I am Trying to upload Server Certificate for Expressway C and E in my Test Environment, but i am getting below Error message:
Invalid certificate: Unrecognized CA. This certificate is not currently trusted by the Expressway. This is because the CA certificate is not in the trust store.
I was able to upload CA Root Certificate on C and E
and then tried to upload CRL List , but still couldn't upload C and E Server Certificate
My Deployment is : Windows 2012 acts as DNS/AD/CA and Expressway 8.10.4 with UCM 12.0
I have followed the section : Enable AD CS to Issue"Client and Server Certificates
CA Root Cert , CSR and Expressway C Signed Cert attached
I just attached it as .txt as its only allowed ext for attachments , change Certs to .CER to and certcrl to .crl
SHA1 has been deprecated for quite some time, even VCS changed to SHA256 as the default for the CSRs back in 2015.
Recently I had the same problem, it was caused because the NTP had an incorrect date, so if the certificate validation date is in future, you always received the message. "Invalid Certificate: Unrecognized CA".
May i know how you over come the error - ""nvalid certificate: Unrecognized CA. This certificate is not currently trusted by the Expressway. This is because the CA certificate is not in the trust store.
Thank you !