Error when CA tries to sign our Cert Signing Req (CSR)

Posted on

I am using the IDM Console UI to create a CSR for our RHEL6 servers running Directory Server 9.
The CA is telling us that they are getting following error: "Sorry, your request has been rejected. The reason is "Request Rejected - Key Parameters 2048 Not Matched"
But our CSR is 2048 (cannot select anything lower) and 256sha.
I have tried "renew" and "request new" cert options.

Any help would be appreciated.