000021296 - Signed Certificate Management Protocol (CMP) requests do not work in KCA 6.5.1 if certificate's DN contains 'special' characters

Document created by RSA Customer Support Employee on Jun 16, 2016Last modified by RSA Customer Support Employee on Apr 21, 2017
Version 2Show Document
  • View in full screen mode

Article Content

Article Number000021296
Applies ToKeon Certificate Authority 6.5.1
Sun Solaris 2.8
Certificate Management Protocol (CMP)
IssueSigned Certificate Management Protocol (CMP) requests do not work in KCA 6.5.1 if certificate's DN contains "special" characters
Keon CA?s Certificate Management Protocol (CMP) server cannot find certificates, and rejects CMP requests if they contain special characters. If a CMP request is signed by a CA whose distinguished name (DN) contains the special characters ',', '=' or '\n', then Keon CA?s CMP server does not accept the request.
ResolutionTo correct this issue, contact RSA Security Customer Support and request KCA 6.5.1 hot fix build 229.
WorkaroundKCA hot fix build 227 was installed to address a different Certificate Management Protocol (CMP) issue
Legacy Article IDa22008

Attachments

    Outcomes