| Previous | Next |
| WU_E_METADATA_TIMESTAMP_TOKEN_VERIFICATION_FAILED | WU_E_METADATA_TIMESTAMP_TOKEN_VALIDITY_WINDOW |
WU_E_METADATA_TIMESTAMP_TOKEN_UNTRUSTED
WU_E_METADATA_TIMESTAMP_TOKEN_UNTRUSTED means the timestamp token signer cannot be chained to a trusted certificate authority on the client. The metadata signature cannot be accepted on the strength of an untrusted timestamp authority.
What to verify
- Inspect the complete certificate chain and the intended trust anchor, not only the leaf certificate.
- For an internal update-publishing setup, distribute the required CA and publisher certificates using the approved enterprise process.
- Avoid adding certificates to Trusted Root or Trusted Publishers unless they are the exact certificates expected for the managed update source.
Microsoft: Certificates and security for Updates Publisher
Microsoft: Authenticode digital signatures
Microsoft: Windows Update error reference
Looking for a different code? Search another status or error code.
