000026021 - Unable to remove Invalidity Date Extension for CRLs issued against a CA in KCA 6.5.1

Document created by RSA Customer Support Employee on Jun 16, 2016Last modified by RSA Customer Support Employee on Apr 22, 2017
Version 2Show Document
  • View in full screen mode

Article Content

Article Number000026021
Applies ToSun Solaris 2.8
Keon Certificate Authority 6.5.1
Microsoft Windows 2000 Server SP4
IssueUnable to remove Invalidity Date Extension for CRLs issued against a CA in KCA 6.5.1
Build 220 of Keon Certificate Authority 6.5.1 introduced a new feature that enables administrators to configure whether or not the Invalidity Date extension should be included in the CRL on a per CA basis. However, when trying to use this functionality, the following error is presented:

    XUDA_addmodifyop: [XrcNOTFOUND] unable to locate requested member or object
    ObjectClass xuda_ca: Adding field CRLINVALIDITYDATEMODE failed!
CauseThis feature cannot be used until the KCA database schema has been updated
ResolutionAfter applying Build 120 and higher, you must go to the following administrative URL in the KCA:

    https://<servername>:<admin-port>/ca/ca-ops/invaliditydate-crl-ext-schema-update.xuda

When the update is complete, you must restart the KCA Services for the update to be complete.
Legacy Article IDa22338

Attachments

    Outcomes