AnsweredAssumed Answered

problems with cst-2.3.1

Question asked by Jules Gaudreault on Jan 19, 2016
Latest reply on Mar 15, 2016 by Yuri Muhin

Hello,

 

I downloaded cst-2.3.1 from this website and have unpacked the file onto a system running Ubuntu 12.04.5 LTS 64-bit. I have created the key_pass.txt and serial files as directed but when I run the hab4_pki_tree.sh script I get the following errors (taken from a log file generated by the terminal client I am using):

 

Tue Jan 19 15:05:59.893 2016] ++++++++++++++++++++++++++++++++++++++++

[Tue Jan 19 15:05:59.893 2016] + Generating SRK key and certificate 1 +

[Tue Jan 19 15:05:59.893 2016] ++++++++++++++++++++++++++++++++++++++++

[Tue Jan 19 15:05:59.893 2016]

[Tue Jan 19 15:05:59.909 2016] Generating RSA private key, 4096 bit long modulus

[Tue Jan 19 15:05:59.909 2016] ..........................................++

[Tue Jan 19 15:06:00.236 2016] ..............................................................................................................++

[Tue Jan 19 15:06:01.080 2016] e is 65537 (0x10001)

[Tue Jan 19 15:06:01.111 2016] Using configuration from ../ca/openssl.cnf

[Tue Jan 19 15:06:01.111 2016] unable to load CA private key

[Tue Jan 19 15:06:01.111 2016] 140363626993312:error:06065064:digital envelope routines:EVP_DecryptFinal_ex:bad decrypt:evp_enc.c:539:

[Tue Jan 19 15:06:01.127 2016] 140363626993312:error:23077074:PKCS12 routines:PKCS12_pbe_crypt:pkcs12 cipherfinal error:p12_decr.c:104:

[Tue Jan 19 15:06:01.127 2016] 140363626993312:error:2306A075:PKCS12 routines:PKCS12_item_decrypt_d2i:pkcs12 pbe crypt error:p12_decr.c:130:

[Tue Jan 19 15:06:01.127 2016] 140363626993312:error:0907B00D:PEM routines:PEM_READ_BIO_PRIVATEKEY:ASN1 lib:pem_pkey.c:132:

[Tue Jan 19 15:06:01.127 2016] Error opening Certificate ../crts/SRK1_sha256_4096_65537_v3_ca_crt.pem

[Tue Jan 19 15:06:01.127 2016] 140265689716384:error:02001002:system library:fopen:No such file or directory:bss_file.c:398:fopen('../crts/SRK1_sha256_4096_65537_v3_ca_crt.pem','r')

[Tue Jan 19 15:06:01.127 2016] 140265689716384:error:20074002:BIO routines:FILE_CTRL:system lib:bss_file.c:400:

[Tue Jan 19 15:06:01.127 2016] unable to load certificate

[Tue Jan 19 15:06:01.142 2016]

[Tue Jan 19 15:06:01.142 2016] ++++++++++++++++++++++++++++++++++++++++

[Tue Jan 19 15:06:01.142 2016] + Generating CSF key and certificate 1 +

[Tue Jan 19 15:06:01.142 2016] ++++++++++++++++++++++++++++++++++++++++

[Tue Jan 19 15:06:01.142 2016]

[Tue Jan 19 15:06:01.142 2016] Generating RSA private key, 4096 bit long modulus

[Tue Jan 19 15:06:01.142 2016] ..................................................................................................................................................................................................................................++

[Tue Jan 19 15:06:02.874 2016] ...++

[Tue Jan 19 15:06:02.905 2016] e is 65537 (0x10001)

[Tue Jan 19 15:06:02.936 2016] Using configuration from ../ca/openssl.cnf

[Tue Jan 19 15:06:02.936 2016] unable to load CA private key

[Tue Jan 19 15:06:02.936 2016] 139735995864736:error:06065064:digital envelope routines:EVP_DecryptFinal_ex:bad decrypt:evp_enc.c:539:

