Do you have any question about this error?
Stop googling SAP errors. Use our Free Essentials plan instead - no credit card needed. Start Now →
Message type: E = Error
Message class: STRUSTCR - Certificate Revocation Configuration
Message number: 026
Message text: Cannot update CRL; issuer not found in source list
The certificate revocation check has attempted to find the distribution
point for the CRL by checking the source lists of the CRL profiles for
the issuer of the CRL. No URL was found for the issuer.
The system cannot update the CRL.
The system issues an error message and will not allow you to continue with this transaction until the error is resolved.
Ensure that there is a CRL profile with a URL for the distribution point
of the CRL for the issuer in question.
Error message extract from SAP system. Copyright SAP SE.
STRUSTCR026
- Cannot update CRL; issuer not found in source list ?The SAP error message STRUSTCR026: Cannot update CRL; issuer not found in source list typically occurs in the context of managing certificates and Certificate Revocation Lists (CRLs) in the SAP Trust Manager (transaction STRUST). This error indicates that the system is unable to update the CRL because it cannot find the issuer of the certificate in the source list.
Cause:
- Missing Certificate in Source List: The issuer of the certificate for which the CRL is being updated is not present in the source list of trusted certificates.
- Incorrect Configuration: The configuration of the trust relationship may be incorrect, leading to the inability to locate the issuer.
- Expired or Invalid Certificates: The certificates in the source list may be expired or invalid, which can lead to issues when trying to update the CRL.
Solution:
To resolve the STRUSTCR026 error, follow these steps:
Check the Source List:
- Go to transaction STRUST in your SAP system.
- Navigate to the SSL Client (Standard) or the relevant trust store.
- Check if the issuer of the certificate is present in the source list. If not, you need to import the issuer's certificate.
Import the Issuer Certificate:
- If the issuer certificate is missing, obtain the issuer's root or intermediate certificate.
- Import the certificate into the appropriate trust store using the Import Certificate function in STRUST.
Verify Certificate Validity:
- Ensure that all certificates in the source list are valid and not expired.
- If any certificates are expired, replace them with valid ones.
Update CRL:
- After ensuring that the issuer is present and valid, attempt to update the CRL again.
- You can do this by selecting the relevant certificate and using the Update CRL option.
Check Network Connectivity:
- If the CRL is being fetched from an external source, ensure that there are no network issues preventing access to the CRL distribution point.
Review Logs:
- Check the system logs for any additional error messages or warnings that may provide more context about the issue.
Related Information:
By following these steps, you should be able to resolve the STRUSTCR026 error and successfully update the CRL in your SAP system.
Get instant SAP help. Sign up for our Free Essentials Plan.
STRUSTCR025
Cryptolib CRL Parse error CRC: &1
Self-Explanatory Message Since SAP believes that this specific error message is 'self-explanatory,' no more information has been given.The majority of...
STRUSTCR024
Crpytolib CRL Verify error CRC: &1
Self-Explanatory Message Since SAP believes that this specific error message is 'self-explanatory,' no more information has been given.The majority of...
STRUSTCR027
Download CRL from distribution point with error code: &1
Self-Explanatory Message Since SAP believes that this specific error message is 'self-explanatory,' no more information has been given.The majority of...
STRUSTCR028
No update as downloaded CRL is older or same
Self-Explanatory Message Since SAP believes that this specific error message is 'self-explanatory,' no more information has been given.The majority of...
Click on this link to search all SAP messages.