| Previous | Next |
| CRYPT_E_CONTROL_TYPE | CRYPT_E_SIGNER_NOT_FOUND |
CRYPT_E_ISSUER_SERIALNUMBER
The issuer-and-serial-number information used to identify a certificate or recipient is invalid or does not identify the intended context.
What to check for CRYPT_E_ISSUER_SERIALNUMBER
- Compare the issuer and serial number from the message with the certificate context being selected.
- Avoid matching certificates only by subject display name; subject names are not unique identifiers.
- If the message uses a different recipient identifier form, use the matching CryptoAPI parameter rather than forcing issuer/serial lookup.
Microsoft: CRYPT_DECRYPT_MESSAGE_PARA
Microsoft: CertFindCertificateInStore
Diagnostic discriminator: Validate the issuer-and-serial-number identifier and ensure it refers to the certificate context expected by the operation. This result is identifier validity, not chain trust.
Looking for a different code? Search another status or error code.