[Tue Jan 19 15:06:02.936 2016] 139735995864736:error:23077074:PKCS12 routines:PKCS12_pbe_crypt:pkcs12 cipherfinal error:p12_decr.c:104:

[Tue Jan 19 15:06:02.936 2016] 139735995864736:error:2306A075:PKCS12 routines:PKCS12_item_decrypt_d2i:pkcs12 pbe crypt error:p12_decr.c:130:

[Tue Jan 19 15:06:02.936 2016] 139735995864736:error:0907B00D:PEM routines:PEM_READ_BIO_PRIVATEKEY:ASN1 lib:pem_pkey.c:132:

[Tue Jan 19 15:06:02.936 2016] Error opening Certificate ../crts/CSF1_1_sha256_4096_65537_v3_usr_crt.pem

[Tue Jan 19 15:06:02.936 2016] 140679265150624:error:02001002:system library:fopen:No such file or directory:bss_file.c:398:fopen('../crts/CSF1_1_sha256_4096_65537_v3_usr_crt.pem','r')

[Tue Jan 19 15:06:02.936 2016] 140679265150624:error:20074002:BIO routines:FILE_CTRL:system lib:bss_file.c:400:

[Tue Jan 19 15:06:02.936 2016] unable to load certificate

[Tue Jan 19 15:06:02.952 2016]

[Tue Jan 19 15:06:02.952 2016] ++++++++++++++++++++++++++++++++++++++++

[Tue Jan 19 15:06:02.952 2016] + Generating IMG key and certificate 1 +

[Tue Jan 19 15:06:02.952 2016] ++++++++++++++++++++++++++++++++++++++++

[Tue Jan 19 15:06:02.952 2016]

[Tue Jan 19 15:06:02.967 2016] Generating RSA private key, 4096 bit long modulus

[Tue Jan 19 15:06:02.967 2016] ........................................................................................................................................................................++

[Tue Jan 19 15:06:04.253 2016] ....................................................................................................................................................................................................................++

[Tue Jan 19 15:06:05.877 2016] e is 65537 (0x10001)

[Tue Jan 19 15:06:05.893 2016] Using configuration from ../ca/openssl.cnf

[Tue Jan 19 15:06:05.893 2016] unable to load CA private key

[Tue Jan 19 15:06:05.908 2016] 140552183891616:error:06065064:digital envelope routines:EVP_DecryptFinal_ex:bad decrypt:evp_enc.c:539:

[Tue Jan 19 15:06:05.908 2016] 140552183891616:error:23077074:PKCS12 routines:PKCS12_pbe_crypt:pkcs12 cipherfinal error:p12_decr.c:104:

[Tue Jan 19 15:06:05.908 2016] 140552183891616:error:2306A075:PKCS12 routines:PKCS12_item_decrypt_d2i:pkcs12 pbe crypt error:p12_decr.c:130:

[Tue Jan 19 15:06:05.908 2016] 140552183891616:error:0907B00D:PEM routines:PEM_READ_BIO_PRIVATEKEY:ASN1 lib:pem_pkey.c:132:

[Tue Jan 19 15:06:05.908 2016] Error opening Certificate ../crts/IMG1_1_sha256_4096_65537_v3_usr_crt.pem

[Tue Jan 19 15:06:05.908 2016] 140225580635808:error:02001002:system library:fopen:No such file or directory:bss_file.c:398:fopen('../crts/IMG1_1_sha256_4096_65537_v3_usr_crt.pem','r')

[Tue Jan 19 15:06:05.908 2016] 140225580635808:error:20074002:BIO routines:FILE_CTRL:system lib:bss_file.c:400:

[Tue Jan 19 15:06:05.908 2016] unable to load certificate

 

I get similar errors for each SRK. Any idea what the problem could be?

Outcomes