Error message:
While uploading root certificate to finesse server, below error message comes
"Valid CSR not found for tomcat"
Solution:
Restarted the Tomcat services using the command
utils service restart Cisco Tomcat
Then follow the steps mentioned in the cisco admin guide:
Procedure
Step 1 Generate a CSR.
a) Select Security > Certificate Management > Generate CSR.
b) From the Certificate Name drop-down list, select tomcat.
c) Click Generate CSR.
Step 2 Download the CSR.
a) Select Security > Certificate Management > Download CSR.
b) From the Certificate Name drop-down list, select tomcat.
c) Click Download CSR.
Step 3 Generate and download a CSR for the secondary Finesse server.
To open Cisco Unified Operating System Administration for the secondary server, enter the following URL
in the address bar of your browser:
https://hostname of secondary Finesse server/cmplatform
Step 4 Use the CSRs to obtain the CA root certificate, intermediate certificate, and signed application certificate
from the Certificate Authority.
To set up the certificate chain correctly, you must upload the certificates in the order described in
the following steps.
Step 5 When you receive the certificates, select Security > Certificate Management > Upload Certificate.
Step 6 Upload the root certificate.
a) From the Certificate Name drop-down list, select tomcat-trust.
b) In the Upload File field, click Browse and browse to the root certificate file.
c) Click Upload File.
Step 7 Upload the intermediate certificate.
a) From the Certificate Name drop-down list, select tomcat-trust.
b) In the Root Certificate filed, enter the name of the root certificate that you uploaded in the previous step.
Do not include the extension (for example, TEST Root CA 2048).
c) In the Upload File field, click Browse and browse to the intermediate certificate file.
d) Click Upload File.
Step 8 Upload the application certificate.
a) From the Certificate Name drop-down list, select tomcat.
b) In the Root Certificate field, enter the name of the intermediate certificate that you uploaded in the previous
step. Include the .pem extension (for example, TEST-SSL-CA.pem).
c) In the Upload File field, click Browse and browse to the application certificate file.
d) Click Upload File.
Step 9 After the upload is complete, sign out of Finesse.
Step 10 Access the CLI on the primary Finesse server.
Step 11 Enter the command utils service restart Cisco Finesse Notification Service to restart the Cisco Finesse
Notification service.
Step 12 Enter the command utils service restart Cisco Tomcat to restart the Cisco Finesse Tomcat service.
Step 13 Upload the application certificate to the secondary Finesse server.
You do not need to upload the root and intermediate certificates to the secondary Finesse server. After you
upload these certificates to the primary server, they are replicated to the secondary server.
Step 14 Access the CLI on the secondary Finesse server and restart the Cisco Finesse Notification Service and the Cisco Tomcat Service.