[389-users] cert and key database failure

Rich Megginson rmeggins at redhat.com
Wed May 13 15:51:58 UTC 2009


Emmanuel BILLOT wrote:
> Hi,
>
> The cert.db and key.db file seems to be corrupted.
> In GUI, we can see 3 certificates, one is cloned, one is valid. The 
> "detail" option does not work on the cloned one, whith a failure message.
>
> We tried to manipulate db with certutil :
>
> certutil -L -d  ......
> Certificate Name                                             Trust 
> Attributes
>
> server-cert                                                  u,,
> IRDNEW                                                       u,pu,u
> IRDNEW                                                       u,pu,u
> IRD - IRD                                                    CT,,
>
> p    Valid peer
> P    Trusted peer (implies p)
> c    Valid CA
> T    Trusted CA to issue client certs (implies c)
> C    Trusted CA to certs(only server certs for ssl) (implies c)
> u    User cert
> w    Send warning
>
>
> We tried to delete the cloned one but, here is an new error message :
>
> certutil: could not find certificate named "IRDNEW": security library: 
> bad database.
>
> What is the pb ?
Can you post the exact certutil command line you're using?
>
> BR,
>

-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 3258 bytes
Desc: S/MIME Cryptographic Signature
URL: <http://listman.redhat.com/archives/fedora-directory-users/attachments/20090513/c9061664/attachment.bin>


More information about the Fedora-directory-users mailing list