Skip to main content

(A certificate chain processed, but terminated in a root certificate which is not trusted by the trust provider.

I was deploying a Lync Server Director in a Multi-Tenant configuration after i assigned the certificate a went to start the services, the Front-End services couldn't start with the following errors

Log Name:      Lync Server
Source:        LS Protocol Stack
Date:          3/12/2013 1:52:06 PM
Event ID:      14397
Task Category: (1001)
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      Lync Director FQDN
Description:
A configured certificate could not be loaded from store. The serial number is attached for reference.
Extended Error Code: 0x800B0109 (A certificate chain processed, but terminated in a root certificate which is not trusted by the trust provider.).
Event Xml:
http://schemas.microsoft.com/win/2004/08/events/event
">
 
   
    14397
    3
    1001
    0x80000000000000
   
    58
    Lync Server
    Lync Director FQDN
   
 

 
    0x800B0109
    A certificate chain processed, but terminated in a root certificate which is not trusted by the trust provider.
    AD5CEFED0AA77CC23B0B247DCF82F208
 

========================================================================Log Name:      Lync Server
Source:        LS Protocol Stack
Date:          3/12/2013 1:52:06 PM
Event ID:      14359
Task Category: (1001)
Level:         Error
Keywords:      Classic
User:          N/A
Computer:      Lync Director FQDN
Description:
Unable to use the default outgoing certificate.
Error 0x800B0109 (A certificate chain processed, but terminated in a root certificate which is not trusted by the trust provider.).
Cause: The certificate may have been deleted or may be invalid, or permissions are not set correctly.
Resolution:
Ensure that a valid certificate is present in the local computer certificate store. Also ensure that the server has sufficient privileges to access the store.
Event Xml:
http://schemas.microsoft.com/win/2004/08/events/event
">
 
   
    14359
    2
    1001
    0x80000000000000
   
    59
    Lync Server
    Lync Director FQDN
   
 

 
    0x800B0109
    A certificate chain processed, but terminated in a root certificate which is not trusted by the trust provider.
 


I installed an Inetermediate CA certificate from the certificate provider and the Front-End Service started successfully, the strange thing is that I didn't face this issue with the Front-End servers so I was pulling my hair out and looking into different directions!!

Comments

Popular posts from this blog

Attack Surface Reduction Rules (ASR) reporting using Microsoft 365 Security Center

This is my forst post since very long time I have decied to come back and blog about some of my findings. If you have an E5 License you can use the Microsoft 365 Security portal (security.microsoft.com) to access reports for ASR configuration and detection. As far as I remember last time I want to access the reports they were in a different placce , it took me a while to figure out where they are locate , so I thought to blog about this. To access the ASR report , From the home page of  security.microsoft.com , scroll down use the navigation pane on the left and select Reports Then under General click on Security Report Scroll down till you find the Attack Surface reduction rules section, click on the title and it will tack you  to a another page to view more details From the configuration tab you can get an overview of  the configuration and which machines has ASR rules off,  enforced or in audit mode. If you click on the name of a specific machine it will sho...

Upgrade from Lync Evaluation edition to Lync RTM.

If you have installed Lync Server using the 180 Day  trial bits  you can upgrade to the RTM bits nsing the following easy steps: Run setup.exe on your Lync server Volume License media. Click on "Install or Update Lync server system" Click on "Setup or remove Lync server components" Open CMD and  navigate to \Setup\amd64\setup and then run msiexec.exe /fvomus server.msi EVALTOFULL=1 /qb  Open Lync Server Management Shell and then run Enable-CSComputer and then you are done !