08-21-2022 11:40 PM
While trying to renew our TLS Certificate we always receive the following error message when trying to submit it:
Validation Error : Certificates signature verification failed
We uploaded a PFX (PKCS#12) certificate which contains the certificate chain and the private key.
The certificate should be "globally recognized" since it was issued by SwissSign.
Solved! Go to Solution.
08-22-2022 07:10 PM
If you are on 14.2, there were new changes implemented surrounding how ESA trust/verifies a certificate that is attempted to be added. I suspect that either the root or intermediate certificate which is the issuer of this signed cert is not on ESA trusted CA store.
If they are not present, gather the copy of these certs in .pem format. Upload them as custom CA certificate, attempt the upload again
08-22-2022 07:10 PM
If you are on 14.2, there were new changes implemented surrounding how ESA trust/verifies a certificate that is attempted to be added. I suspect that either the root or intermediate certificate which is the issuer of this signed cert is not on ESA trusted CA store.
If they are not present, gather the copy of these certs in .pem format. Upload them as custom CA certificate, attempt the upload again
01-11-2023 03:16 AM
Hello UdupiKrishna,
After import the certificate in .pfx format it is again asking to Upload Signed Certificate: and which signed certificate do we need to upload is CA certificate or server certificate which needs to be uploaded here. I have tried both got the error like Certificates signature verification failed when i select the SERVER Certificate and "The certificate and key do not match" when i select CA certificate.
Kindly help us in resolving this issue.
01-12-2023 03:10 AM
same issue, how can we upload a custom ca certificate in pem format, we only see the import for p12
01-12-2023 08:49 AM
01-13-2023 01:39 AM
once uploaded the ca we were able to install the certificate. thanks
01-13-2023 02:23 AM
Thanks Ken, Now issue is resolved and i am able to upload the new certificates.
04-15-2024 12:04 AM
I have the same problem that p12 can import to v14.0 without issue but fail importing to v14.2. The cert's CA is already listed in ESA and this cert is signed by Intermediate Certificate which I cannot import to ESA (said duplicated).
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide