Failed to read 'SecurityToken' from registry

Boopathi S 3,446 Reputation points
2024-09-14T14:33:13.3766667+00:00

Hello,

Below error message appears in the ccmmessage and locaitonservice.log

Failed to read 'SecurityToken' from registry

Failed verify the signature for issuing root cert list blob '<SMSIssuingCerts version="1.0"><Signature><SignatureAlgorithm AlgID=</Certs></SMSIssuingCerts>' with error '0x80070057'

User's image

User's image

Please advise whether is this issue occurs from client or a problem with management point?

What are the things to check to troubleshoot?

Microsoft Configuration Manager
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Simon Ren-MSFT 35,386 Reputation points Microsoft Vendor
    2024-09-16T02:35:01.3333333+00:00

    Hi,

    Thank you for posting in Microsoft Q&A forum.

    1,Are you using HTTPS model? If yes, please check your certificates are well.

    You can open certmgr.msc on a client and check if there's any obvious errors there? Like an expired certificate or a missing/untrusted root certificate.

    Similar thread for your reference: SCCM (MCM): 0x87d00231 in ccmmessaging.log on connection to CMG

    2,How many clients are facing this issue? Do the client become inactive or offline? Please help make sure that there is no firewall or anti-virus to stop the communication between the client and the MPs. Use the following URL to verify that a client can access the management point and the management point certificate information:

    http(s)://<ServerName>/sms_mp/.sms_aut?mplist

    http(s)://<ServerName>/sms_mp/.sms_aut?mpcert

    Where <ServerName> is the NetBIOS/FQDN for the management point computer.

    3,Please review the site status and component status nodes in the Monitoring workspace in the console.

    Thanks for your time. Have a nice day!

    Best regards,

    Simon


    If the response is helpful, please click "Accept Answer" and upvote it.

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.