Data unavailable due to certificate Key too small after upgrade to 11.4
Applies to
StorageGRID WebScale 11.4
Issue
- Data is unavailable due to LDR not being able to open the cert key during requests
- The LDR with incompatible server cert is not fully integrated with the ADE environment and is not accepting s3 requests
- servermanager.log
[2021-12-11T15:16:43.623] WARNING -- Configuration validation failed.
nginx: [emerg] SSL_CTX_use_certificate("/etc/apache2/ssl.crt/custom-server-chain.crt") failed (SSL: error:140AB18F:SSL routines:SSL_CTX_use_certificate:ee key too small)
nginx: configuration file /etc/nginx-gw/nginx-gw.conf test failed
-
The following messages may be found in /var/local/log/bycast.log on each storage node:
Feb 12 18:24:59 nodename ADE: |12087627 0000000000 ---- ---- 2022-02-12T18:24:59.836323| NOTICE 1401 HFCS: Connection 1644690299835915/172.24.160.200:33625 (---------): Closing: handshake: ca key too small (20,316,397)