pwshub.com

ServiceNow root certificate error leaves users high and dry

Some customers of enterprise cloud vendor ServiceNow have been up in arms after a mistake with root certification left many stymied on a Monday morning.

The error stems from ServiceNow's management, instrumentation, and discovery (MID) Server, a Java app that sits on local client servers inside their firewalls and integrates applications into the platform, either using a Windows service or Unix daemon. According to a service advisory, the issue started at 0216 UTC on Monday after a MID Server Root G2 SSL certificate expired.

"ServiceNow has identified an expired SSL Root certificate that is affecting MID Server and instance-to-instance connectivity," the advisory reads.

"This issue may be impacting your Integrations, Orchestration, Discovery, and MID Server Script Executions that rely on MID Servers or instance-instance communication, such as Instance Upgrades, Update Set retrieval, AI Search, Virtual Agent, and Cloning between instances."

ServiceNow reported that 616 customers have been affected by the problems and it is rolling out a fix as soon as possible. In the meantime, many users are going online to vent their frustrations.

  • Thousands of orgs at risk of knowledge base data leaks via ServiceNow misconfigurations
  • ServiceNow moves its backend off MariaDB to homebrew Postgres
  • GenAI spending bubble? Definitely 'maybe' says ServiceNow
  • ServiceNow president leaves after policy breach related to public sector boss hire

"It would be nice if they actually notified all impacted customers (basically everyone) before I page out several other teams while waiting on SN to even pick up my ticket," complained one.

"After confirming there was no network or host issues at any of our sites, I called SN and they told me about the issue, and another 90 minutes before they actually linked my CASE to the outage. I feel like they used to be pretty good about pinging us, sometimes before we knew there was an issue."

It appears that the certificate expiration error was flagged with ServiceNow two weeks ago, according to some reports, but that the certificate replacement job was botched. Downdetector is reporting ongoing complaints, although some users of other forums are now saying that the outage appears to have eased for some.

ServiceNow outage reports - Click to enlarge

ServiceNow had no comment at time of publication.

While this won't be the first, or last, time this kind of issue with certs will come up, it's not a good look for a company that has been having some PR problems of late. Last week, ServiceNow admitted that customers' internal knowledge base (KB) articles could be accessed. The biz pledged to work with customers to fix that problem. ®

Source: theregister.com

Related stories
2 weeks ago - It won't generate hundreds of million of dollars for customers tomorrow, and there's a 'lot of noise' from tech industry ServiceNow is trying to assure investors that payback for enterprise GenAI investment is coming, but it may not be...
1 week ago - Xanadu release also adds a Pro tier, along with lots more AI SaaSy workflow vendor ServiceNow has opted for a different database to back its applications, and will introduce it this week along with the new "Xanadu" release.…
4 days ago - Better check your widgets, people Security researchers say that thousands of companies are potentially leaking secrets from their internal knowledge base (KB) articles via ServiceNow misconfigurations.…
2 weeks ago - Preventing that is doable, but managing what happens when AI upsets people is hard Organizations adopting AI need to learn how to manage the emotional and monetary costs the tech creates, while also worrying about capturing productivity...
2 weeks ago - Nvidia, Equinix clearly making a killing over costs, confusion, and cold feet Enterprises are still struggling with the business case for generative AI projects more than a year after the craze started, and we may have to wait until the...
Other stories
26 minutes ago - Cloudflare may charge an app store-like fee for its AI-scraping data marketplace.
26 minutes ago - Enlarge / The iPhone 6 and 6 Plus, the first iteration of a very, very long-lived phone design.Andrew Cunningham This past weekend, I said goodbye...
26 minutes ago - let's go camping — The hybrid powertrain has a range of 500 miles. Enlarge / This is Thor and...
26 minutes ago - Historic 4-bit microprocessor from 1971 can execute Linux commands over days or weeks.
26 minutes ago - Sonos In May, Sonos updated its mobile app—to the dismay of many users. With missing features and bugs, customers complained about a loss of...