it should be present in the CA's NSS db, verify with certutil, veneutall yadd if needed:
https://github.com/dogtagpki/pki/blob/master/docs/installation/kra/Installing_KRA.md
also verify the "connector" is configured between the CA and KRA instances
pki -c Secret.123 -n caadmin ca-kraconnector-show
Thanks,
M.


On Sun, Jun 13, 2021 at 6:52 AM as bs <leopardpresis@gmail.com> wrote:
Hi, I installed ca and kra in the same tomcat instance, but when I try to enroll a certificate using server-side Key generation, the following message appears: "KRA Transport Certificate needs to be imported into the CA nssdb for Server-Side Kegen Enrollment". Do you know how I can i fix this?

Thanks for your attention
_______________________________________________
Pki-users mailing list -- users@lists.dogtagpki.org
To unsubscribe send an email to users-leave@lists.dogtagpki.org
%(web_page_url)slistinfo%(cgiext)s/%(_internal_name)s