Requirement to monitor web servers in non permissive mode, certificates have been imported in keystore and resolved the trust.
The truststore password was entered in the bundle.properties in plain text
After first start all is good.
After the restart the agent can't read the password (which is now encrypted by the agent itself) from bundle.properties:
[ERROR] [IntroscopeAgent.WebserverMonitor.WebServerMonitorEngine] I/O error reading truststore file: Keystore was tampered with, or password was incorrect
After the password gets re-entered it works when the agent is started, after the next restart it is broken again.
The password was being re-encrypted after every restart of the APM Infrastructure Agent.
Release : 10.7.0
Component : APM Agents
A fix was created and would be included in the next release, 10.7 SP4
Related defect is DE442499