cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
9612
Views
5
Helpful
4
Replies

RTMT Alert- SyslogSeverityMatchFound

fenilantony
Level 1
Level 1

I am getting every one hours the below errors.

I rebooted the entire cluster, but still getting same alerts.

If any one face same issue please share

The running call manager version is 8.6.2.23900-10

At Mon Nov 03 03:02:04 AST 2014 on node 172.26.12.2, the following SyslogSeverityMatchFound events generated:
SeverityMatch : Critical
MatchedEvent : Nov  3 03:01:53 CUCMTFTP1 local7 2 : 72: CUCMTFTP1.Companyname.org.com: Nov 03 2014 00:01:53.4 UTC :  %UC_CERT-2-CertValidfor7days: %[Message=Certificate expiration Notification. Certificate name:CAPF-fb9e9bef.der Unit:CallManager-trust Type:own-cert Expiration:Sun Mar 3][AppID=Cisco Certificate Monitor][ClusterID=][NodeID=CUCMTFTP1]: Alarm to indicate that Certificate has Expired or Expires in less than seven days
AppID : Cisco Syslog Agent
ClusterID :
NodeID : CUCMTFTP1
 TimeStamp : Mon Nov 03 03:01:53 AST 2014

SeverityMatch : Critical
MatchedEvent : Nov  3 03:01:53 CUCMTFTP1 local7 2 : 73: CUCMTFTP1.Companyname.org.com: Nov 03 2014 00:01:53.6 UTC :  %UC_CERT-2-CertValidfor7days: %[Message=Certificate expiration Notification. Certificate name:CAPF-d73c88c0.der Unit:CallManager-trust Type:own-cert Expiration:Mon Feb 2][AppID=Cisco Certificate Monitor][ClusterID=][NodeID=CUCMTFTP1]: Alarm to indicate that Certificate has Expired or Expires in less than seven days
AppID : Cisco Syslog Agent
ClusterID :
NodeID : CUCMTFTP1
 TimeStamp : Mon Nov 03 03:01:54 AST 2014

1 Accepted Solution

Accepted Solutions

Dennis Mink
VIP Alumni
VIP Alumni

It indicates certs about to be expired, have you verified the certs?

Please remember to rate useful posts, by clicking on the stars below.

View solution in original post

4 Replies 4

Dennis Mink
VIP Alumni
VIP Alumni

It indicates certs about to be expired, have you verified the certs?

Please remember to rate useful posts, by clicking on the stars below.

Yes, its expired.Please find below details

Certificate name:CAPF-fb9e9bef
Validity From: Tue Nov 03 18:27:58 AST 2009
           To:   Mon Nov 03 18:27:58 AST 2014

Certificate name:CAPF-d73c88c0
 Validity From: Tue Nov 03 12:51:25 AST 2009
           To:   Mon Nov 03 12:51:25 AST 2014

 

Is it required to regenerate all certificates?

Is thr any impact ?

 

I verified all certificates and regenerated which were expired.This stopped all RTMT "SyslogSeverityMatchFound " alerts.

[Cisco Unified Operating System Administration -->Security-->Certificate-management]

@Dennis Mink-Thanks for your advise

Hi,

May I know what is the impact you are facing while you regenerated the Cert?

There are few certs in the cert list with CAPF naming. Should we regenerate CAPF or CAPF-trust? or Both should regenerate again as well? Thanks.