Posted: Thu May 15, 2008 1:56 am Post subject: SSL communication problem
Newbie
Joined: 14 May 2008 Posts: 3
Hello,
I have problem with Websphere MQ with ssl communication between more mq managers on one site (Solaris) and one mq managers on second site (AS/400).
On Solaris we have three managers (every with one SDR and one RCVR channel) and on AS/400 is one MQ managers with 6 channels (3SDR and 3RCVR)
Problem is when I try to set ssl connections.
Every MQ managers on Solaris have own key repository with own self signed certifikates and to this repository I was imported one CA certifikates which I get from AS400. In one repository on AS400 site is all three selfsigned certifikates from solaris mq managers.
When I start ssl comunication on first mq managers is everythink OK and sender and receiver channel running with ssl.
But when I start sesond managers on Solaris is problem with sender channel (from Solaris to AS400). I get error messages:
AMQ9665: SSL connection closed by remote end of channel 'EB.TO.RB.CP.CHNL'.
EXPLANATION:
The SSL connection was closed by the remote end of the channel during the SSL
handshake. The channel is 'EB.TO.RB.CP.CHNL'; in some cases its name cannot be
determined and so is shown as '????'. The channel did not start.
On AS400 site is in log:
05/15/08 11:26:06
AMQ9663: An invalid SSL certificate was received from the remote system.
EXPLANATION:
Cause . . . . . : An SSL certificate received from the remote system failed
validation checks on its signature. The channel is '????'; in some cases its
name cannot be determined and so is shown as '????'. The channel did not start.
Channel from AS400 to solaris running with ssl without problem
I try to do it on second server with the same result - first mq running OK and second a third managers have the same problem with sender channel.
Because i created everytime only selfsigned certifikates and everythime with same way so I don´t belive that the problem is in certificates.
Is possible that the problem is in some alocation of certificates or another possibility.
I´m sorry for my maybe wrong question, but I´m beginner in Websphere MQ
Thank you for your help.
H
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum