lhmathys Posted June 22, 2017 Posted June 22, 2017 Hello all, I have been trying unsuccessfully to receive the certificate I bought from GoDaddy, and nothing I've done seems to work. I have followed the directions to the letter, but when I select the "Receive Cert." button, copy the contents of the .crt file into the dialog, absolutely nothing happens. The dialog doesn't update with the issuer information, and my connection is not trusted anymore. Any help would be appreciated.
Michel Kohanim Posted June 23, 2017 Posted June 23, 2017 Hi lhmathys , Please open Java Console, check all the debugging checkboxes (Advanced tab), redo the experiment and then paste the contents of Java console back here. With kind regards, Michel
lhmathys Posted July 3, 2017 Author Posted July 3, 2017 Hi Michel, I did what you asked, but nothing displayed in the java console. Just to review my steps: I click "Receive Cert." Copy and paste text from GoDaddy *.crt file into the dialog and click "Ok" Another dialog asks if I want to import intermediate certificates, I click "Yes" I see my certificate in the list, I then click "Import Cert." and select the, "gd_bundle-g2-g1.crt" file from GoDaddy I see the intermediate certificate in the list now I click "Save" - then nothing updates in the SSL Certificates Management dialog (still shows certificate issued by ISY) I press the "Enter" button in order to get the dialog to accept changes (no other dialog displays after step 6, it just sits there), when I press "Enter", the SSL Certificates Management dialog closes I press "Enter" again in order to get the Network dialog to close ISY Dashboard then says it has to reboot for settings to take effect After reboot, the certificate from GoDaddy is gone, and I'm stuck with the certificate issued by the ISY Again, I didn't see anything in the Java console - no exceptions, no messages that it imported... Does that help diagnose what's going on?
Michel Kohanim Posted July 4, 2017 Posted July 4, 2017 Hi lhmathys, Are you certain that you are doing this for HTTPS Server and not HTTPS Client? With kind regards,Michel
lhmathys Posted July 4, 2017 Author Posted July 4, 2017 Michel, Yes, I'm quite sure I'm doing this for the server and not the client. Is there anything I'm missing here? It's so strange...
Michel Kohanim Posted July 5, 2017 Posted July 5, 2017 Hi lhmathys, If you are being prompted that ISY needs to be rebooted, then most probably the certificate is something ISY does not like. Do you know the key length and signature algorithm? With kind regards, Michel
lhmathys Posted July 5, 2017 Author Posted July 5, 2017 Hi Michel, It only asks to be rebooted if I hit the enter key to dismiss the dialogs - hitting the close button on the dialog doesn't get the reboot notification. (See above.) As I said, when I import/receive the cert I have from GoDaddy, nothing in the SSL Certificates Management dialog changes. I would think the issuer field would at least change to "GoDaddy, Inc" or something like that. Also, after importing/receiving the cert I would expect the "Save" button on the Network dialog to be enabled, but it's not. I created a 2048 key request and GoDaddy says that it has a "GoDaddy SHA-2" encryption strength certificate.
Michel Kohanim Posted July 5, 2017 Posted July 5, 2017 Hi lhmathys, Please submit a ticket and we'll do a remote session. With kind regards, MIchel
bigDvette Posted September 6, 2017 Posted September 6, 2017 Did this get resolved and if so what resolved it. I find myself in the same position. I had a certificate expire. I downloaded the new cert and tried to install it. Nothing, message says date expired. Finally started over with new cert, nothing would change. Changed form GoDaddy to Star???? on godaddy site for issuing authority. Can see it in the CA, but says invalid CA. The issuer line never changes on the server cert screen. Something just isn't working. HAve spend 4 hours on it doing it every way from Sunday. Any help would be appreciated.
bigDvette Posted September 6, 2017 Posted September 6, 2017 The issue seems to bee it never changes the issue authority on the server certificate. It is acting like it is self signed even after you import the cert and intermediate. I don't think the cert import is working at all because when the issuer was correct (before I needed to renew the cert), it seemed to never renew as I don't think it is importing as nothing ever changes.
Michel Kohanim Posted September 6, 2017 Posted September 6, 2017 bigDvette, You have to issue a new cert request from ISY and follow the whole process. With kind regards, Michel
bigDvette Posted September 6, 2017 Posted September 6, 2017 (edited) Yes Michael I did exactly that. I clicked server, then it asked me if I wanted existing or new i selected new and gave new password. Generated a CSR, went to godaddy, processed, waited and then went in and pasted my cert and imported intermediate bundle. I’ve actually done that whole process 8 times since midnight to no avail. Any suggestions? Edited September 7, 2017 by bigDvette
Michel Kohanim Posted September 7, 2017 Posted September 7, 2017 Hi baguette, 1. Are you local to your ISY and use http? 2. When you click on Server, do you enter the password or do you create a new one? With kind regards, Michel
bigDvette Posted September 7, 2017 Posted September 7, 2017 Oh, good questions. I am not local to my ISY, I am over a VPN. Not sure how I can use HTTP as I am using the dashboard.jnlp java app to get as I thought that is the app you have to use. When I click on server, when I was completely re-doing the cert I would click new. If I got disconnected and had to log back in to load the cert, I would enter password. So to complete start over I would click new, but when I was trying to get the new one to work I would put in password.
Michel Kohanim Posted September 8, 2017 Posted September 8, 2017 Hi bigDvette, As long as the dashboard is communicating over http (the line you double click), then you should be OK. I think it's best to submit a ticket. With kind regard,Michel
bigDvette Posted September 9, 2017 Posted September 9, 2017 Ok, I put in a ticket. I have to say, something seems like a bug. Essentially it always treats it as a self signed cert. The issuer always says my domain name. it doesn't change when I install the cert and intermediate cert. Surely this can be tested on a system. I am running most resent firmware 4.6.2.
Michel Kohanim Posted September 10, 2017 Posted September 10, 2017 Hi bigDvette, I got your ticket but didn't know it was yours. I'll reply again. With kind regards, Michel
Bucket Posted November 23, 2017 Posted November 23, 2017 What was the resolution to this, I am having the exact same problem?
Michel Kohanim Posted November 24, 2017 Posted November 24, 2017 Bucket, Make sure you have the latest dashboard: 1. Clear your Java cache 2. https://isy.universal-devices.com/994i/dashboard.jnlp With kind regards, Michel
Recommended Posts