Wyse s10:Secure connection open failed

  • This topic is empty.
Viewing 9 posts - 1 through 9 (of 9 total)
  • Author
    Posts
  • #2916
    seisa
    Member
    • Total Post: 14
    • Regular Joe
    • ★★

    Hi all
    we have wyse s10
    I configured th FTP server with the wnos.ini file and the certifcate
    but after the reboot I got this error
    “Secure connection open failedâ€￾
    in the event log i found these lines

    *****************
    SSL: retcode=61 root certificate is not found locally
    https: SSLconnect failed, err= -1
    SSL: retcode=4 an error occurred while reading/writing
    ****************

    Although the events record that the certifcate is installed

    ****************
    Installed Certificate Name.cer on flash
    Installed Certificate Name.cer on ram
    ****************

    this is the wnos.ini


    AddCertificate=certnew.cer

    SignOn=Yes

    IcaBrowsing=HTTP
    PnliteServer=https://WIhost.abc.xx
    DomainList=domain


    Also I tried to rename the certificate to be .crt and updated the ini file with the new name
    but i got the same scenario fir the crt file too

    we have the wyse client in zone A, web interface server and secure gateway server in Zone B, citrix metaframe server and the published applications in zone C.

    The zones are separated by firewall and this enviroment is already working with the normal ica client on pc’s

    Any advice?

    Seisa

    #16031
    ConfGen
    Keymaster
    • Total Post: 11485
    • Jedi Master
    • ★★★★★★★

    Certs have to be in *.crt format. Everything else looks perfectly right.
    Sure you are using the correct cert?

    CG

    #16033
    seisa
    Member
    • Total Post: 14
    • Regular Joe
    • ★★

    But I got the same error with the .crt certificate.
    We are using the right certificate.

    By the way is the renaming of the extension from cer to crt is enough or there is a tool for this conversion ?

    #16034
    ConfGen
    Keymaster
    • Total Post: 11485
    • Jedi Master
    • ★★★★★★★

    Renaming is sufficient.
    Have you set the correct time via a timeserver on the WTOS unit?

    CG

    #16036
    seisa
    Member
    • Total Post: 14
    • Regular Joe
    • ★★

    yes it’s taking time from NTP serve correctly

    #16039
    seisa
    Member
    • Total Post: 14
    • Regular Joe
    • ★★

    Hellooooooo
    Any advice???? 🙁

    #16041
    ConfGen
    Keymaster
    • Total Post: 11485
    • Jedi Master
    • ★★★★★★★

    If I had, I would have send you one.

    CG

    #16046
    seisa
    Member
    • Total Post: 14
    • Regular Joe
    • ★★

    When i export the root certificate the extension was .cer
    then i renamed the file to be .crt,,,

    would this make conflict with th web interface server ? i mean that may be the server is expecting certificate with . cer not .crt?????

    is this possible?

    #16048
    seisa
    Member
    • Total Post: 14
    • Regular Joe
    • ★★
Viewing 9 posts - 1 through 9 (of 9 total)
  • You must be logged in to reply to this topic.