What does HRESULT 0x8009100D (CRYPT_E_ISSUER_SERIALNUMBER) mean?

 
Previous Next
CRYPT_E_CONTROL_TYPE CRYPT_E_SIGNER_NOT_FOUND

CRYPT_E_ISSUER_SERIALNUMBER

The issuer-and-serial-number information used to identify a certificate or recipient is invalid or does not identify the intended context.

What to check for CRYPT_E_ISSUER_SERIALNUMBER

  • Compare the issuer and serial number from the message with the certificate context being selected.
  • Avoid matching certificates only by subject display name; subject names are not unique identifiers.
  • If the message uses a different recipient identifier form, use the matching CryptoAPI parameter rather than forcing issuer/serial lookup.

Microsoft: CRYPT_DECRYPT_MESSAGE_PARA

Microsoft: CertFindCertificateInStore

Diagnostic discriminator: Validate the issuer-and-serial-number identifier and ensure it refers to the certificate context expected by the operation. This result is identifier validity, not chain trust.


Looking for a different code? Search another status or error code.