File cert verification failure error message on WSUS

File cert verification failure error message on WSUS

Symptom

Consider the following scenario:

- A WSUS replica is trying to synchronize and it is not able to.
- In the SoftwareDistribution.log for the WSUS replica server, the following information appear: 

WsusService.11 CabUtilities.CheckCertificateSignature File cert verification failed for e:\WSUS\WsusContent\92\8C44A8CC479069434AFB1EC6651C4F4E88217A92.exe with 2148204800
Warning WsusService.11 ContentSyncAgent.ProcessBITSNotificationQueue Invalid file deleted: d:\WSUS\WsusContent\92\8C44A8CC479069434AFB1EC6651C4F4E88217A92.exe
Info WsusService.11 EventLogEventReporter.ReportEvent EventId=364,Type=Error,Category=Synchronization

More Information

Error code information:

Convert 2148204800 to hex and you get 0x800b0100.

# for decimal -2146762496 / hex 0x800b0100

  TRUST_E_NOSIGNATURE                                            winerror.h 

Potential Root Cause

The potential cause for such issue are listed below

1) Certiticate chain issues:
a. Current root certificate not installed.
b. Local publishing certificate(s) not installed properly.

2) File issues
a. Corruption (for any reason) of the file during transfer.
b. File was corrupt on WSUS USS

Leave a Comment
  • Please add 8 and 2 and type the answer here:
  • Post
Wiki - Revision Comment List(Revision Comment)
Sort by: Published Date | Most Recent | Most Useful
Comments
  • Carsten Siemens edited Revision 3. Comment: Added tags: en-US, has comment

  • Yuri Diogenes [MSFT] edited Original. Comment: adjusting format

Page 1 of 1 (2 items)
Wikis - Comment List
Sort by: Published Date | Most Recent | Most Useful
Posting comments is temporarily disabled until 10:00am PST on Saturday, December 14th. Thank you for your patience.
Comments
Page 1 of 1 (3 items)