ASG
IBM
Zystems
Cressida
Icon
Netflexity
 
  MQSeries.net
Search  Search       Tech Exchange      Education      Certifications      Library      Info Center      SupportPacs      LinkedIn  Search  Search                                                                   FAQ  FAQ   Usergroups  Usergroups
 
Register  ::  Log in Log in to check your private messages
 
RSS Feed - WebSphere MQ Support RSS Feed - Message Broker Support

MQSeries.net Forum Index » WebSphere Message Broker (ACE) Support » https configuration

Post new topic  Reply to topic
 https configuration « View previous topic :: View next topic » 
Author Message
madi
PostPosted: Wed Sep 09, 2009 9:00 am    Post subject: https configuration Reply with quote

Chevalier

Joined: 17 Jan 2006
Posts: 475

Hi All

This is the first time I am configuring the httpsrequest node and trying to create keystores and stuff in message broker

I have an app offering https service and I am trying to connect to it

I have broker 6.0.2

I followed all the documentation and added the client cert from the app to the cacerts on the broker

tried to connect and got a ssl handshake error

i was using mqsichangeproperties to assign the keystore file and password to the broker

then I searched here and saw a post saying if 6.0 create a IBM_JAVA_OPTIONS variable and assign the ssl keystore and pswd in teh mqsiprofile.cmd file

Once i did that the broker refuses to start and goes to abend creating a core file ............. i am about to restart the server to see if it goes away

Quote:
set IBM_JAVA_OPTIONS=-Djavax.net.ssl.keyStore="D:\Program Files\IBM\WMB60\Dev.keystore" -Djavax.net.ssl.keyStorePassword=password


I am completely lost now and am looking for any pointers on what to do next

thanks for your help
madi
Code:
( MQSIDV3 ) Broker process terminating abnormally: The following diagnostic information will be required when contacting IBM: '
Severe Abend Error detected.
For full details see Abend File: C:\Documents and Settings\All Users\Application Data\IBM\MQSI/common/errors/MQSIDV3.15512.1308.Abend
A summary of the Error follows:
An Unhandled Exception detected in process 15512, on thread 0x51C.
Type: EXCEPTION_UNKNOWN_TYPE: E06D7363 (E06D7363).
Address: 001B:77E4BEE7.
Exception Parameters: 3
  Param#0: 0x19930520
  Param#1: 0x0012f380
  Param#2: 0x2fc3c460
'.   

A broker process is terminating abnormally.   

Contact your IBM support center. 

_________________
IBM Certified Solutions Developer - WMB 6.0
Back to top
View user's profile Send private message
madi
PostPosted: Wed Sep 09, 2009 10:56 am    Post subject: Reply with quote

Chevalier

Joined: 17 Jan 2006
Posts: 475

I removed that from the mqsiprofile file and followed the instruction here
http://publib.boulder.ibm.com/infocenter/wmbhelp/v6r0m0/index.jsp?topic=/com.ibm.etools.mft.doc/ap12235_.htm

I imported the cert from the host server into the cacerts file in my system and I get this error

Quote:
(0x01000000):Insert = (
(0x03000000):Type = 5
(0x03000000):Text = 'javax.net.ssl.SSLHandshakeException: handshake failure'


any way to see at what point the handshake is failing?
_________________
IBM Certified Solutions Developer - WMB 6.0
Back to top
View user's profile Send private message
madi
PostPosted: Wed Sep 09, 2009 11:39 am    Post subject: Reply with quote

Chevalier

Joined: 17 Jan 2006
Posts: 475

Now i am trying to test i with an internal https service

i created a https service and am trying to call it from another http request node in a flow

i created a self signed cert from the brokers keystore and then imported that into the broker cacerts keystore

now it says

Quote:
'javax.net.ssl.SSLHandshakeException: unknown certificate'


am i missing a step here?

so broker when hosting a https service used one keystore but when its calling a https service uses the cacerts keystore? am i right here?

--madi
_________________
IBM Certified Solutions Developer - WMB 6.0
Back to top
View user's profile Send private message
Display posts from previous:   
Post new topic  Reply to topic Page 1 of 1

MQSeries.net Forum Index » WebSphere Message Broker (ACE) Support » https configuration
Jump to:  



You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
Protected by Anti-Spam ACP
 
 


Theme by Dustin Baccetti
Powered by phpBB © 2001, 2002 phpBB Group

Copyright © MQSeries.net. All rights reserved.