[Webinar] Streamline your web hosting managementRegister Today

x
?
Solved

CAPi2 errors on all Windows 2008 servers.

Posted on 2010-08-16
6
Medium Priority
?
1,016 Views
Last Modified: 2012-05-10
I am getting the error below on all my Windows 2008 servers. I have read countless message board articles on this error and all kinds of remedies. Can somone please tell me whats going on here and how I resolve it without giving me a half dozen links to read because I believe I have seen them all. If you had this error, how did you get rid of it. It’s the strangest thing. On some servers, it stops for around 2 weeks, and then starts up again. On others, I get it every day several times a day.

Log Name:      Application
Source:        Microsoft-Windows-CAPI2
Date:          7/30/2010 10:14:56 PM
Event ID:      11
Task Category: None
Level:         Error
Keywords:      Classic
User:          N/A
Computer:      webserver.internal.local
Description:
Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  <System>
    <Provider Name="Microsoft-Windows-CAPI2" Guid="{5bbca4a8-b209-48dc-a8c7-b23d3e5216fb}" EventSourceName="Microsoft-Windows-CAPI2" />
    <EventID Qualifiers="49154">11</EventID>
    <Version>0</Version>
    <Level>2</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2010-07-31T02:14:56.000Z" />
    <EventRecordID>267880</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>webserver.internal.local</Computer>
    <Security />
  </System>
  <EventData>
    <Data>http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab</Data>
    <Data>A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
</Data>
  </EventData>
</Event>
0
Comment
Question by:osiexchange
  • 3
  • 2
6 Comments
 
LVL 6

Expert Comment

by:ajarvey
ID: 33446973
Check the time and date on all of the systems in question, and make sure they're not set to like, 1910 or something odd.
0
 

Author Comment

by:osiexchange
ID: 33446994
They are all fine. Most of them are my Exchange servers. I would know if the time were off.
0
 
LVL 6

Expert Comment

by:ajarvey
ID: 33447057
Are you using self signed certs?
0
Creating Active Directory Users from a Text File

If your organization has a need to mass-create AD user accounts, watch this video to see how its done without the need for scripting or other unnecessary complexities.

 

Author Comment

by:osiexchange
ID: 33447166
No. They are issued via Entrust.  This is occurring on servers that don't even have certificates installed so it has nothing to do with installed certificates. Its only 2008 servers.
0
 

Accepted Solution

by:
mesadmin earned 1000 total points
ID: 33802970
0
 

Author Comment

by:osiexchange
ID: 33823837
Not yet. I got off track on this. I will check it out.
0

Featured Post

Has Powershell sent you back into the Stone Age?

If managing Active Directory using Windows Powershell® is making you feel like you stepped back in time, you are not alone.  For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

You might have come across a situation when you have Exchange 2013 server in two different sites (Production and DR). After adding the Database copy in ECP console it displays Database copy status unknown for the DR exchange server. Issue is strange…
This article explains how to install and use the NTBackup utility that comes with Windows Server.
To efficiently enable the rotation of USB drives for backups, storage pools need to be created. This way no matter which USB drive is installed, the backups will successfully write without any administrative intervention. Multiple USB devices need t…
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…

591 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question