Unable to generate a CRL or revoke a certificate
2 years ago
Originally Published: 2007-02-15
Article Number
000062626
Applies To
RSA Keon Certificate Authority 6.5.1
Microsoft Windows 2000
Two-phase logging activated to log success and failure of all operations

Issue
Unable to generate a CRL or revoke a certificate
When generating a CRL the following message appears on-screen and in the audit log:

[XrcSECURELOGSERVERNOTREACHABLE: secure logging server is not reachable or out of diskspace]
Cause
The Xudad SSL certificate (/Xudad/ssl/certs/ssl.cert) had expired
The file /Xudad/ssl/certs/cas.cert & /LogServer/ssl/certs/cas.cert contains the old System which has expired.
Resolution
Deactivate two-phase logging and renew the above certificate.

If cas.cert contains an expired System CA certificate, log in to the Admin Console, under CA Operation select the System CA --> View PEM, and replace the content of cas.cert with the active System CA.