Failed to request local certificates

Symptom

Local certificate requests cannot be submitted.

Analysis

Solution

  1. Check for and fix any network connection problems.

  2. Obtain or import the CA certificate.

  3. Use ping to verify that the registration server is reachable.

  4. Specify the correct certificate request URL.

  5. Check the registration policy on the CR or RA, and make sure the attributes of the PKI entity meet the policy requirements.

  6. Specify the key pair used for certificate request in the PKI domain, or remove the key pair specified in the PKI and submit a certificate request again.

  7. Use pki abort-certificate-request domain to abort the certificate request.

  8. Specify the correct source IP address that the CA server can accept. For the correct settings, contact the CA administrator.

  9. Synchronize the system time of the device with the CA server.

  10. If the problem persists, contact Hewlett Packard Enterprise Support.