Share your knowledge at the LQ Wiki.
Go Back > Forums > Linux Forums > Linux - Newbie
User Name
Linux - Newbie This Linux forum is for members that are new to Linux.
Just starting out and have a question? If it is not in the man pages or the how-to's this is the place!


  Search this Thread
Old 12-06-2017, 09:11 PM   #1
LQ Newbie
Registered: Apr 2017
Posts: 5

Rep: Reputation: Disabled
Key protection algorithm not found: Certificate chain is not valid.

Hi All,

I need help about keytool utility to export the private key and certificate to a PKCS12 file

I run this command but got some error, tried to search in google. Haven't got any clue
[root@msimaster1 ~]# keytool -importkeystore -srckeystore /opt/cloudera/security/pki/$(hostname -f)-agent.jks \
> -srcstorepass P@ssw0rd -srckeypass P@ssw0rd -destkeystore /opt/cloudera/security/pki/$(hostname -f)-agent.p12 \
> -deststoretype PKCS12 -srcalias $(hostname -f)-agent -deststorepass P@ssw0rd -destkeypass P@ssw0rd
Problem importing entry for alias msimaster1-agent: Key protection  algorithm not found: Certificate chain is not valid.
Entry for alias msimaster1-agent not imported.
Can someone help to identify ths issue?
Old 12-06-2017, 10:16 PM   #2
Senior Member
Registered: Jan 2005
Location: USA and Italy
Distribution: Debian testing/sid; OpenSuSE; Fedora; Mint
Posts: 3,845

Rep: Reputation: 690Reputation: 690Reputation: 690Reputation: 690Reputation: 690Reputation: 690
Keytool is probably looking for a ca certificate which doesn't exist.
Old 12-06-2017, 11:08 PM   #3
LQ Newbie
Registered: Apr 2017
Posts: 5

Original Poster
Rep: Reputation: Disabled
Thanks for your reply,

But how do I check this, or solve this issue?


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off

Similar Threads
Thread Thread Starter Forum Replies Last Post
valid packet returning to INPUT after going through INVALID chain vincix Linux - Networking 1 06-09-2017 12:01 AM
SSL certificate generation question - No certificate matches private key etcetera Linux - General 1 04-10-2017 01:28 PM
Verify return code: 19 (self signed certificate in certificate chain) tikit Linux - Server 1 04-10-2012 05:21 PM
Building a certificate chain from the certificate using openSSL aravinda78 Linux - Security 1 11-10-2008 01:51 AM JKS hushpuppies Linux - Server 0 08-20-2007 09:30 PM > Forums > Linux Forums > Linux - Newbie

All times are GMT -5. The time now is 12:04 PM.

Main Menu
Write for LQ is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration