You are viewing limited content. For full access, please sign in.

Question

Question

The remote certificate is invalid according to the validation procedure Error

asked on March 13, 2023

In our LFDS Laserfiche\Directory Service\Server\Operational trace log we are seeing the following error:

How do I find out what certificate it thinks is invalid?

Directory Server version 11.0.2204.1467

0 0

Answer

SELECTED ANSWER
replied on March 30, 2023 Show version history

I believe the issue was being caused by the notification subscription on the individual Forms licenses. I have disabled that option on each of the licenses in LFDS and have not seen the error. If it comes back I'll update this post, but so far so good.

1 0

Replies

replied on March 14, 2023

I just submitted a support ticket to our Solution Provider to look further into the error.

1 0
SELECTED ANSWER
replied on March 30, 2023 Show version history

I believe the issue was being caused by the notification subscription on the individual Forms licenses. I have disabled that option on each of the licenses in LFDS and have not seen the error. If it comes back I'll update this post, but so far so good.

1 0
replied on March 30, 2023

Fascinating. Do you have a support case # I can check?

0 0
replied on March 30, 2023

I believe it is 230284.

1 0
replied on March 13, 2023

Need more context.

  1. What's the full stack trace of this one?
  2. Are there any other errors or messages with matching/near matching time stamps that could help identify what operation is invoking the call that involves certification validation?
    1. Check the other Laserfiche\Directory Service\* event logs as well. The relevant log message could easily be under WebAdmin or WebSTS.
  3. Do you have the LFDS Alternative Service configured?
  4. Do you have SAML authentication configured? If so, do you have any of the optional signing/encryption configurations enabled?
0 0
replied on March 13, 2023 Show version history

1. The full stack trace was not much longer, but here it is:

2. These two errors are also seen in the log around the same time.

3. No, we are not using LFDS Alternative Service.

4. SAML authentication is enabled, and we currently only have 3 accounts using it. We do not have any of the optional signing/encrypting enabled.

The first error is thrown every few minutes.

0 0
replied on March 13, 2023 Show version history

I don't suppose you have an LFDS primary license expiring in the next 30 days or so that's set to auto-renew? Try connecting to https://activation.laserfiche.com from a web browser on the LFDS server and see if you get a certificate error. HTTP errors like 401/404 are expected for that base URL with no path and parameters so just ignore those.

0 0
replied on March 13, 2023

Our support is coming up for renewal within the next 30 days, but we do not have any subscription licenses. I did just try to access the URL you gave and didn't have any certificate errors when trying to browse to it from the LFDS server.

0 0
You are not allowed to follow up in this post.

Sign in to reply to this post.