Knowledge base

OS X Server: Saving a certificate identity to the system keychain does not work with Server services

Posted in Apple Portable Computers

Symptoms

After installing a Certificate Identity into the System keychain, the certificate appears in Server App or Server Admin, however the server services may not utilize the selected certificate. It may appear that the certificate is being used for the services, however when connecting to the service, it may not establish a connection.

OS X Server (Mountain Lion) symptoms: After selecting the certificate from the Certificates pane in Server App, the drop down menu may switch to a previously set certificate or to Custom. If a connection is attempted to a service set to use the new certificate, it may not establish the connection.

Lion Server symptoms: After setting the certificate in the Settings pane of the Server app, it might show Custom settings instead. After clicking the Edit key to show the custom SSL Certificate settings, you may notice all services are set to use the new certificate, except for Web. If you attempt to set the certificate to be used with Web, it may appear to change, then unexpectedly change back to None. If a connection is attempted to a service set to use the new certificate, it may not establish the connection.

Mac OS X Server v10.6 symptoms: From Server Admin's Certificates pane you can see the list of certificates available to the Server, which will include the newly imported certificate. When setting the Server services to use this certificate you may notice that the settings will be kept, but a connection attempted to a service that is set to use the new certificate may not work.

Read Full Article