New keystore update on MOM EM not working
search cancel

New keystore update on MOM EM not working

book

Article ID: 200695

calendar_today

Updated On:

Products

CA Application Performance Management Agent (APM / Wily / Introscope) CA Application Performance Management (APM / Wily / Introscope) INTROSCOPE DX Application Performance Management

Issue/Introduction

We currently have an expired SSL cert in Test APM setup with 3 collectors, 1 MOM & 1 WebView.

A new keystore was applied on all these EMs, MOM is the one throwing SSL handshake exception. 

Environment

Release : 10.7.0

Component : APM Agents

Cause

Incorrect configuration  of cert and keystore 

Resolution

 

1. CA APM 10.7 EM log shows "Cannot send EM topology due: 'SSLHandshakeException: sun.security.validator.ValidatorException: PKIX path building failed ..."

 https://knowledge.broadcom.com/external/article?articleId=101474

2. After installing APM 10.7 HF 24 seeing PKIX path building failed: sun.security.provider.certpath.SunCertPathBuilderException: unable to find valid certification path to requested target

https://knowledge.broadcom.com/external/article?articleId=125732

3. Enabling APM HTTPS Communications using a Non-default Keystore or Certificate.
https://knowledge.broadcom.com/external/article?articleId=14934#/

4. WebServer SSL Certificate Installation
https://knowledge.broadcom.com/external/article?articleId=145558#/