×![]()
×
×![]()
×
×
UpdateDB Invalid Certificate
Problem
When you update the vulnerability database, https://patchdb.manageengine.com remains in the Download Pending state, or the update fails with the error message Secure connection failed. The certificate is not trusted.
Cause
The website normally presents a publicly trusted certificate issued by Sectigo. The exact intermediate certificate authority name can change. If the certificate issuer shown on the server is an enterprise certificate authority or a self-signed certificate instead, a network security device is replacing the website certificate.
The server uses a separate trust store. If the replacement certificate is not available in that trust store, the server cannot establish a secure connection to the patch database.
Resolution
- On the computer hosting the server, open https://patchdb.manageengine.com in a browser.
- Open the website certificate from the browser's address bar and verify its issuer.
- If the issuer is an enterprise certificate authority or a self-signed certificate instead of Sectigo, contact your network team and request an SSL-inspection exemption for
patchdb.manageengine.com. - After the public certificate is presented correctly, return to the vulnerability database update page and click Re-initiate download.