Re: CAPI2 error 80093005

From: BB (Bernard_at_3exp.com)
Date: 09/13/02


From: "BB" <Bernard_at_3exp.com>
Date: Fri, 13 Sep 2002 16:33:47 +0800


wow ! and what's that PKI.....
well, as you know IIS 4.0 needs Base64 encoded.
check the PKI documentation whether it support or not.

or get cert server install in you NT4.0 box, read
HOWTO: Set Up Test Certificates for SSL/TLS Application Development
http://support.microsoft.com/default.aspx?scid=kb;en-us;Q288897

Rgds.

"Geert Van Muylem" <Geert.Van.Muylem@utimaco.be> wrote in message
news:104e101c25afc$8bc97790$36ef2ecf@tkmsftngxa12...
> USB0005 is correct!
> I have the same error when using the certutil.
> I'm not using the cert server 2.0 but another PKI!
>
> Regards,
> Geert
>
> >-----Original Message-----
> >Mm... I can installed you iis4.cer in my XP Pro
> >Issued To: USB0005 by CAS_SK, correct ?
> >
> >when you covert DER to Base64 using this
> >certutil -encode <source certificate (*.cer)> <output
> certificate (*.cer)>
> >any error ?
> >
> >when you download the cert from your cert server 2.0
> >if you select Base64 and import, any error again ?
> >
> >You using cert 2.0 in w2k server, right ?
> >
> >Rgds.
> >
> >
> >
> >"Geert Van Muylem" <Geert.Van.Muylem@UTIMACO.BE> wrote in
> message
> >news:166bb01c25aa1$03211750$39ef2ecf@TKMSFTNGXA08...
> >> Hi,
> >>
> >> I did the following:
> >> 1. installed winnt 4 with SP6
> >> 2. installed iis 4
> >> 3. installed SP6 again
> >> 4. generated a new key and certificate request ->
> PKCS#10
> >> (newkeyrq.txt)
> >> 5. generated certificate with our PKI
> >> 6. convert pkcs#7 with the certutil tool
> >> 7. import certificate in IIS
> >> -> CAPI2 error
> >>
> >> I didn't tried it with a certificate coming from another
> >> PKI. I've added the certificate (DER encoded)
> >>
> >> Thanks!
> >>
> >> >-----Original Message-----
> >> >Opps :(
> >> >Can you give info on your setup ?
> >> >E.g. w2k cert server, the cert is to install on IIS4.0
> >> >and the steps you do and the error detail.
> >> >if you request a test cert from Verisign or Thawte
> >> >same error ?
> >> >
> >> >Rgds.
> >> >
> >> >"Geert Van Muylem" <Geert.Van.Muylem@UTIMACO.BE> wrote
> in
> >> message
> >> >news:109f201c25a34$4bd25530$35ef2ecf@TKMSFTNGXA11...
> >> >> Hi,
> >> >>
> >> >> I've tried this before posting a message to the
> >> >> newsgroup...I've radixed the stream and put any
> possible
> >> >> header and footer. I've tried also with the certutil.
> >> The
> >> >> import gave me always the same error! (Even giving a
> >> wrong
> >> >> password gave me this error!!!)
> >> >> So I really don't know what's going wrong...
> >> >>
> >> >> Thanks,
> >> >> Geert
> >> >>
> >> >> >-----Original Message-----
> >> >> >Mm... I thought this was answer yesterday......
> >> >> >Try
> >> >> >Error: CAPI2 = 80093005 When Installing a WWW
> >> Certificate
> >> >> >http://support.microsoft.com/default.aspx?
> scid=KB;EN-
> >> >> US;q269290
> >> >> >
> >> >> >Rgds.
> >> >> >
> >> >> >"Geert Van Muylem" <Geert.Van.Muylem@SKYNET.BE>
> wrote
> >> in
> >> >> message
> >> >> >news:3d7f8504$0$177$ba620e4c@news.skynet.be...
> >> >> >> Hi,
> >> >> >>
> >> >> >> I'm trying to generate a keypair for the IIS (4 on
> >> NT4)
> >> >> with the key
> >> >> >> management tool
> >> >> >> and using an external PKI. It generates fine a
> >> PKCS#10
> >> >> request and my PKI
> >> >> >> generates
> >> >> >> the PKCS#7 response. I'm using the certutil
> >> application
> >> >> to convert the
> >> >> >> PKCS#7 to a radix stream
> >> >> >> (according to some info found on msdn, iis seems
> not
> >> to
> >> >> accept a DER
> >> >> >encoded
> >> >> >> stream generating
> >> >> >> the CAPI2 error 80093005) but I'm always getting
> the
> >> >> same error no matter
> >> >> >> the format !!!!
> >> >> >>
> >> >> >> Can anyone help me with this one?
> >> >> >>
> >> >> >> Thanks!!!
> >> >> >>
> >> >> >>
> >> >> >> -----BEGIN CERTIFICATE-----
> >> >> >>
> >> >>
> >>
> MIIB8AYJKoZIhvcNAQcCoIIB4TCCAd0CAQExADALBgkqhkiG9w0BBwGgggH
> >> >> FMIIB
> >> >> >>
> >> >>
> >>
> wTCCASqgAwIBAgIBGDANBgkqhkiG9w0BAQUFADARMQ8wDQYDVQQDDAZDQVN
> >> >> fU0sw
> >> >> >>
> >> >>
> >>
> HhcNMDIwOTEwMDgxMDEzWhcNMjIwOTEwMDgxMDEzWjBnMQswCQYDVQQGEwJ
> >> >> CRTEQ
> >> >> >>
> >> >>
> >>
> MA4GA1UECBMHVVNCMDAwNTEQMA4GA1UEBxMHVVNCMDAwNTEQMA4GA1UEChM
> >> >> HVVNC
> >> >> >>
> >> >>
> >>
> MDAwNTEQMA4GA1UECxMHVVNCMDAwNTEQMA4GA1UEAxMHVVNCMDAwNTBcMA0
> >> >> GCSqG
> >> >> >>
> >> >>
> >>
> SIb3DQEBAQUAA0sAMEgCQQDYBo3RI8pwJTLVUgNJOe1KE9yj9P8EkjXux+H
> >> >> vlVUt
> >> >> >>
> >> >>
> >>
> ttuZSYuWhtNULeMjvqjnsUD8SCYFuoR44AbPjx1LPCXXAgMBAAGjFzAVMBM
> >> >> GA1Ud
> >> >> >>
> >> >>
> >>
> JQQMMAoGCCsGAQUFBwMBMA0GCSqGSIb3DQEBBQUAA4GBADY0jVHkS8EWzrQ
> >> >> uJPUX
> >> >> >>
> >> >>
> >>
> iHUJEGNfE7PLJgd34XZJ+9sWWvTv8Ba+Tkgqr0FHcf8WOgaSnE9AcULyZxc
> >> >> zW5ZE
> >> >> >>
> >> >>
> >>
> iqlP7QbDzTGegIx/QoekuW5qNV8bT11cMPznaBPWpXjlj0x1YBk/9pDbcSg
> >> >> /YnHr
> >> >> >> mlQWq8dbTMBOmsGxxIYhCswSMQA=
> >> >> >> -----END CERTIFICATE-----
> >> >> >>
> >> >> >>
> >> >> >>
> >> >> >>
> >> >> >>
> >> >> >>
> >> >> >
> >> >> >.
> >> >> >
> >> >
> >> >.
> >> >
> >
> >.
> >