An error occurs when selecting a certificate during claims authentication configuration in Microsoft Dynamics CRM 2011

Article ID: 2496441 - View products that this article applies to.
Expand all | Collapse all

Symptoms

When you configure Claims Based Authentication in the Microsoft Dynamics CRM 2011 Deployment Manager and a certificate is selected that has a name longer than 128 characters, you receive the following error:

Exception creating Certificate, Name=(CN long_certificate_name :Exceeded column length: Column Name)



Cause

There is a limit of 128 characters that a certificate name can have if it is the certificate being selected during the Claims Authentication Wizard.

Resolution

Resolution:
This limit was extended as part of Update Rollup 4 and will be available in that rollup or later. The limit is now at 512 characters. The latest update rollup can be found through the link below.

http://support.microsoft.com/kb/2555051

Workaround:
Select a certificate that has a name less than 128 characters.

Note A self-signed certificate can be used for this process. This is only used for encrypting claims between the Microsoft Dynamics CRM server and the ADFS server. The certificate does not need to be bound to the Microsoft Dynamics CRM website. The certificate only needs to reside in Server Certificates in Internet Information Services (IIS).


Create a Self Signed certificate in Internet Information Services (IIS) Manager:
a. On the CRM server you are configuring Claims authentication, open up Internet Information Services (IIS) Manager
b. In the Connections pane, click SERVER.
c. In Features View, click Server Certificates.
d. In the Actions pane, click Open Feature.
e. In the Server Certificates Actions pane, click Create Self-Signed Certificate.
f. When you are prompted Specify Friendly Name, type CRMADFSCertificate, and then click OK.
g. When you configure claims, select the CRMADFSCertificate when you are prompted for the certifcate.

More information

The error in the Platform trace is:
Crm Exception: Message: Exceeded column length: Column Name, ErrorCode: -2147220970

[2010-11-04 20:17:36.256] Process: mmc |Organization:00000000-0000-0000-0000-000000000000 |Thread: 3(SnapIn/Main-thread.) |Category: Platform.Sql |User: 00000000-0000-0000-0000-000000000000 |Level: Error | CrmCertificateService.Create
Note This is a "FAST PUBLISH" article created directly from within the Microsoft support organization. The information contained herein is provided as-is in response to emerging issues. As a result of the speed in making it available, the materials may include typographical errors and may be revised at any time without notice. See Terms of Use for other considerations.

Properties

Article ID: 2496441 - Last Review: August 24, 2012 - Revision: 6.0
Applies to
  • Microsoft Dynamics CRM 2011
Keywords: 
kbmbsmigrate kbsurveynew KB2496441

Give Feedback

 

Contact us for more help

Contact us for more help
Connect with Answer Desk for expert help.
Get more support from smallbusiness.support.microsoft.com