Facing problem in installing certificate on Weblogic for the SSL
I am doing the setup for secure socket layer(SSL) in weblogic server
.I
have created the certificate which need for ssl by using the Openssl ,
after
that I entered path for all the file relate to setup by using the
weblogic
console. Once I have complete all this entries, I restarted the server ,
at
the time of restart its giving the following error. I am also sending
the
screen short of console and the log files as an attachment.
<Feb 4, 2002 4:45:46 PM GMT-05:00> <Alert> <WebLogicServer> <Security
configuration problem with certificat
e file config/cauvery-key.pem, java.io.EOFException>
java.io.EOFException
at weblogic.security.Utils.inputByte(Utils.java:133)
at
weblogic.security.ASN1.ASN1Header.inputTag(ASN1Header.java:125)
at weblogic.security.ASN1.ASN1Header.input(ASN1Header.java:119)
at weblogic.security.RSAPrivateKey.input(RSAPrivateKey.java:119)
at weblogic.security.RSAPrivateKey.<init>(RSAPrivateKey.java:91)
at
weblogic.t3.srvr.SSLListenThread.<init>(SSLListenThread.java:397)
at
weblogic.t3.srvr.SSLListenThread.<init>(SSLListenThread.java:300)
at
weblogic.t3.srvr.T3Srvr.initializeListenThreads(T3Srvr.java:1039)
at weblogic.t3.srvr.T3Srvr.initialize(T3Srvr.java:475)
at weblogic.t3.srvr.T3Srvr.run(T3Srvr.java:197)
at weblogic.Server.main(Server.java:35)
<Feb 4, 2002 4:45:58 PM GMT-05:00> <Notice> <Management> <Starting
discovery
of Managed Server... This feat
Please help us to solve this problem
Hi.
Try posting this question in the security newsgroup.
Thanks,
Michael
Ankur wrote:
I am doing the setup for secure socket layer(SSL) in weblogic server
I
have created the certificate which need for ssl by using the Openssl ,
after
that I entered path for all the file relate to setup by using the
weblogic
console. Once I have complete all this entries, I restarted the server ,
at
the time of restart its giving the following error. I am also sending
the
screen short of console and the log files as an attachment.
<Feb 4, 2002 4:45:46 PM GMT-05:00> <Alert> <WebLogicServer> <Security
configuration problem with certificat
e file config/cauvery-key.pem, java.io.EOFException>
java.io.EOFException
at weblogic.security.Utils.inputByte(Utils.java:133)
at
weblogic.security.ASN1.ASN1Header.inputTag(ASN1Header.java:125)
at weblogic.security.ASN1.ASN1Header.input(ASN1Header.java:119)
at weblogic.security.RSAPrivateKey.input(RSAPrivateKey.java:119)
at weblogic.security.RSAPrivateKey.<init>(RSAPrivateKey.java:91)
at
weblogic.t3.srvr.SSLListenThread.<init>(SSLListenThread.java:397)
at
weblogic.t3.srvr.SSLListenThread.<init>(SSLListenThread.java:300)
at
weblogic.t3.srvr.T3Srvr.initializeListenThreads(T3Srvr.java:1039)
at weblogic.t3.srvr.T3Srvr.initialize(T3Srvr.java:475)
at weblogic.t3.srvr.T3Srvr.run(T3Srvr.java:197)
at weblogic.Server.main(Server.java:35)
<Feb 4, 2002 4:45:58 PM GMT-05:00> <Notice> <Management> <Starting
discovery
of Managed Server... This feat
Please help us to solve this problem--
Michael Young
Developer Relations Engineer
BEA Support
Similar Messages
-
This Certificate not valid for the selected purpose
I have installed on my Windows 7 (64 bit Professional w/SP1)
a Self-Signed CA (IDS_MstrCert) that has been accepted by the system certificate "store". via mmc & certmgr
I generated this CA on my Redhat Linux 7 server using the openssl utilities.
