New Certificate automated via Microsoft CA

Nolan3
Mega Guru

Hello All,

 

I am setting up New Certificate (Automated) to pull a certificate from our Microsoft CA.  

 

I have configured all these items

1. Enabled Request New Certificate (Automated) catalog item

2. Configured a Credential Alias

3. Configured Credentials 

4. Created a routing policy

5. configured allow delegating fresh credentials and allow fresh credentials with NTLM only server auth on my mid server

6.  I did add a new number prefix to assign these new cert task a ticket number of CERTN instead of TASK

     a.  I did this because I was getting duplicate TASKS when create new certificate request via the catalog item.

 

What I have working:

  • I can request a certificate from this automated catalog item and see that the cert is created on our CA
  • I can see that the new cert tasks triggered an automated flow (so picked up routing policy)
  • I can see that a request ID was received which matches the ID on my CA
  • I can see it received certificate with serial number via private note in the task

Problem I am having

The new certificate task stays in work in progress and no certificate from my CA is attached to the ticket like I read is suppose to?
How can I fix this or find out where it is breaking down?

 

Troubleshooting information:

I see this process is using the subflow of Microsoft-Certificate Management.  I then figured out if I want to see more details I need to go to flow administration and look at Today's Executions.  However when doing that there were no useful details.  

I then set system property com.snc.process_flow.reporting.level to BASIC instead of off which starting giving me more information via operations view.  In looking at the ops view of a sub flow I can see that Microsoft - Populate Certificate and Attachments says completed but I don't have the cert in the new cert task.  see screen shot below to show this entry.  

 

Appreciate any thoughts someone might have.  Thank you!

 

subflow execution details

 

 

Nolan3_1-1755903539924.png
Example of what a cert task looks like that is in work in progress.  Note every 30 minutes the schedule job runs it says it received cert but nothing attached and task still work in progress.  

Nolan3_2-1755903675870.png

 

 

0 REPLIES 0