Adding alias certificate to ACE

We are having issues with SSL checks done by the online tools to check the websites SSL certificates.
For example www.abc.com and just abc.com.
We have configured certificate only for www.abc.com under the VIP but currently we dont have certificate for abc.com.       
My query is how do i call both certificates under the same ssl-proxy service? I cant test this on live environment so want to know if it accepts two commands for adding certificates under ssl-proxy service.

Hi Janardhan,
I don't think so. You would need to get the wildcard certificate which would be like *.abc.com and that should resolve the problem you are facing. CN=*.abc.com should be there in the certificate you generate or request from your CA. If you want to have www.abc.com as well as www.abc.net then in that case you would need to have SANS certificates.
Regards,
Kanwal

Similar Messages

  • Adding a certificate to my N900

    I've added a certificate that is required to get to my exchange server but it still will not connect; What's up?  I put the cert at the root (data) folder with no luck.  I also used the Nokia PC and put it under the domain folder and still no luck.  I really need some help of the phone goes back
    Solved!
    Go to Solution.

    I get the same "either exchange requires secure connection or account is disabled".  message.
    I think Cert Manager is treating different certifcates types differently. I downloaded the certificate to documents. clicked on it in file manager and all it did was display the properties. The file has a ? icon that suggests that the file type is not liked to cert_manager although this is what displays the details but does not prompt top install. Support please download and try for yourself https://mail.4mostresourcing.co.uk/integration. I am happy to see a terminal based solution in the short term if fixing requires a new cert manager release or something.
    Incidentally we do have this working over imap with this certificate and we are not seeing any errors reported in the server logs

  • Adding Alias Tables

    2 Questions:
    I want to combine my member names and alias table (default) into a new alias table such that the new alias table would be (Member Name - Alias Default). Is there a way to do this through a script ?
    Also currently we only have 1 alias table, default, will there be any considerable performance impacts to adding an addition alias table ?

    If this is a planning application, alias tables have to be created with in the planning web and upon refresh it will be pushed to essbase. I dont think you can do this using a script for planning. Even if you create these tables directly in essbase, those will be dropped during the application refresh.
    If it was an " Essbase-only " application you can import/export tables using maxl/esscmd.
    Adding alias table will not shown a significant impact on performance. You can have upto 9 additional alias tables.
    Hope this helps!
    Nra

  • Need to change the Certificate in ACE that is using for HTTPS Management access

    Dear Team,
    Currently we are getting certificate cannot be trusted error in web browser while we are accessing the ACE through https. So we need to installed the new https certificate for https management connection to ACE for removing this error. We do not want to use the self signed certificate for https access to ACEmanagement. We have done the below configuration but there no luck, still its showing the previous self signed certificate in browser.
    parameter-map type ssl MNGMT_SSL
    cipher RSA_WITH_AES_128_CBC_SHA priority 2
    ssl-proxy service PSERVICE_SERVER
    key ACEKEY.key
    cert ACECERT.cert
    ssl advanced-options MNGMT_SSL
    Kindly suggest how we can installed the certificate on ACE for only https management access.
    Thanks in advance.
    Regrads,
    Ranjith

    Ranjith,
    You may want to see the details and recommendation relatedo to this situation and this bug:
    CSCte42757
    Jorge

  • Certificates vanished - ACE Module. Strange!

    ACE modules are configured in Active/Standby context mode on two distinct Cat6500's. The feature license is 10,000 SSL tps, 8Gbps throughput.
    We ran the application performance tests with 1000 users with https transactions and I noticed that the all the root certificates under the chaingroup disappeared. Only the website certificate remained. When I accessed the website, it gave 'error with the security certificate' i.e. the root was not identifiable due to missing certificates. Eventually, the CPU went 100% on Cat6500 and the ACE module was shutdown by the chassis. It got reenabled automatically in 5 minutes.
    I re-added the root certs, removed/added the service policy and after sometime I noticed the root certs disappeared again. STRANGE !
    show version output is
    Cisco Application Control Software (ACSW)
    TAC support: http://www.cisco.com/tac
    Copyright (c) 2002-2006, Cisco Systems, Inc. All rights reserved.
    The copyrights to certain works contained herein are owned by
    other third parties and are used and distributed under license.
    Some parts of this software are covered under the GNU Public
    License. A copy of the license is available at
    http://www.gnu.org/licenses/gpl.html.
    Software
    loader: Version 12.2[121]
    system: Version 3.0(0)A1(6.3a) [build 3.0(0)A1(6.3a) adbuild_02:16:25-2008/02/02_/auto/adbu-rel3/ws/rel_3_0_0_a1_6.3-thr
    ottle/REL_3_0_0_A]
    system image file: [LCP] disk0:c6ace-t1k9-mz.3.0.0_A1_6_3a.bin
    installed license: ACE-08G-LIC ACE-VIRT-020 ACE-SSL-10K-K9
    Hardware
    Cisco ACE (slot: 2)
    cpu info:
    number of cpu(s): 2
    cpu type: SiByte
    cpu: 0, model: SiByte SB1 V0.2, speed: 700 MHz
    cpu: 1, model: SiByte SB1 V0.2, speed: 700 MHz
    memory info:
    total: 957640 kB, free: 347924 kB
    shared: 0 kB, buffers: 1588 kB, cached 0 kB
    cf info:
    filesystem: /dev/cf
    total: 1014624 kB, used: 360960 kB, available: 653664 kB
    last boot reason: NP 0 Failed : NP ME Hung
    configuration register: 0x1
    Could you please advise whether there is any bug in the above software version i.e. it removes the root certs due to heavy transaction load.
    Thanks.

