attrcrypt_cipher_init: symmetric key failed to unwrap with the private key
Issue
- Following error show in
/var/log/dirsrv/slapd-<instance>/errors
[29/Jul/2024:13:43:13.347086186 +0100] - ERR - attrcrypt_init - All prepared ciphers are not available. Please disable attribute encryption.
[29/Jul/2024:13:43:13.625079036 +0100] - ERR - attrcrypt_unwrap_key - Failed to unwrap key for cipher AES
[29/Jul/2024:13:43:13.627863838 +0100] - ERR - attrcrypt_cipher_init - Symmetric key failed to unwrap with the private key; Cert might have been renewed since the key is wrapped. To recover the encrypted contents, keep the wrapped symmetric key value.
[29/Jul/2024:13:43:13.896101178 +0100] - ERR - attrcrypt_unwrap_key - Failed to unwrap key for cipher 3DES
[29/Jul/2024:13:43:13.898424928 +0100] - ERR - attrcrypt_cipher_init - Symmetric key failed to unwrap with the private key; Cert might have been renewed since the key is wrapped. To recover the encrypted contents, keep the wrapped symmetric key value.
[29/Jul/2024:13:43:13.899763934 +0100] - ERR - attrcrypt_init - All prepared ciphers are not available. Please disable attribute encryption.
Environment
- Operating Systems
- Red Hat Enterprise Linux 9
- Red Hat Enterprise Linux 8
- Products
- Red Hat Directory Server 12
- Red Hat Directory Server 11
- Red Hat Identity Management (IdM) version 4.7.0 and newer
- Packages
- 389-ds-base
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.