It shows: This certificate is intended for the following purpose(s):
All issuance policies
All application policies
It is enabled for ALL purposes (However I did not generate with ALL purpose set)
Under Certification Path:
Certificate Status: This Certificate is OK
I have also installed a Client Certificate (winxclient) (also generated by my Redhat Linux 7 server)
That has been "signed" by my CA (IDS_MstrCert)
I added it successfully to the system certificate "store" via mmc & certmgr.
However when I open the certificate I see the following message: This Certificate not valid for the selected purpose
When I view the Certificate path I see the following:
IDS_CA (friendly name for the CA)
|-----> VPNIKEv2cli (friendly name for the client certificate)
Certificate Status: This certificate is OK
In the Intended Purposes field: ServerAuthentication, ClientAuthentication
How do I resolve this problem ? This Certificate not valid for the selected purpose
When I attempt my vpn/ikev2 connection (using machine certificates) I get the 13806 error.
Best Regards
Guy RichHi,
In my opinion, this is not Windows system problem. You need to make troubleshoot with the Certificate.
I made a research with this error message, the link below might be helpful:
http://support.persits.com/show.asp?code=PS030304105
Please remember to mark the replies as answers if they help, and unmark the answers if they provide no help. If you have feedback for TechNet Support, contact [email protected] -
I am facing problem while installing iTunes
I am facing problem while installing iTunes with this error
"There is problem with you installer package. A program required for this install to complete could not be run."Hi Owen,
I have tried .net Package & Deployment as well as InstallShield 2008. finally i have tried B1DE also. B1DE gives us template only in vb.net but not in C#.net and i want this in c#.net.
I was trying to understand the code that it creates. I won't be able get the code also.
I would like to go from other way apart from B1DE.
Need Urgent Help... -
Facing problem in integrating my custom jsp with the workflow engine
Hi,
I am using Jdeveloper 11.1.1.6.0 for BPM 11g implementation on my Application.I have Weblogic Server 10.3 Installed and configured the domain. Also the server is up and running.
I am trying to create workflow and wants to integrate it with my custom jsp but i am facing problem in integrating my custom jsp with the workflow engine.Can you please answer the following questions:
1)how to link BPM human task with my custom jsp (Requester jsp).
2)how my custom jsp data(Requester data) will be stored in workflow engine and how the same data will be visible to the next custom jsp(Reviewer jsp).
This is urgent .Any early reply will be great help.
Thanks in advance.
Edited by: 990133 on Mar 24, 2013 5:31 AMyou forgot to add the usage dependency in the DC metadata section in your DC, you have to add the XSS~utils and fpm as a used DC's as part of your DC, try to add those, if you already done that, so check where missed the adding of used webdynpro components in any of the VAC's or FC's,
Cheer,
Appa -
iTunes always quit with the error message "
itunes has encountered a problem and needs to close, sorry for the inconvience. " Uninstalled and re-installed many times, but the issue still persists.Generate another of those error messages and click the "Click here" link in the error message box. What modname and modver are showing for the error? (Precise spelling please.)
If the error is a BEX and thus doesn't show an modname or modver, let us know what P1 through P9 items are showing for you instead. -
QC51:No certificate is required for the purchase order item
Dear all.
I want to create an certificate Receipt In the T-CODE QC51.After input the purchase order and item and press return,the SAP show an error message:
No certificate is required for the purchase order item.
Message no. QC508
My question was where to control the purchase order item to require certificate or not?
Regard
YodaHi
For this you have to maintain Certificate req in Material master.