    I wanted to look for more details regarding this bug id. But I got the below message in Bug Toolkit. Please advise...
    CSCsl96203 Bug Details
    Information contained within bug ID CSCsl96203 is only available to Cisco employees. It is our policy to make all externally-facing bugs available in Bug Toolkit so the system administrators have been automatically alerted to the problem. By choosing to save this bug, you may be notified when the decision to make this bug available to you has been made. Note: Some product enhancement requests and documentation error bugs may not be available in Bug Toolkit.

  • How to update certificate into ACE

    need to upload cert file (.pem) received fro CA and getting bellow error message:
    LB1#   crypto import terminal wwwtest.domain.com
    Please enter PEM formatted data. End with "quit" on a new line.
    -----BEGIN CERTIFICATE-----MIIG3zCCBcegDb2x1bWJpYTEQMA4GA1UEBxQHQnVybmFieTEiMCAGA1UEChQZUklUQ0hJRSBCUk9TLiBBVUNwY
    =-----END CERTIFICATE-----quit
    input string too long
    Error: File not of recognized types - PEM, DER or PKCS12, import failed.
    ASE version: version A5(1.1)
    can someone provide proper procedure to upload/install certificate?
    Appreciated.

    Hi,
    Please go to the below link:
    https://www.sslshopper.com/ssl-converter.html
    Convert your file that you have received from your CA into PEM format and try importing from terminal again and see if that resolves the issue.
    The error indicates that CA file format is different than supported by ACE. The certificate should be in PEM format.
    Regards,
    Kanwal

  • Presenting a Client Certificate from ACE?

    Hi Folks,
    This is a bit of an odd one, so please stick with me!
    A bit of background:
    We currently visit a secure 3rd party website from our company, in order to identify our company to the website we have to use a client-side certificate to authenticate us (before we then login to the website).
    As we have a large number of machines loading a client-certificate on to each one has not proved agile enough (this is more a legacy thing).  So to work around this we have used a Stunnel proxy which the clients are forwared too (HTTP), which then proxies the connection as HTTPS and provides the end website with the Client Cert and does all the bits for SSL.   The Stunnel service was meant to be a tempory workaround, about 3 or so years ago (don't you just love those?) and is hosted on a desktop PC which has recently started to crash - there's no real support on this either - which leads me onto the question:
    Can the ACE module replace the Stunnel Box in this scenario?
    Is it possibile to load a client certificate onto the ACE and get it to provide this to an end webserver.  I realise that the ACE is probably not designed for this function, however this would get us onto something more stable and has a better internal support function.
    I've attached a really basic diagram of how the connectivity operates - but I'm happy to consider suggestions on alternative ways of doing it.
    Thanks in advance
    Kev

    Hi.
    It seems to be not possible : http://www.cisco.com/en/US/partner/docs/app_ntwk_services/data_center_app_services/ace_appliances/vA4_1_0/configuration/ssl/guide/initiate.html
    I have to check if other products can do what you want, but I have some doubts...

  • I need help adding alias to keystore

    Hello!
    I'm have a project, is to generate digital signs, for this project I have create a Keystore, add Alias to the Keystore, generate his digital signs, sign files and certificates. Also I need that the Certificate fingerprints be unique for each user.
    The problem is that only add the Alias name, Creation date and Entry type in to KeyStore. Could some one know How can generate certificate fingerprints and store into the Keystore?, or Could some one help me with a tutorial or a sample program.

