Configuration Manager OSD Error 80072f8f Invalid CA Certificate

1 Min Read

Configuration Manager OSD Error 80072f8f Invalid CA Certificate.

In the smsts.log file using CMTrace you can see the next error:

Sending with winhttp failed; 80072f8f. retrying
Retrying and Ignoring date security failures.
AsyncCallback() WINHTTP_CALLBACK_STATUS_SECURE_FAILURE Encountered
dwstatusinformationlength is 4
WINHTTP_CALLBACK_STATUS_FLAG_INVALID_CA is set
sending with winhttp failed; 80072f8f

If your SMSTS.log file contains:

WINHTTP_CALLBACK_STATUS_FLAG_INVALID_CA

This means problems with SCCM certificate. Without a certificate, the PXE and media boot clients won’t trust the CA that issued the certs which is your issue.

  1. Under the Site Properties (SCCM Console\Administration\Site Configuration\Sites) open Properties of the site.
  2. Navigate to the Communication Security tab, select the Root CA and restart the WDS service.
Leave a Comment

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Exit mobile version