ASG
IBM
Zystems
Cressida
Icon
Netflexity
 
  MQSeries.net
Search  Search       Tech Exchange      Education      Certifications      Library      Info Center      SupportPacs      LinkedIn  Search  Search                                                                   FAQ  FAQ   Usergroups  Usergroups
 
Register  ::  Log in Log in to check your private messages
 
RSS Feed - WebSphere MQ Support RSS Feed - Message Broker Support

MQSeries.net Forum Index » WebSphere Message Broker (ACE) Support » Error after adding the new certificates in JKS file in MB8..

Post new topic  Reply to topic
 Error after adding the new certificates in JKS file in MB8.. « View previous topic :: View next topic » 
Author Message
prat31
PostPosted: Thu Sep 19, 2013 8:49 am    Post subject: Error after adding the new certificates in JKS file in MB8.. Reply with quote

Apprentice

Joined: 01 Feb 2013
Posts: 30

Hi,

I updated the Certificate in the JKS File using the below command:-

keytool -import -alias publickey-tosv-prd -file /export/ibm/home/mbid/Release-8/ADAD-DigitalCert/PublicCert/ADAD-Pub-Aug10-2012.crt -keystore /export/ibm/home/mbid/Release-8/ADAD-DigitalCert/PrivateCert/ADAD-Production.jks –store adad@123

But after adding the certificate we are getting the "com.wm.app.b2b.server.ServiceException: java.io.IOException: iaik.security.ssl.SSLException: Peer sent alert: Alert Fatal: handshake failure" ERROR.

If we revert the old JKS file with old certificates it still gives the same Error...

Before changing the Certificates it was working fine... And we have recently Migrated to MB8 from MB6.. and we are renewing the Certificates in MB8 for the first time..Our OS is Solaris SPARC

Kindly help...

Thanks..
Back to top
View user's profile Send private message
lancelotlinc
PostPosted: Thu Sep 19, 2013 9:22 am    Post subject: Reply with quote

Jedi Knight

Joined: 22 Mar 2010
Posts: 4941
Location: Bloomington, IL USA

Do you work with Karthik ?

lancelotlinc wrote:
If you are speaking about the keystore, the keystore must be created from scratch and the root certificate must be the first certificate loaded into the file.

If you are speaking about the truststore, you should post the exact error from the syslog that will identify the root cause which is likely that your root authority changed with the new cert you added and you have not added the root.

You should not ever use the same file for both keystore and truststore. Keystore should always be separate from the truststore.


A broker restart may be required to flush the cert cache info.
_________________
http://leanpub.com/IIB_Tips_and_Tricks
Save $20: Coupon Code: MQSERIES_READER
Back to top
View user's profile Send private message Send e-mail
Display posts from previous:   
Post new topic  Reply to topic Page 1 of 1

MQSeries.net Forum Index » WebSphere Message Broker (ACE) Support » Error after adding the new certificates in JKS file in MB8..
Jump to:  



You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
Protected by Anti-Spam ACP
 
 


Theme by Dustin Baccetti
Powered by phpBB © 2001, 2002 phpBB Group

Copyright © MQSeries.net. All rights reserved.