PRB: Error 0xc00e0011 When Viewing Certificates in Message Queuing Properties in Active Directory (282101)



The information in this article applies to:

  • Microsoft Message Queuing 2.0

This article was previously published under Q282101

SYMPTOMS

When you attempt to view all registered certificates in Active Directory (on the Security tab for Message Queuing in Control Panel), you may receive the following error:
"Unable to obtain the selected user certificate. Error: 0xc00e0011"

CAUSE

This error translates to MQ_ERROR_ILLEGAL_USER and indicates that the currently logged-in user is not a domain user. This error can be caused when a member server is joined to the domain, MSMQ is installed, and you then check the security certificates while still logged in to the local server with a local account for the install instead of a domain user account.

RESOLUTION

Log in to the console or Terminal Server session with an authenticated Active Directory domain user; this will supply the proper credentials to Active Directory to retrieve the list of certificates.

STATUS

This behavior is by design.

MORE INFORMATION

The same error is encountered when you click the Remove button for Remove certificates on the Security tab.

If you click the Register button for Register certificates, you will see that there are no visible certificates to register.

Modification Type:MajorLast Reviewed:6/12/2001
Keywords:kbprb KB282101