    I don't know whether this will help you but you can check it
    http://java.sun.com/j2se/1.5.0/docs/tooldocs/solaris/keytool.html

  • Adding SSL-Certificate Exception in Firefox 4

    I recently installed Firefox 4 beta 11 and now cannot access certain webpages provided by my university which are using an SSL-encryption.
    The error message I receive (in a popup box) is:
    '''evasys.urz.uni-halle.de uses an invalid security certificate.
    The certificate is not trusted because no issuer chain was provided.
    (Error code: sec_error_unknown_issuer)'''
    It has been a known problem that somehow Firefox does not handle the issuer chain of the certificate correctly (thats what the IT department says) and the solution up to now was to add an exception for this website in Firefox 3.x.x
    This would be fine by me for Firefox 4, too, but I cannot find a way to add this exception. As soon as I dismiss the error message box by clicking "OK" nothing happens, no "This connection is untrusted"-page (http://support.mozilla.com/en-US/kb/This%20connection%20is%20untrusted#w_certificates-and-identification) is opened or anything equivalent.
    Thank you in advance for any help.

    Hello.
    Yes, there is a problem with adding an exception button, but I found a temporary solution until Mozilla solves the problem.
    First, copy a link from website you want to enter.
    Then, go to: Options > Advanced > Encryption tab > View Certificates > Servers tab > Add Exception..
    Now paste the link at "Location:" then click "Get Certificate" and Confirm Security Exception.
    That's all.

  • Trouble adding alias to the web.xml file (External Facing Portal)

    I'm trying to implement the external facing portal. I don't really have any real custom content to add to it but have just created an iView that contains a webpage that's contained within a copy of the light framework.
    I'm having trouble adding or accessing the alias that I've created to go to this iView.
    I can test my iView by adding it to the master rule collection under one of the predefined aliases in the web.xml (e.g. portal/anonymous etc) but when i define my own (e.g. "ext" etc) and then go to http://portal:<port>/irj/ext I'm just getting an error:
      The requested resource does not exist.
      Details:   Go to main page of this application!
    This is what my entry in the web.xml file looks like:
    <web-app>
    <display-name>The Java iView Runtime</display-name>
    <listener>
    <listener-class>
    com.sapportals.portal.prt.session.HttpSessionHandler
    </listener-class>
    </listener>
    <servlet>
    <servlet>
    <init-param>
       <param-name>
          portal/anonymous
       </param-name>
       <param-value>
    anonymous=1,proxy=0,low_bandwidth=0,include_in_url=1,include_application_name_in_url=1
       </param-value>
    </init-param>
    <init-param>
      <param-name>
       ext
      </param-name>
      <param-value>
    anonymous=1,proxy=0,low_bandwidth=1,include_in_url=1,include_application_name_in_url=1
      </param-value>
    <init-param>
    </servlet>
    My master rule collection seems to be correct, since I can test the iView etc by adding it to a predefined alias. I've tried closing all browsers etc. Nothing seems to work.
    Any ideas what this could be?
    Thanks!
    I'll award points for any help.

    Hi Beau
    Just Have a try.
    In the servlet mapping add the following entry.
    <servlet-mapping>
    <servlet-name> gateway </servlet-name>
    <url-pattern> /portal/* </url-pattern>
    </servlet-mapping>
    <b><servlet-mapping>
    <servlet-name> gateway </servlet-name>
    <url-pattern> /ext/* </url-pattern>
    </servlet-mapping></b>
    <servlet-mapping>
    <servlet-name> prt </servlet-name>
    <url-pattern> /irj/* </url-pattern>
    </servlet-mapping>
    Restart after making the changes.
    Regards
    Geogi Luke

  • Error adding alias

    Does anybody know why I get this error when dynamically building a dimension? I thought it might be related to property changes but I have that option checked in my rule.Also, I checked my new outline and the aliases ARE being added.FYI, I'm using 6.1, patch 3A.Thanks

    Do you get an error file?Any entry in the app log?Possibly an invalid alias name - invalid character/too long etc - check member/alias naming conventions in the manualoralias already used by another member - but you would get an error file for this one

  • Adding a Certificate of Completion

    Hi!
    Is there an easy way to create a certificate of completion for the module that I created? I found the link, but is not a very easy way...
    I hope it will work with the pdf files that we're going to deliver to the students.
    http://www.connectusers.com/tutorials/2009/02/certificates/
    Thank you for the previous help. Adobe Presenter works OK now but only from the Administrator (built-in) account.
    Thanks.
    Margareta

    There is a Certificate of Completion built-in, with several templates, but the student taking the module or course can only add his/her name and Presenter adds the total score, not the name of the module / course, and school. Did anyone find out a better way to issue these certificates? I cannot use Adobe Connect as the client wants to have these resources available offline.
    Thanks.

