Solved

CA moved to another server - now errors

Posted on 2016-10-17
19
86 Views
Last Modified: 2016-10-31
Hi Experts,

we have moved our CA to another server.
Now I cannot open CERTSRV to sign a request.
Can you help me to find the error ?




Modul

IsapiModule



Benachrichtigung

ExecuteRequestHandler



Handler

ASPClassic



Fehlercode

0x800700aa





Angeforderte URL

http://s02dc:80/certsrv/Default.asp



Physikalischer Pfad

C:\Windows\system32\CertSrv\de-DE\Default.asp



Anmeldemethode

Negotiate
0
Comment
Question by:Eprs_Admin
  • 10
  • 8
19 Comments
 
LVL 7

Expert Comment

by:No More
ID: 41846359
Did you export CA database and export CA configuration from registry and then uninstall CA on old server ?

Did you then install CA on new server and import database and registry configuration to new server ?
0
 

Author Comment

by:Eprs_Admin
ID: 41846369
Hello,

yes we have exported the REG settings and the DB.
From the old server it is uninstalled
On the new server it is installed and REG settings imported as well the DB.
0
 
LVL 7

Expert Comment

by:No More
ID: 41846377
I forgot to mention , Do you have same name of the server ?



CA server 2003 to 2008 ?
0
NAS Cloud Backup Strategies

This article explains backup scenarios when using network storage. We review the so-called “3-2-1 strategy” and summarize the methods you can use to send NAS data to the cloud

 

Author Comment

by:Eprs_Admin
ID: 41846382
no its another name.
0
 
LVL 7

Expert Comment

by:No More
ID: 41846387
What I would remember, It has to be same name to get it to work

old server name move to new server
0
 

Author Comment

by:Eprs_Admin
ID: 41846393
but this is not possible.
I have another server with another name and I cannot change it.

So when I export the DB and the regisrty, why I need the same name ?
This makes no sense.
0
 
LVL 7

Accepted Solution

by:
No More earned 500 total points
ID: 41846409
Never mind that,

Look at this link , I believe this could sort you out
https://blogs.iis.net/webtopics/asp-500-error-and-error-code-0x800700aa-when-browsing-a-simple-asp-page
0
 

Author Comment

by:Eprs_Admin
ID: 41846416
I dont use McAffee, so this link is obsolete.
0
 
LVL 7

Expert Comment

by:No More
ID: 41846424
Read that article, it clearly tells you how to troubleshoot this issue
0
 

Author Comment

by:Eprs_Admin
ID: 41846451
I have read all,  but this will not solve my case.
0
 
LVL 79

Expert Comment

by:David Johnson, CD, MVP
ID: 41846466
1. Did you create a capolicy.inf and put it in your windows folder.

More than likely your CA configuration is incorrect and pointing to the OLD servername.
0
 
LVL 7

Expert Comment

by:No More
ID: 41846472
@David
That was needed for 2003 server not 2008 what I would remember
0
 

Author Comment

by:Eprs_Admin
ID: 41846497
The regsettings are ok.
I dont have a ca policy....whats this ?
0
 

Author Comment

by:Eprs_Admin
ID: 41846530
Sorry your link was right.
In the past we had also McAffee.
Now the certsrv website works again.
0
 
LVL 7

Expert Comment

by:No More
ID: 41846570
So, I was right ?
0
 

Author Comment

by:Eprs_Admin
ID: 41846598
yes the IE starts again but still I cannot enter the CSR to get my certificate.

I get this error:
cert-error.JPG
0
 

Author Comment

by:Eprs_Admin
ID: 41846605
on EXCH2013 I have created a new cert request.
But when I enter this reqest to our CA I get this error:

WIN32: 13 Error
SOmething with wrong data.

My CA is running on WIN2008, is this a problem ?
0
 
LVL 7

Expert Comment

by:No More
ID: 41846661
Open certification authority and check if you have any certificates from old server there ,as they need to be revoked and new cert reissued from new CA

Also restart CA server

You need to check that you have correct CA certs on servers

Do you have public cert for your exchange server ?
0
 

Author Closing Comment

by:Eprs_Admin
ID: 41866498
it was something with our old security system from Kaspersky.
0

Featured Post

Problems using Powershell and Active Directory?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Pop culture is prime bait for hackers seeking to infect user’s computers and mobile devices with malicious malware. Hackers know exactly what the latest trends are online and know how to use them to their advantage.
Examines three attack vectors, specifically, the different types of malware used in malicious attacks, web application attacks, and finally, network based attacks.  Concludes by examining the means of securing and protecting critical systems and inf…
This tutorial will show how to configure a new Backup Exec 2012 server and move an existing database to that server with the use of the BEUtility. Install Backup Exec 2012 on the new server and apply all of the latest hotfixes and service packs. The…
Email security requires an ever evolving service that stays up to date with counter-evolving threats. The Email Laundry perform Research and Development to ensure their email security service evolves faster than cyber criminals. We apply our Threat…

772 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question