Also on lucid, I see something like this on our Ubuntu machines at the Sanger Institute; we have our own local CA, and the keytool invocation in the postinst script which attempts to add the certificate fails. I edited the postinst script to include set -x so that I could get something out of it, and noticed (1) that the init script deletes the temporary output file even if the script fails, which means that you can't see the errors. So, I changed it so that it doesn't delete the tempfile if there are errors, and this then showed me that the following part of the script execution path shows the error being generated:
Google doesn't have much to say about this particular error. This is causing us serious issues, since it's causing dpkg and aptitude to fall over on most machines, perpetually trying to run the ca-certificates-java postinst script.
Also on lucid, I see something like this on our Ubuntu machines at the Sanger Institute; we have our own local CA, and the keytool invocation in the postinst script which attempts to add the certificate fails. I edited the postinst script to include set -x so that I could get something out of it, and noticed (1) that the init script deletes the temporary output file even if the script fails, which means that you can't see the errors. So, I changed it so that it doesn't delete the tempfile if there are errors, and this then showed me that the following part of the script execution path shows the error being generated:
+ LANG=C certs/java/ cacerts -providerClass sun.security. pkcs11. SunPKCS11 -providerArg '${java. home}/lib/ security/ nss.cfg' -noprompt -storepass changeit -alias genome_ research_ ltd_certificate _authority_ cert_pem -file /usr/share/ ca-certificates /sanger. ac.uk/Genome_ Research_ Ltd_Certificate _Authority- cert.pem ac.uk/Genome_ Research_ Ltd_Certificate _Authority- cert.pem' ac.uk/Genome_ Research_ Ltd_Certificate _Authority- cert.pem
+ LC_ALL=C
+ keytool -importcert -trustcacerts -keystore /etc/ssl/
+ grep -q 'Signature not available' /tmp/fileW2Zx2A
+ echo ' error adding sanger.
error adding sanger.
++ expr 0 + 1
+ errors=1
and the log entry says:
keytool error: java.security. ProviderExcepti on: Secmod module already configured
Google doesn't have much to say about this particular error. This is causing us serious issues, since it's causing dpkg and aptitude to fall over on most machines, perpetually trying to run the ca-certificates -java postinst script.