifier to created CAKey.kyr in step a).
    e-4) Execute "tell adminp process all" command a few times in
    Domino console
    log.
    e-5) You can see Internet certificate in your test user's person
    document.
    
    Steps to Reproduce
    1. Login to your mail database (iNotes UI) by using Web browser
    (http access)
    2. Create a new mail and enabled Sign option.
    3. Send this message to one self.
    4. You will see the broken key icon and you will see the error
    of "The
    signature on the certificate was found to be invalid.  Check the
    log file for
    details."
    

Local fix

  • Do not use [Add Internet Cert to Selected People] action
    create client certificate manually and import this p12 file via
    iNotes
    Preference. This is troublesome task for system administrator.
    

Problem summary

Problem conclusion

Temporary fix

Comments

  • This APAR is associated with SPR# SKAI8S44Y4.
    The problem was caused by a user error or user misunderstanding.
    

APAR Information

  • APAR number

    LO67807

  • Reported component name

    DOMINO SERVER

  • Reported component ID

    5724E6200

  • Reported release

    852

  • Status

    CLOSED USE

  • PE

    NoPE

  • HIPER

    NoHIPER

  • Special Attention

    NoSpecatt

  • Submitted date

    2012-03-04

  • Closed date

    2012-09-10

  • Last modified date

    2012-09-10

  • APAR is sysrouted FROM one or more of the following:

  • APAR is sysrouted TO one or more of the following:

Fix information

Applicable component levels

[{"Business Unit":{"code":"BU055","label":"Cognitive Applications"},"Product":{"code":"SSKTMJ","label":"Lotus Domino"},"Component":"","ARM Category":[],"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"8.5.2","Edition":"","Line of Business":{"code":"","label":""}}]

Document Information

Modified date:
10 September 2012