<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Remote Management Services and certificate trust in QlikView</title>
    <link>https://community.qlik.com/t5/QlikView/Remote-Management-Services-and-certificate-trust/m-p/650717#M1298798</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Correct, but note that if any remote servers have been configured in the QMS where the new certificates are imported to, new certificates need to be created and distributed manually to the remote servers as well. As an example, if I had remote DSC configured in the QMC in &amp;lt;server you importing the certificate&amp;gt;, then I would need to generate new certificates for the remote server running the DSC as well. Therefore this work around should be considered as a complex work around!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 30 Jun 2014 12:53:59 GMT</pubDate>
    <dc:creator>Giuseppe_Novello</dc:creator>
    <dc:date>2014-06-30T12:53:59Z</dc:date>
    <item>
      <title>Remote Management Services and certificate trust</title>
      <link>https://community.qlik.com/t5/QlikView/Remote-Management-Services-and-certificate-trust/m-p/650714#M1298790</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We have an installed QV server that uses certificate trust for its services. Recently, we have added another server (new environment). However, I am not able to set up the Remote Management Services.&lt;/P&gt;&lt;P&gt;After adding the URL, this is what I get in the logs:&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;/P&gt;&lt;TABLE style="padding-left: 30px;"&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt;&lt;SPAN style="color: #808080; font-size: 8pt;"&gt;6/25/2014 11:00:13.0475564&lt;/SPAN&gt;&lt;/TD&gt;&lt;TD&gt;&lt;SPAN style="font-size: 8pt; color: #808080;"&gt;Information&lt;/SPAN&gt;&lt;/TD&gt;&lt;TD&gt;&lt;SPAN style="font-size: 8pt; color: #808080;"&gt;&lt;SPAN&gt;Non-critical exception when trying to add new certificate service at &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="https://acte-qa01:4799/QMS/Service:" target="_blank"&gt;https://acte-qa01:4799/QMS/Service:&lt;/A&gt;&lt;/SPAN&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P style="padding-left: 30px;"&gt;&lt;SPAN style="font-size: 8pt; color: #808080;"&gt;&lt;SPAN&gt;System.TimeoutException: The request channel timed out while waiting for a reply after 00:00:30. Increase the timeout value passed to the call to Request or increase the SendTimeout value on the Binding. The time allotted to this operation may have been a portion of a longer timeout. ---&amp;gt; System.TimeoutException: The HTTP request to '&lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://acte-qa01:4799/INIT/Service" target="_blank"&gt;http://acte-qa01:4799/INIT/Service&lt;/A&gt;&lt;SPAN&gt;' has exceeded the allotted timeout of 00:00:30. The time allotted to this operation may have been a portion of a longer timeout. ---&amp;gt; System.Net.WebException: The operation has timed out&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;SPAN style="font-size: 8pt; color: #808080;"&gt;&amp;nbsp;&amp;nbsp; at System.Net.HttpWebRequest.GetResponse()&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;SPAN style="font-size: 8pt; color: #808080;"&gt;&amp;nbsp;&amp;nbsp; at System.ServiceModel.Channels.HttpChannelFactory.HttpRequestChannel.HttpChannelRequest.WaitForReply(TimeSpan timeout)&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;SPAN style="font-size: 8pt; color: #808080;"&gt;&amp;nbsp;&amp;nbsp; --- End of inner exception stack trace ---&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;SPAN style="font-size: 8pt; color: #808080;"&gt;&amp;nbsp;&amp;nbsp; at System.ServiceModel.Channels.HttpChannelUtilities.ProcessGetResponseWebException(WebException webException, HttpWebRequest request, HttpAbortReason abortReason)&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;SPAN style="font-size: 8pt; color: #808080;"&gt;&amp;nbsp;&amp;nbsp; at System.ServiceModel.Channels.HttpChannelFactory.HttpRequestChannel.HttpChannelRequest.WaitForReply(TimeSpan timeout)&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;SPAN style="font-size: 8pt; color: #808080;"&gt;&amp;nbsp;&amp;nbsp; at System.ServiceModel.Channels.RequestChannel.Request(Message message, TimeSpan timeout)&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;SPAN style="font-size: 8pt; color: #808080;"&gt;&amp;nbsp;&amp;nbsp; --- End of inner exception stack trace ---&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;SPAN style="font-size: 8pt; color: #808080;"&gt;Server stack trace: &lt;/SPAN&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;SPAN style="font-size: 8pt; color: #808080;"&gt;&amp;nbsp;&amp;nbsp; at System.ServiceModel.Channels.RequestChannel.Request(Message message, TimeSpan timeout)&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;SPAN style="font-size: 8pt; color: #808080;"&gt;&amp;nbsp;&amp;nbsp; at System.ServiceModel.Channels.ServiceChannel.Call(String action, Boolean oneway, ProxyOperationRuntime operation, Object[] ins, Object[] outs, TimeSpan timeout)&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;SPAN style="font-size: 8pt; color: #808080;"&gt;&amp;nbsp;&amp;nbsp; at System.ServiceModel.Channels.ServiceChannelProxy.InvokeService(IMethodCallMessage methodCall, ProxyOperationRuntime