Hi everyone,

We recently had rpower, reventlog, psh, etc stop working due to an 
expired SSL certificate, ca-cert.pem.  We manually created a new one 
with an expiry that matches the other certs in /etc/xcat/cert/, and 
everything started working again.

Except for rcons.  It's throwing the following error:

$ rcons node001
console: SSLVerifyCallback(): error with certificate at depth: 1
console: SSLVerifyCallback():  issuer  = /CN=xCAT CA
console: SSLVerifyCallback():  subject = /CN=xCAT CA
console: SSLVerifyCallback():  error #10: certificate has expired
console: SSL negotiation failed
24559:error:14090086:SSL 
routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify 
failed:s3_clnt.c:915:

I've checked /etc/xcat/conserver.cf & it's correctly configured to use 
the new certificate.  Has anyone seen this before, and can you point me 
in the right direction?

FYI, we're running xCAT version 2.5.1.

Thanks,
Roland
-- 
Roland Schigas
Sys Admin, UBC Weather Forecast Research Team
+1 604-822-4760
rschi...@eos.ubc.ca
www.eos.ubc.ca

------------------------------------------------------------------------------
Mobile security can be enabling, not merely restricting. Employees who
bring their own devices (BYOD) to work are irked by the imposition of MDM
restrictions. Mobile Device Manager Plus allows you to control only the
apps on BYO-devices by containerizing them, leaving personal data untouched!
https://ad.doubleclick.net/ddm/clk/304595813;131938128;j
_______________________________________________
xCAT-user mailing list
xCAT-user@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/xcat-user

Reply via email to