Hello,

I solved the problem.
In case someone faces a similar issue, during the upgrade, the folder
/etc/openxpki/ changed permissions.
restoring 755 to the directory solved the issue

On Mon, Jul 1, 2024 at 10:16 AM Alaa Hilal <alaahi...@gmail.com> wrote:

> Hello,
>
> Please note that i did not use the script sampleconfig.sh to do the setup.
> I created the keys and certificates myself and imported them.
> Also I did not modify anything after upgrade except for restarting the
> services
>
> Regards,
>
> On Thu, Jun 27, 2024 at 10:36 AM Alaa Hilal <alaahi...@gmail.com> wrote:
>
>> Hello,
>>
>> After the upgrade to v3.30, my vault and signer certificate are now
>> offline, although they were working fine just prior the upgrade
>>
>> the command:
>> openxpkicli  get_token_info --arg alias=vault-1
>>
>> I get the output
>> {
>>    "key_cert" : "-----BEGIN
>> CERTIFICATE-----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\nZRNhZYrLspGB\n-----END
>> CERTIFICATE-----",
>>    "key_cert_identifier" : "Q5JDO2dTebNzze6HMGG_VaImJBs",
>>    "key_engine" : "none",
>>    "key_name" : "/etc/openxpki/local/keys/vault-1.pem",
>>    "key_secret" : 1,
>>    "key_store" : "OPENXPKI",
>>    "key_usable" : 0,
>>    "token_type" : "datasafe"
>> }
>>
>> the cert is not usable any more
>> Is there any thing i should do after the upgrade? I did so using the
>> packages
>>
>> Regards,
>> Alaa
>>
>
_______________________________________________
OpenXPKI-users mailing list
OpenXPKI-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openxpki-users

Reply via email to