Guest

Preview Tool

Cisco Bug: CSCus92590 - Signature verification failing while updating certificates via jtprefs

Last Modified

Feb 08, 2017

Products (1)

  • Cisco Unified Communications Manager (CallManager)

Known Affected Releases

11.0(1.99831.8)

Description (partial)

Symptom:
Signature verification failing while updating certificates via jtprefs

Conditions:
JTAPI client reads the CTL file, extracts the certificates and creates a java keystore using the certificate names as the aliases for each entry. Now a java keystore does not allow multiple entries in it with the same alias thus it is so happening that it is overwriting the cert which is signed using RSA with the one which is signed using ECDSA. Thus, when JTAPI tries to get the signer cert from the keystore, for verification, it always gets the latter one and not the former (RSA) which actually signed the CTL, which in turn results in the failure in the verification of the CTL signature.
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.