quality@glassfish.java.net

Re: SSL on GF2.1 60e

From: Ajit Kamble <Ajit.Kamble_at_Sun.COM>
Date: Wed, 18 Feb 2009 09:38:54 +0530

The issue was resolved after removing "trustcacerts" option while importing
We got this solution from AM Sustaining team. We were using certificate
Authority installed by them for testing purpose.

Thanks
Ajit

Judy Tang wrote:
> Hi Siddesh,
>
> Thanks for posting, I will help to forward your question :-)
>
> Judy
> siddesh.kamath wrote:
>> Hi,
>>
>> We were trying to make the GF 2.1 (60e RR release) ssl enabled. We
>> followed the following steps : (we used raasi to get the self signed
>> certificate)
>> http://blogs.sun.com/kamble/entry/installing_openportal_on_ssl_instance
>>
>> However, when we try to import the server cert obtained from Raasi
>> ie when we try to run the following command, we get the following
>> error :
>> */ keytool -import -trustcacerts -alias myalias -file servercert.pem
>> -keypass changeit -keystore keystore.jks -storepass changeit
>> keytool error: java.lang.Exception: Public keys in reply and keystore
>> don't match
>>
>> /*It will be really helpful if somebody can give us some idea on this
>> problem. Is this something to do with openssl versions ??
>>
>> regards
>> sid
>>
>> ---------------------------------------------------------------------
>> To unsubscribe, e-mail: quality-unsubscribe_at_glassfish.dev.java.net
>> For additional commands, e-mail: quality-help_at_glassfish.dev.java.net
>>
>
>
> ---------------------------------------------------------------------
> To unsubscribe, e-mail: quality-unsubscribe_at_glassfish.dev.java.net
> For additional commands, e-mail: quality-help_at_glassfish.dev.java.net
>