Bug 1257744 - RHCS error when agent tries to look at requests
RHCS error when agent tries to look at requests
Product: Dogtag Certificate System
Classification: Community
Component: Certificate Manager (Show other bugs)
All Linux
medium Severity medium
: 9.0
: ---
Assigned To: Christina Fu
Ben Levenson
Depends On:
  Show dependency treegraph
Reported: 2015-08-27 16:15 EDT by Marc Richter
Modified: 2015-11-16 15:17 EST (History)
2 users (show)

See Also:
Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of:
Last Closed: 2015-11-16 15:06:52 EST
Type: Bug
Regression: ---
Mount Type: ---
Documentation: ---
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: ---

Attachments (Terms of Use)

  None (edit)
Description Marc Richter 2015-08-27 16:15:39 EDT
Description of problem: "We performed an os patch and rebooted the server last weekend.  Now when we receive a certificate request and we click on it to review it we get this error:

 The Certificate System has encountered an unrecoverable error.

Error Message:
java.lang.ClassCastException: netscape.security.x509.Extension cannot be cast to netscape.security.x509.CRLDistributionPointsExtension

Please contact your local administrator for assistance. 

Our certificate profiles have not changed in over a year"

Version-Release number of selected component (if applicable): 8.1

How reproducible: Constantly

Steps to Reproduce:
use the suggested workaround:
- Enable a profile with CRLDistributionPointsExtDefault extension in it
- Go to end-services page and submit a cert request using that profile (any dumb req will do)

And voila, you've got CRLDistributionPointsExtension working. You can now go to agent page and reject/delete dump request. This will last till next CA reboot.

Works on RH CA 8.1.

After the workaround, reboot the system and it will fail again.

Note You need to log in before you can comment on or make changes to this bug.