{"id":5299,"date":"2021-09-23T22:05:58","date_gmt":"2021-09-23T22:05:58","guid":{"rendered":"https:\/\/pariswells.com\/blog\/?p=5299"},"modified":"2021-09-23T22:05:58","modified_gmt":"2021-09-23T22:05:58","slug":"could-not-complete-get-request-certificate-signed-by-unknown-authority-thales-cipher-trust-manager","status":"publish","type":"post","link":"https:\/\/pariswells.com\/blog\/research\/could-not-complete-get-request-certificate-signed-by-unknown-authority-thales-cipher-trust-manager","title":{"rendered":"Could not complete get request certificate signed by unknown authority Thales Cipher Trust Manager"},"content":{"rendered":"<p>When Ciphertrust Managers ( Key Secures ) loose access to their Corresponding HSM device , they go in an offline state per below<\/p><p id=\"zgUOHih\"><img loading=\"lazy\" decoding=\"async\" width=\"593\" height=\"296\" class=\"alignnone size-full wp-image-5300  img-responsive\" src=\"https:\/\/pariswells.com\/blog\/wp-content\/uploads\/2021\/09\/img_614cf918b118c.png\" alt=\"\" srcset=\"https:\/\/pariswells.com\/blog\/wp-content\/uploads\/2021\/09\/img_614cf918b118c.png 593w, https:\/\/pariswells.com\/blog\/wp-content\/uploads\/2021\/09\/img_614cf918b118c-300x150.png 300w\" sizes=\"auto, (max-width: 593px) 100vw, 593px\" \/><\/p><p>The Certificates for the devices go back to self signed as well ( web-firstboot.keysecure.local )\u00a0<\/p><p id=\"sNBZUgU\"><img loading=\"lazy\" decoding=\"async\" width=\"501\" height=\"490\" class=\"alignnone size-full wp-image-5301  img-responsive\" src=\"https:\/\/pariswells.com\/blog\/wp-content\/uploads\/2021\/09\/img_614cf92168f86.png\" alt=\"\" srcset=\"https:\/\/pariswells.com\/blog\/wp-content\/uploads\/2021\/09\/img_614cf92168f86.png 501w, https:\/\/pariswells.com\/blog\/wp-content\/uploads\/2021\/09\/img_614cf92168f86-300x293.png 300w\" sizes=\"auto, (max-width: 501px) 100vw, 501px\" \/><\/p><p>On Reboot you get the normal locked issue of the boot device<\/p><p id=\"gdgwGMw\"><img loading=\"lazy\" decoding=\"async\" width=\"600\" height=\"645\" class=\"alignnone size-full wp-image-5302  img-responsive\" src=\"https:\/\/pariswells.com\/blog\/wp-content\/uploads\/2021\/09\/img_614cf93264438.png\" alt=\"\" srcset=\"https:\/\/pariswells.com\/blog\/wp-content\/uploads\/2021\/09\/img_614cf93264438.png 600w, https:\/\/pariswells.com\/blog\/wp-content\/uploads\/2021\/09\/img_614cf93264438-279x300.png 279w\" sizes=\"auto, (max-width: 600px) 100vw, 600px\" \/><\/p><p>When running<\/p><pre>ksctl diskenc secureboot -i \"Z:\\PEMFile\" --url https:\/\/keysecure --configfile file.yaml\u00a0<\/pre><p>it might display the below error<\/p><p id=\"ksVpaQX\"><img loading=\"lazy\" decoding=\"async\" width=\"1041\" height=\"43\" class=\"alignnone size-full wp-image-5303  img-responsive\" src=\"https:\/\/pariswells.com\/blog\/wp-content\/uploads\/2021\/09\/img_614cf9da7e901.png\" alt=\"\" srcset=\"https:\/\/pariswells.com\/blog\/wp-content\/uploads\/2021\/09\/img_614cf9da7e901.png 1041w, https:\/\/pariswells.com\/blog\/wp-content\/uploads\/2021\/09\/img_614cf9da7e901-300x12.png 300w, https:\/\/pariswells.com\/blog\/wp-content\/uploads\/2021\/09\/img_614cf9da7e901-1024x42.png 1024w, https:\/\/pariswells.com\/blog\/wp-content\/uploads\/2021\/09\/img_614cf9da7e901-768x32.png 768w\" sizes=\"auto, (max-width: 1041px) 100vw, 1041px\" \/><\/p><p>Make sure your Yaml file is correct<\/p>","protected":false},"excerpt":{"rendered":"<p>When Ciphertrust Managers ( Key Secures ) loose access to their Corresponding HSM device , they go in an offline state per belowThe Certificates for the devices [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[3581,3582,3580,1508,3583,2634,3584],"class_list":["post-5299","post","type-post","status-publish","format-standard","hentry","category-research","tag-certificate-signed-by-unknown-authority","tag-ciphertrust","tag-could-not-complete-get-request","tag-hsm","tag-keysecure","tag-manager","tag-thales"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/posts\/5299","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/comments?post=5299"}],"version-history":[{"count":1,"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/posts\/5299\/revisions"}],"predecessor-version":[{"id":5304,"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/posts\/5299\/revisions\/5304"}],"wp:attachment":[{"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/media?parent=5299"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/categories?post=5299"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/tags?post=5299"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}