MM01>Enter your material->Quality view-->Tick on QM procurement->Certificate require-Mension kind of certificate req.
like
E21 Cert. of conformity "2.1" EN 10204
E22 Test certif. "2.2" EN 10204
E23 Works test certif. "2.3" EN 10204
E31A Insp. certificate "3.1.A" EN 10204
E31B Insp. certificate "3.1.B" EN 10204
E31C Insp. certificate "3.1.C" EN 10204
E32 Inspection report "3.2" EN 10204
Q001 Conformance Report
Q002 Plating Certificate
Q003 Test Report
Q004 Certificate through Web
Q005 Chemical / Physical Test report + QC
etc.....
Customizing for this can be done in
SPRO->Quality Management->QM in Logistics--->Define Keys for Certificate Processing.
This will ask you during MIGO or during UD/confirmation possible thro' QC21
Regards
Sujit S Gujar -
Ive just purchased a new pc and installed and authorized Itunes for the fifth and final time. What do I do if purchase another device and need to authorize Itunes again ?
You may find these Links informative...
http://support.apple.com/kb/HT4627
About authorization and deauthorization -
Installing crystal reports 9 for the first time
Hi,
I am trying to install Crystal Reports 9 for the first time. We just received a package with 4 envelopes including Crystal Reports 9 Advanced, Standard, Professional, and Developer. Each envelope also includes Crystal Enterprise Report Appliation Server which I don't think I need (or I'm not sure). I have read a little bit on how I can go online to the SAP Service Marketplace and request license keys. I have not requested a permanent license key yet. I believe that I can install Crystal with a temporary key and then input the permanent key later. What I have done is insert the installation CD for Crystal Reports 9 Developer and then input the product key code found on the back of the Crystal Enterprise Report Application Server CD cover that was packaged with the Crystal Reports 9 Developer CD. However I get a message saying that the product key code is not valid or has expired. There is no product key code on the cover for the Crystal Reports 9 Developer CD but there is one on the Crystal Enterprise Report Application Server CD cover so that is why I input it.
Why is this key code expired? Please note that I am installing on a test PC before I install on the PC of the user who will be using Crystal for work purposes. Therefore I wanted to just install with a temporary key if there is such a thing at this time.
thanks
JWHi Josh,
I would like to add few things with above suggestion
For a new key code :
Request key codes for new orders via SAP Marketplace (SMP), will receive a download letter on new purchases providing them with their SMP login credentials. Using these credentials you can login and click in the "Keys & Requests" tab > Request a License key .
If your existing Key code does not work :
You need create a customer message [https://websmp107.sap-ag.de/message] using component XX-SER-LIKEY-BOJ .
Hope this helps,
Regards,
Shweta -
Dear Customer Service:
It is very frustrating for me. My Visa account keeps getting declined at Apple. I used this very same Visa card on Amazon with no problem. I checked my status for
the card and it is still all good. My friends and I buy a lots of Apple applications on iTune.
We have the correct CVV2, Expiration Date and Billing address, but you keeps declining us. Please fix this problem for me. The issuing bank for this card is Techcombank, one of the largest banks in Vietnam. According to the bank, the transaction is processed in the US. This is a legitimate Visa card.
Please let me know as soon as possible. Apple does a disservice to its brand name by declining legitimate Visa account holders from using the cards in Vietnam.
Sincerely,
<Edited by Host>Just as a warning, your credit card number has been sent in the clear to probably thousands of people, including anyone who subscribes to e-mail alerts to this forum. That's very, very bad. The credit card should be considered compromised at this point, and you should cancel it immediately, if you haven't done so already.
-
My Visa account keeps getting declined at Apple. I used this very same Visa card on Amazon with no problem. I checked my status for the card and it is still all good. My friends and I buy a lots of Apple applications on iTune.
We have the correct CVV2, Expiration Date and Billing address, but you keeps declining us. Please fix this problem for me. The issuing bank for this card is Eximbank, one of the largest banks in Vietnam. According to the bank, the transaction is processed in the US. This is a legitimate Visa card.
Please let me know as soon as possible. Apple does a disservice to its brand name by declining legitimate Visa account holders from using the cards in Vietnam.
Sincerely,
<Personal Information Edited by Host>These are user-to-user forums, you are not talking to Apple here - I've asked the hosts to remove your credit card number from your post as these are public forums (you should consider getting a new card from your provider as you've posted it here).
Your card is registered to exactly the same address (spacing and format) as is on your iTunes account ?You can contact iTunes support via this page : http://www.apple.com/support/itunes/contact/ - click on Contact iTunes Store Support on the right-hand side of the page, then Purchases, Billing & Redemption -
Installing UPK 11.0 for the first Time
What ports need to be opened when you install UPK 11.0 for the first time on Windows?
Here are some default ports for you just for reference. The install docs give you no port information whatsoever. :o)
Default Ports:
Oracle: 1521
Microsoft SQL: 1433
Web Server: 80 (recommended 443)
If you are going to connect through 443, port 80 is not needed
Remember as a heads up, if you plan to publish a friendly DNS name and use windows authentication, read this KB article, a reg edit will be required for this to work.
http://support.microsoft.com/kb/896861
In Registry Editor, locate and then click the following registry key:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\MSV1_0
Right-click MSV1_0, point to New, and then click Multi-String Value.
Type BackConnectionHostNames, and then press ENTER.
Right-click BackConnectionHostNames, and then click Modify.
In the Value data box, type the host name or the host names for the sites that are on the local computer, and then click OK. -
Installing a new forest for the first time in 2008 R2 SP1
Installing a new forest for the first time in 2008 R2 SP1 with no other forests present do I run:
E:\support\adprep\adprep /domainprep
or any other adprep to get the forest ready using the Answer File:
[DCINSTALL]
InstallDNS="Yes"
NewDomain="Forest"
NewDomainDNSName="mysite.com"
DomainNetBiosName="MYSITE"
ReplicaOrNewDomain="Domain"
ForestLevel="4"
DomainLevel="4"
CreateDNSDelegation="No"
DatabasePath="C:\Windows\NTDS"
LogPath="C:\Windows\NTDS"
SYSVOLPath="C:\Windows\SYSVOL"
ConfirmGc="Yes"
SafeModeAdminPassword=""
RebootOnCompletion=YesHi,
As per your statement, there aren't any other forest which mean you are creating a new AD forest in windows server 2008 R2 SP1.
You don't need to run adprep then. Just run dcpromo on the server and select new forest and provide a Domain Name and follow the instruction.
Regards..
Himanshu Rana
MCTS|MCSE|MCSA:Messaging|CCNA -
Hello,
We are facing an issue when triggering a new build using TFS 2013 Update 4, VS2013 Update 4 using TFVCTemplate.12.XAML template. All our other older build definitions just work fine but not the TFVCTemplate.12.XAML. It seems to me that some certificate
might be invalidated. Can anyone please point me in the right direction?
Thanks,
Mitul
TF215097: An error occurred while initializing a build for build definition :
Exception Message: One or more errors occurred. (type AggregateException)
Exception Stack Trace: at System.Threading.Tasks.Task`1.GetResultCore(Boolean waitCompletionNotification)
at Microsoft.TeamFoundation.Build.Client.FileContainerHelper.GetFile(TfsTeamProjectCollection projectCollection, String itemPath, Stream outputStream)
at Microsoft.TeamFoundation.Build.Client.FileContainerHelper.GetFileAsString(TfsTeamProjectCollection projectCollection, String itemPath)
at Microsoft.TeamFoundation.Build.Client.ProcessTemplate.Download(String sourceGetVersion)
at Microsoft.TeamFoundation.Build.Hosting.BuildControllerWorkflowManager.PrepareRequestForBuild(WorkflowManagerActivity activity, IBuildDetail build, WorkflowRequest request, IDictionary`2 dataContext)
at Microsoft.TeamFoundation.Build.Hosting.BuildWorkflowManager.TryStartWorkflow(WorkflowRequest request, WorkflowManagerActivity activity, BuildWorkflowInstance& workflowInstance, Exception& error, Boolean& syncLockTaken)
Inner Exception Details:
Exception Message: An error occurred while sending the request. (type HttpRequestException)
Exception Stack Trace: at Microsoft.VisualStudio.Services.WebApi.VssHttpRetryMessageHandler.<SendAsync>d__1.MoveNext()
--- End of stack trace from previous location where exception was thrown ---
at System.Runtime.CompilerServices.TaskAwaiter.ThrowForNonSuccess(Task task)
at System.Runtime.CompilerServices.TaskAwaiter.HandleNonSuccessAndDebuggerNotification(Task task)
at System.Runtime.CompilerServices.ConfiguredTaskAwaitable`1.ConfiguredTaskAwaiter.GetResult()
at Microsoft.VisualStudio.Services.WebApi.HttpClientExtensions.<DownloadFileFromTfsAsync>d__2.MoveNext()
Inner Exception Details:
Exception Message: The underlying connection was closed: Could not establish trust relationship for the SSL/TLS secure channel. (type WebException)Exception Stack Trace: at System.Net.HttpWebRequest.EndGetResponse(IAsyncResult asyncResult)
at System.Net.Http.HttpClientHandler.GetResponseCallback(IAsyncResult ar)
Inner Exception Details:
Exception Message: The remote certificate is invalid according to the validation procedure. (type AuthenticationException)
Exception Stack Trace: at System.Net.TlsStream.EndWrite(IAsyncResult asyncResult)
at System.Net.ConnectStream.WriteHeadersCallback(IAsyncResult ar)Hi Mitul,
Thanks for your reply.
It’s strange, if your old build definitions can work using the same TFS Build Server, that indicate your TFS Server configuration is correct and can works. But only new build definition with default TfvcTemplate.12.xaml template cannot build successful.
Please share your TFS Server detailed environment information here. And share your
Build Service Properties dialog screenshot here.
Try to clean the Cache for TFS 2013 manually(delete the content of the folder only, not the cache folder itself):
Clean the Cache folder on Server machine. The folder path is:
C:\Program Files\Microsoft Team Foundation Server 12.0\Application Tier\Web Services\_tfs_data.
After cleaned, on Server machine, click Start and select
Run… to open the dialog box, then input iisreset.exe and click OK, wait it run completely.
Additionally, you can run the TFS 2013 Power Tools BPA to scan the installation of your TFS Server.
We are trying to better understand customer views on social support experience, so your participation in this interview project would be greatly appreciated if you have time. Thanks for helping make community forums a great place.
Click
HERE to participate the survey. -
I know there are loads of posts with same issue and most of them were related to proxy and connectivity .
This was case for me as well (few months back). Now the same error is back. But I've confirmed that FW ports and proxy are fine this time around.
server is configured on http port 80
ERROR
Sync failed: UssCommunicationError: WebException: The underlying connection was closed: Could not establish trust relationship for the SSL/TLS secure channel. ---> System.Security.Authentication.AuthenticationException: The remote certificate is invalid
according to the validation procedure.~~at System.Web.Services.Protocols.WebClientProtocol.GetWebResponse(WebRequest request). Source: Microsoft.SystemsManagementServer.SoftwareUpdatesManagement.WSyncAction.WSyncAction.SyncWSUS
I've checked proxy server connectivity. I'm able browse following site from WSUS server
http://catalog.update.microsoft.com/v7/site/Home.aspx?sku=wsus&version=3.2.7600.226&protocol=1.8
I did telnet proxy server on the particular port (8080) and that is also fine.
I've doubt on certificates, any idea which are the certificates which we need to look? And if certificate is expired then (my guess) we won't be able open the above mentioned windows update catalog site?
Any tips appreciated !
Anoop C Nair (My Blog www.AnoopCNair.com)
- Twitter @anoopmannur -
FaceBook Forum For SCCMHi Lawrence ! - Many thanks for looking into this thread and replying. Appreciate your help.
Your reply ("SSL is enabled/configured, and the certificate being used is invalid
(or the cert does not exist or cannot be obtained), or the SSL connection could not be established.") is very helpful.
I've already tested CONTENT DOWNLOAD and it's working fine. WSUS Sync was also working fine for years with proxy server configured on port (8080) and WSUS server on port 80.
My Guess (this is my best guess ;)) is this something to do with Firewall or Proxy side configuration rather than WSUS. However, I'm not finding a way to prove this to proxy/firewall team. From their perspective all the required port communication open and
proxy server is also reachable. More over we're able to access internet (Microsoft Update Catalog site) over same port (8080).
Any other hints where I can prove them it's a sure shot problem from their side.
Thanks again !!
Anoop C Nair (My Blog www.AnoopCNair.com)
- Twitter @anoopmannur -
FaceBook Forum For SCCM -
Hi
Had to un-install and then re-install MS SQL Server 2012 with SSRS.
After we re-installed we are able to get to the Web Services page but not the Report Server page and get the above error message. We need to use SSL and when we bind the cert in RS Configuration Manager it says it does this successfully on the WebServices
tab. We also do a similar exercise on the ReportServer page.
Any help warmly welcomed :D
ThanksHi Rich Whight,
According to your description, after you re-installed SQL Server 2012 with SSRS, you are able to access Web Service URL, but when you tried to access Report Manager URL, the error occurred: The underlying connection was closed. Could not establish trust
relationship for the SSL/TLS Secure channel.
The issue may be caused when the certificate isn't installed correctly in the trusted root for the local computer. To verify and install the certificate, Please refer to the steps blow:
In RsReportServer.config file(default location: C:\Program Files\Microsoft SQL Server\MSRS11.MSSQLSERVER\Reporting Services\ReportServer), change the “SecureConnectionLevel” element value from 0 to 3.
Add correct value to <UrlRoot> element.
Add the same value to the <ReportServerUrl> element as step2.
Go to Microsoft management Console, add the certificate which you use to access the report server under “Trusted Root Certification Authorities”.
For more information about SSL configuration and Managing Trusted Root Certificates, please refer to the following documents:
http://blogs.msdn.com/b/mariae/archive/2007/12/12/ssl-configuration-and-reporting-services.aspx
http://technet.microsoft.com/en-us/library/cc754841.aspx
If you have any more questions, please feel free to ask.
Best Regards,
Wendy Fu
Maybe you are looking for
-
Re:How to input database to java program
Hi...anyone can briefly teach me how to input my Microsoft access(database) folder into my Java program? Or anyone have the java code to input data to the program?If i input do i need to declare a table first in it? Help Appreciated.Thanks...
-
Has anyone felt the heat from their monitor?
I have a Penryn 2.8 GHz 24" iMac and I park my face fairly close to the screen (about 12 inches (30.5 cm) and I can feel the heat of the screen. I took temperature readings with a lab thermometer on 9 points distributed on a grid across the screen an
-
Networking Linksys, iMac, Macbook and Belkin
I live in an old stone house and have two routers: one for each side of the house so I can move around with my laptop since the walls are too thick. The Linksys (WRT300N) is in the basement where the DSL comes in and connects directly to it. The macb
-
OM Number Ranges Problems please help
Hello Gurus! My client wants 2 things in OM: 1) 9 Digit Org Unit Code 2) Mixture of Alphabets and Numbers for Unit code. Can anyone suggest which one is possible and if both are possible? Thanks, Soniya
-
How to configure SingleSignOn between GRC and BOBJ 4.1
How to configure SingleSignOn between GRC and BOBJ 4.1? We have configured the System entitlement in BOBJ CMC. But didn't do anything on the GRC system. User can login from BOBJ to GRC with password but not with SSO. We haven't configured SNC . I don