06-28-2017 04:05 PM - edited 03-13-2019 09:57 PM
I am trying to cluster my database in CMS and I have created the client and server csr files. I had them signed on an internal CA but when I try to run the "database cluster initialize" command I am getting the following error.
ERROR: Extended key usages of client certificate 'dbclient.cer' does not specify Client Authentication (Expected 'clientAuth' found 'serverAuth')
Is this due to the CA signing it as 'serverAuth' instead of 'clientAuth'? Or is this due to the CSR being incorrect?
06-28-2017 09:28 PM
Review section 3.1.4
http://www.cisco.com/c/dam/en/us/td/docs/conferencing/ciscoMeetingServer/Deployment_Guide/Version-2-1/Certificate-Guidelines-Scalable-and-Resilient-Deployments-2-1.pdf
06-04-2018 09:45 AM
Hi Jaime,
as per your given book for redundancy I am running the database cluster initialize command but since I have intermediate root and root certs in my scenario by database is not initializing and the command to install cert only accept root or intermediate root at a time i.e "database cluster certs dbcluster.key dbcluster.cer dbclient.key dbclient.cer root.cer" here i can only put root or intermediate.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide