Apache log: [warn] RSA server certificate CommonName (CN) `plesk' does NOT match server name!?

Created:

2016-11-16 13:21:05 UTC

Modified:

2017-08-08 13:12:00 UTC

11

Was this article helpful?


Have more questions?

Submit a request

Apache log: [warn] RSA server certificate CommonName (CN) `plesk' does NOT match server name!?

Applicable to:

  • Plesk for Linux
  • Web Presence Builder for Linux

Symptoms

Apache error log ' /var/log/httpd/error_log ' contains the following warnings:

[Mon Sep 04 15:12:13 2006] [warn] RSA server certificate CommonName (CN) `plesk' does NOT match server name!?

Cause

This warning means that CN parameter of the certificate installed on one of domains does not match value of ' ServerName ' directive specified in the corresponding ' VirtualHost ' configuration. Additional information about SNI (Server Name Indication) could be obtained here .

Resolution

This warning can be safely ignored.

Alternatively, the certificate may be regenerated to make its subject match the domain it is aimed to secure.

In Plesk: /en/213402729

To obtain subjects of all installed certificates please use the following command:

 # for i in `ls /usr/local/psa/var/certificates/`; do echo -n $i": "; openssl x509 -in /usr/local/psa/var/certificates/$i -subject -noout; done

Also, the attached script can be downloaded to obtain subjects. It runs the same command as above. To use the script:

# cd ~
# wget https://support.plesk.com/hc/en-us/article_attachments/115003917185/cert.tar
# tar -xvf cert.tar
# chmod +x cert.sh
# ./cert.sh

 

Attachments:

Have more questions? Submit a request
Please sign in to leave a comment.