Cannot importca with nCipher HSM - Crypto Token was offline. Make sure the P11 library null is accessible. #1020
-
|
Ran command form ejbca-ce container: /opt/keyfactor/bin/ejbca.sh ca importca --caname CA-Test --hard --tokenname token2 --cert /migration/CA-Test.pem --ctpassword FOOBAR123 --prop TESTCAImport.properties 2026-02-04 16:45:44,412+0000 INFO [org.ejbca.ui.cli.ca.CaImportCACommand] (main) Importing HSM token. from the container I can set HSM, I can see the card. From the admin GUI I was able to create the token2 Crypto Token and I can see and test all the keys successfully: Keypair with alias tested successfully using signing and verification operations. The properties file: library matches permissions on local RFS. |
Beta Was this translation helpful? Give feedback.
Replies: 1 comment 7 replies
-
|
Remove: from the properties file, since the crypto token already exists these are not needed. Also view server.log when doing the import command. |
Beta Was this translation helpful? Give feedback.
This alias name looks very strange, I guess this alias doesn't exist on the HSM. "CA-Test - CS, CRLS"