operation)&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;SPAN style="font-size: 8pt; color: #808080;"&gt;&amp;nbsp;&amp;nbsp; at System.ServiceModel.Channels.ServiceChannelProxy.Invoke(IMessage message)&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;SPAN style="font-size: 8pt; color: #808080;"&gt;Exception rethrown at [0]: &lt;/SPAN&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;SPAN style="font-size: 8pt; color: #808080;"&gt;&amp;nbsp;&amp;nbsp; at System.Runtime.Remoting.Proxies.RealProxy.HandleReturnMessage(IMessage reqMsg, IMessage retMsg)&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;SPAN style="font-size: 8pt; color: #808080;"&gt;&amp;nbsp;&amp;nbsp; at System.Runtime.Remoting.Proxies.RealProxy.PrivateInvoke(MessageData&amp;amp; msgData, Int32 type)&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;SPAN style="font-size: 8pt; color: #808080;"&gt;&amp;nbsp;&amp;nbsp; at PIX.Services.IStartService.GetMachineName()&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;SPAN style="color: #808080; font-size: 8pt;"&gt;&amp;nbsp;&amp;nbsp; at QMSBackendInterface.QMSBackendService.TryAddNewCertService(Uri serviceSoapAddress, String pwd)&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Krzysztof&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 26 Jan 2026 18:19:17 GMT</pubDate>
      <guid>https://community.qlik.com/t5/QlikView/Remote-Management-Services-and-certificate-trust/m-p/650714#M1298790</guid>
      <dc:creator />
      <dc:date>2026-01-26T18:19:17Z</dc:date>
    </item>
    <item>
      <title>Re: Remote Management Services and certificate trust</title>
      <link>https://community.qlik.com/t5/QlikView/Remote-Management-Services-and-certificate-trust/m-p/650715#M1298792</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Dear Krzysztof,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When you mean trust certificate, I would guess that you mean "digital certificate". In that case according to&lt;/P&gt;&lt;P&gt;bug# 65685- this is working as design. The reason why remote management service does not work in certificate trust mode “out of the box” is that, for every QMS installation a unique root CA certificate (QlikViewCA) and two server certificates are created (signed with the created QlikViewCA root certificate). This results in that the certificate chain verification will fail, when 2 separate QMS setups on different servers are configured to communicate with each other in trusted certificate mode (SSL).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It is possible to work around this problem by manually assigning the same root CA certificate on both servers running the QMSs, and manually (using the shared root certificate) signing and assigning server certificates for the configured servers. The consequence of this setup is that the “QlikView Management API” group settings will not be applied, instead all QMSs with server certificates signed by the same root certificate will be able to establish remote management service setup.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 25 Jun 2014 15:03:34 GMT</pubDate>
      <guid>https://community.qlik.com/t5/QlikView/Remote-Management-Services-and-certificate-trust/m-p/650715#M1298792</guid>
      <dc:creator>Giuseppe_Novello</dc:creator>
      <dc:date>2014-06-25T15:03:34Z</dc:date>
    </item>
    <item>
      <title>Re: Remote Management Services and certificate trust</title>
      <link>https://community.qlik.com/t5/QlikView/Remote-Management-Services-and-certificate-trust/m-p/650716#M1298795</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;This is what I thought.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So, what I would need to do is:&lt;/P&gt;&lt;P&gt;1. Export the QlikViewCA certificate to the other server.&lt;/P&gt;&lt;P&gt;2. Regenerate the certificate of that server and the proxy certificate by signing with the QlikViewCA certificate.&lt;/P&gt;&lt;P&gt;3. Readd all the services&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 28 Jun 2014 19:45:12 GMT</pubDate>
      <guid>https://community.qlik.com/t5/QlikView/Remote-Management-Services-and-certificate-trust/m-p/650716#M1298795</guid>
      <dc:creator />
      <dc:date>2014-06-28T19:45:12Z</dc:date>
    </item>
    <item>
      <title>Re: Remote Management Services and certificate trust</title>
      <link>https://community.qlik.com/t5/QlikView/Remote-Management-Services-and-certificate-trust/m-p/650717#M1298798</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Correct, but note that if any remote servers have been configured in the QMS where the new certificates are imported to, new certificates need to be created and distributed manually to the remote servers as well. As an example, if I had remote DSC configured in the QMC in &amp;lt;server you importing the certificate&amp;gt;, then I would need to generate new certificates for the remote server running the DSC as well. Therefore this work around should be considered as a complex work around!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 30 Jun 2014 12:53:59 GMT</pubDate>
      <guid>https://community.qlik.com/t5/QlikView/Remote-Management-Services-and-certificate-trust/m-p/650717#M1298798</guid>
      <dc:creator>Giuseppe_Novello</dc:creator>
      <dc:date>2014-06-30T12:53:59Z</dc:date>
    </item>
  </channel>
</rss>

