01-21-2015 06:23 AM - edited 03-17-2019 01:40 AM
Running callmanager version 9.1.2.10000-28 with one pub and three subs. There is a tomcat-trust and callmanager-trust for a subscriber that has been removed from the cluster some time ago that is still there and is now notifying pending expiration. I turned off certificate expiry monitor and certificate change notification services and deleted the certs. After services are restarted, certs are still there.
Better to regenerate or let them expire?
01-21-2015 08:06 AM
Even once they expire I think you'll still get the annoying emails.
The process you followed sounds correct. Just make sure you stop the services on all servers at the same time before you delete the cert.
GTG
01-21-2015 08:11 AM
Thanks for the reply. Both services were stopped on all four callmanagers before deleting. Even tried it twice as I thought I must have made a mistake. Going to reboot cluster this weekend (uptime near 450 days) and try again.
12-31-2015 05:12 AM
Brad,
You may be hitting a bug that makes the certs reappear. Sorry I dont have a bug ID but i remember reading about them.Open a case with TAC before rebooting your cluster. Hope this helps.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide