

If the StoreFront management console is not already open after installation of StoreFront, click Start > All Programs > Citrix > Citrix StoreFront.

If so, use the newer certificate chain.įor more information about installing and linking an intermediate certificate with Primary CA on a NetScaler Gateway appliance, refer to CTX114146. If you used more than one web browser, it is possible that they yield different certificate chains. You can export the intermediate certificates from the web browser. Update NetScaler Gateway with the corresponding intermediate certificates, as they appear in the web browser. If there are any mismatches in intermediate certificates, this is a possible cause. Note: Compare all the serial numbers in the certificates and not just the Subject Name. Then, compare all the certificates in the browser’s certificate chain with the certificate chain at NetScaler Gateway. You may wish to cross-check this by repeating with more than one web browser (such as with Google Chrome and Mozilla Firefox). To confirm this, visit the NetScaler Gateway website using a web browser, and examine the certificate chain in the web browser. Verify the certificate bindings at the NetScaler Gateway to resolve this issue. This does not mean that the CA certificates currently being used is expired but the CA has since released newer versions of that certificate. This issue may be caused by an out-of-date intermediate certificate installed at NetScaler Gateway.

If you are experiencing this issue and you are not a System Administrator, contact your organization’s Help Desk for assistance and refer them to this article. Important! This article is intended for use by System Administrators.
