This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Some Endpoint not communicating back due to certificate

I did a migration of EC 4.5 from one server to another following the migration guide.  It seemed to go good for a couple of test machines in a group and they moved over fine and report back fine.  Most of the other machines are having a problem reporting back.  I can go to a client and totally remove all Sophos and then run protect computers from the EC console.  It will install on the client but not report back.  The RMS agent log on the client shows a certficate error of "unknown CA".  All clients are Win XP SP3.  I haven't figured why some work fine and some don't.  I am running on SBS2008 server.  I don't know if this is the Sophos Certificate or the SSL certificate for the Windows Server.  Again some are working fine so I can only thing it is a client issue.  I have Win firewall rules in the GPO to allow traffic through.  I even disabled the firewalls to test.  I can't telnet to the client's 8192.  I assume RMS does run enough to start the port properly.

31.08.2010 15:30:10 0538 W SSL connection alert, peer address 192.168.10.3
31.08.2010 15:30:10 0538 W Cannot verify peer's SSL certificate, unknown CA
31.08.2010 15:30:10 0538 E Router::ReportInvalidCertificate: Caught Empty IOR string from iiopAddressesInIOR
31.08.2010 15:30:10 0538 E ACE_SSL (1664|1336) error code: 336134278 - error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed
:4851


This thread was automatically locked due to age.
Parents
  • Somehow I fixed it.  I was playing with creating a new default updating profile and also playing with update manager.  One of those seems to have fixed it.  Now I can run protect computer and they comunicate back.  Not sure the actual fix.

    :4918
Reply
  • Somehow I fixed it.  I was playing with creating a new default updating profile and also playing with update manager.  One of those seems to have fixed it.  Now I can run protect computer and they comunicate back.  Not sure the actual fix.

    :4918
Children
No Data