  • Adding a certificate in existing store of a PC

    I am trying to add "XYZ.cer" to existing store in local system. 
    I use command  <certutil.exe -addstore -f  "Trusted Root Certification Authorities" xyz.cer> 
    Problem is that, after successful completion of command it creates new store with name "Trusted Root Certification Authorities"  as existing one. I want to add this "xyz.cer" certificate to existing store "Trusted
    Root Certification Authorities" WITHOUT creating a duplicate store. 
    If I don't use double quote in Trusted Root Certification Authorities, command fails.
    Can anyone help me on this? Thanks in advance.

    That works !!! Thanks..One question...
    If I want to add same certificate in "Personal" store, what would be the syntax as I tried it like above command  certutil.exe
    -addstore -f  "Personal" xyz.cer and   certutil.exe
    -addstore -f  Personal xyz.cer"?
    Thanks in advance.

  • Adding Alias in CE 7.2

    Hello Experts,
    I am new to BRM. I am able to add XSD alias in CE EHP1. But the same i am not able to do in CE 7.2.
    I have CE 7.2 java stack and 7.2 SP01 NWDS.
    Please let me know how can we do this?
    If possible please let me know detailed steps.
    Regards,
    Yogesh

    Hello Arti,
    Yeah now i am able to create alias from XSD.
    It is my mistake. Instead of Project Resources I was opening the RuleSet (or Flow RuleSe) created. And I found that though it contains Alias tab, there are no options as shown in blog. Also it did not showed Effectivities tab.
    Later after again reading the blog carefully and following the link posted by you, there was no confusion.
    Sorry for mistake.
    Also i found few broken links for BRM on SDN.
    Here I go:
    On the home page of Netweaver BRM (SAP NetWeaver Business Rules Management Resources Center [original link is broken]),
    1) Section Get started with modeling link Modeling Rules using SAP NetWeaver Business Rules Management 7.2
    2) Section Get started with modeling link Change Management of Rules using SAP NetWeaver Business Rules Manager 7.2
    3) Section Get started with modeling link Writing Rules on Java Classes
    4)  Section Get started with modeling link Writing Rules on XML Schema
    However somehow I managed to get these links (by small trick : hover the link, get the path, trin the path till /library, append the path to http://www.sdn.sap.com/irj/scn/index?rid= .... that is it )
    Arti, if possible please pass this issue to concerned person. I dont know where to raise such issues.  It will help users to reach these awesome blogs.
    Also please test the broken link.
    Regards,
    Yogesh

  • Adding a certificate

    I have downloaded a certificate.
    i double click on it and nothing happens. Keychain opens but I receive no request to add anything
    I have tried opening keychain and importing the certificate.
    Nothing happens as well.
    I have tried doing that for another certificate. same thing. is this normal?
    The app that needs the certificate doesn't work...

    gleepow,
    It appears that in the past few days you have not received a response to your
    posting. That concerns us, and has triggered this automated reply.
    Has your problem been resolved? If not, you might try one of the following options:
    - Visit http://support.novell.com and search the knowledgebase and/or check all
    the other self support options and support programs available.
    - You could also try posting your message again. Make sure it is posted in the
    correct newsgroup. (http://forums.novell.com)
    Be sure to read the forum FAQ about what to expect in the way of responses:
    http://forums.novell.com/faq.php
    If this is a reply to a duplicate posting, please ignore and accept our apologies
    and rest assured we will issue a stern reprimand to our posting bot.
    Good luck!
    Your Novell Product Support Forums Team
    http://forums.novell.com/

Maybe you are looking for

  • A blast from the past- "encountered an error and needs to close"

    hey guys and gals, i really need help. i've been trying to fix my iTunes software for months now. Without further ado, here's what happened: installed itunes deleted quicktime accidently installed quicktime installed itunes itunes still doesn't work

  • How to compare records in the same table?

    I have a table of course registrations.  I would like to select course registrations as of a certain date that do not have a dropped status against it. CREATE TABLE REGISTRATIONS (ID VARCHAR(7) , COURSE VARCHAR(4), CURRENT_STATUS VARCHAR(10), STATUS_

  • My MacBook Pro is not working

    Hi, My MacBook Pro seemed to overheat and then stopped altogether. When I turn it on, all I get is a prompt with "Mac OS X Utilities" which give me 4 options: -Restore from Time Machine Backup (I DO NOT HAVE THIS) -Reinstall Mac OS X (WHEN I TRY THIS

  • Indesign, office, pages won't open "bad access" HELP!!

    Last night I launched Indesign and it crashed. Now office and even pages are giving me the same problem, all when I try to launch them. I've deleted some plists, repaired permissions etc. Does anyone have any ideas what I can try next, I need to get

  • How to transformed data from File to DB but the data to be insert two tables  parallel?

    Hi friends ,I am new to Oracle SOA ,I have one requirement  for the project actually in these project 1.I have to read three different types of files (Employee info,Purchase Order Info,Salaes Order Info) through file adapter these records are to be s