Unable to get key IIS shows error 403 - 2148204801
Originally Published: 2009-04-23
Article Number
Applies To
Microsoft Internet Information Services (IIS) 6.0
Issue
RKM client unable to get a key
RKM client unable to establish an SSL connection
RKM client is not reaching RKM Server
Client certificate has expired / is not valid
Resolution
If you look at a log entry, you will see something like:
2009-04-23 15:29:53 W3SVC1 127.0.0.1 GET /KMS/provider - 443 - 127.0.0.1 - 403 16 2148204801
That specific error message means that the client certificate provided has expired. You will have to re-issue the client certificate or issue a new one.
Notes
certutil -error 2148204801
Error message text: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file
.
CertUtil: -error command completed successfully.
Related Articles
"BufferOverflowException" when attempting to authenticate to RSA Via Lifecycle and Governance console 102Number of Views RSA Identity Governance & Lifecycle XARecoveryModule generates an XAException when attempting to roll back changes in fail… 275Number of Views XML Parsing Error when attempting SP-initiated Single Sign-On with RSA SecurID Cloud Authentication Service 222Number of Views RSA Via Lifecycle and Governance Workflow fails with error "Illegal TXN State: Attempt to start new transaction during rol… 262Number of Views Error message "Illegal TXN State: Attempt to start new transaction during rollback" in RSA Identity Governance & Lifecycle 109Number of Views
Trending Articles
Troubleshooting RSA SecurID Access Identity Router to RSA Authentication Manager test connection failures RSA SecurID Software Token 5.0.2 Downloads for Microsoft Windows RSA Authentication Manager 8.9 Release Notes (January 2026) RSA Governance & Lifecycle 8.0.0 Administrators Guide Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory
Don't see what you're looking for?