Forums on Intune, SCCM, and Windows 11

Welcome to the forums. Register a free account today to become a member! Once signed in, you'll be able to participate on this site by adding your topics and posts, as well as connect with other members through your own private inbox!

PENDING WINHTTP_CALLBACK_STATUS_FLAG_CERT_DATE_INVALID is set

  • Thread starter Thread starter ChrisP
  • Start date Start date
  • Replies Replies 1
  • Views Views 267

ChrisP

New Member
Messages
2
Reaction score
0
Points
1
In our SCCM environment we use HTTPS only for communication. Two weeks ago I replaced our existing certificate for our IIS server with a new since the existing one was set to expire on 3/2. On Monday clients started getting the following error message when trying to PXE for an image: (I have removed the IP address information)

Client PXE errror message.jpg

When I looked at the SMSPXE.LOG I found the following:
SMSPXE Log.jpg
I have verified that the HTTPS bindings for the default website is using the correct certificate and that certificate does not expire till 2026. The certificate was replaced before the old one was set to expire. I also did a NETSH HTTP SHOW SSLCERT IPPORT=0.0.0.0:443 and verified that the certificate hash matched the certificate thumbprint of the SSL certificate in the site binding. I have removed the old certificate and restarted the server but clients are still getting that error message and the same WINHTTP_CALLBACK_STATUS error message is still the same. I have spent the last two days reviewing different articles and suggestions regarding this error and I am not sure how to proceed. I would be very grateful for any suggestions.

Thanks!
 

Forum statistics

Threads
7,028
Messages
27,501
Members
17,685
Latest member
Termad
Back
Top