Unable to generate a CRL or revoke a certificate
Originally Published: 2007-02-15
Article Number
Applies To
Microsoft Windows 2000
Two-phase logging activated to log success and failure of all operations
Issue
When generating a CRL the following message appears on-screen and in the audit log:
[XrcSECURELOGSERVERNOTREACHABLE: secure logging server is not reachable or out of diskspace]
Cause
The file /Xudad/ssl/certs/cas.cert & /LogServer/ssl/certs/cas.cert contains the old System which has expired.
Resolution
If cas.cert contains an expired System CA certificate, log in to the Admin Console, under CA Operation select the System CA --> View PEM, and replace the content of cas.cert with the active System CA.
Related Articles
How to revoke certificates using the API? 13Number of Views RSA Governance & Lifecycle Recipes: Chart - Review Results - Review Progress Trending 22Number of Views RSA Governance & Lifecycle Recipes: Chart - Review Results - Application Progress 12Number of Views Reassign user access review items in bulk by Application/Directory in RSA Identity Governance & Lifecycle 41Number of Views RSA Identity Governance and Lifecycle Provisioning -Termination rule is not generating change requests to revoke entitlements 81Number of Views
Trending Articles
Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory RSA Authentication Manager 8.9 Release Notes (January 2026) Artifacts to gather in RSA Identity Governance & Lifecycle RSA Governance & Lifecycle 8.0.0 Administrators Guide RSA Governance & Lifecycle 8.0.0 Installation Guide
Don't see what you're looking for?