What does HRESULT 0x80094810 (CERTSRV_E_ARCHIVED_KEY_UNEXPECTED) mean?

 
Previous Next
CERTSRV_E_SUBJECT_DNS_REQUIRED CERTSRV_E_KEY_LENGTH

CERTSRV_E_ARCHIVED_KEY_UNEXPECTED

CERTSRV_E_ARCHIVED_KEY_UNEXPECTED The request includes a private key for CA archival, but the selected template does not enable key archival. The request and template disagree about the intended key-management workflow.

What to check

  • Confirm which template the request actually targets and whether key archival is enabled on that template.
  • Regenerate the request with the right enrollment policy rather than attempting to strip encrypted-key data from the request manually.
  • Use key archival only for certificate profiles that need recovery, with a valid Key Recovery Agent design in place.

Microsoft: Key Recovery Server

Microsoft: Certificate template concepts

Microsoft: Audit Certification Services


Looking for a different code? Search another status or error code.