Go Premium for a chance to win a PS4. Enter to Win

x
?
Solved

CAPi2 errors on all Windows 2008 servers.

Posted on 2010-08-16
6
Medium Priority
?
1,013 Views
Last Modified: 2012-05-10
I am getting the error below on all my Windows 2008 servers. I have read countless message board articles on this error and all kinds of remedies. Can somone please tell me whats going on here and how I resolve it without giving me a half dozen links to read because I believe I have seen them all. If you had this error, how did you get rid of it. It’s the strangest thing. On some servers, it stops for around 2 weeks, and then starts up again. On others, I get it every day several times a day.

Log Name:      Application
Source:        Microsoft-Windows-CAPI2
Date:          7/30/2010 10:14:56 PM
Event ID:      11
Task Category: None
Level:         Error
Keywords:      Classic
User:          N/A
Computer:      webserver.internal.local
Description:
Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  <System>
    <Provider Name="Microsoft-Windows-CAPI2" Guid="{5bbca4a8-b209-48dc-a8c7-b23d3e5216fb}" EventSourceName="Microsoft-Windows-CAPI2" />
    <EventID Qualifiers="49154">11</EventID>
    <Version>0</Version>
    <Level>2</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2010-07-31T02:14:56.000Z" />
    <EventRecordID>267880</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>webserver.internal.local</Computer>
    <Security />
  </System>
  <EventData>
    <Data>http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab</Data>
    <Data>A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
</Data>
  </EventData>
</Event>
0
Comment
Question by:osiexchange
  • 3
  • 2
6 Comments
 
LVL 6

Expert Comment

by:ajarvey
ID: 33446973
Check the time and date on all of the systems in question, and make sure they're not set to like, 1910 or something odd.
0
 

Author Comment

by:osiexchange
ID: 33446994
They are all fine. Most of them are my Exchange servers. I would know if the time were off.
0
 
LVL 6

Expert Comment

by:ajarvey
ID: 33447057
Are you using self signed certs?
0
What does it mean to be "Always On"?

Is your cloud always on? With an Always On cloud you won't have to worry about downtime for maintenance or software application code updates, ensuring that your bottom line isn't affected.

 

Author Comment

by:osiexchange
ID: 33447166
No. They are issued via Entrust.  This is occurring on servers that don't even have certificates installed so it has nothing to do with installed certificates. Its only 2008 servers.
0
 

Accepted Solution

by:
mesadmin earned 1000 total points
ID: 33802970
0
 

Author Comment

by:osiexchange
ID: 33823837
Not yet. I got off track on this. I will check it out.
0

Featured Post

Has Powershell sent you back into the Stone Age?

If managing Active Directory using Windows Powershell® is making you feel like you stepped back in time, you are not alone.  For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Redirected folders in a windows domain can be quite useful for a number of reasons, one of them being that with redirected application data, you can give users more seamless experience when logging into different workstations.  For example, if a use…
After seeing many questions for JRNL_WRAP_ERROR for replication failure, I thought it would be useful to write this article.
To efficiently enable the rotation of USB drives for backups, storage pools need to be created. This way no matter which USB drive is installed, the backups will successfully write without any administrative intervention. Multiple USB devices need t…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…

885 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question