vApp Identity Governance/Manager fails to start with JBAS015956, JBAS014676, com.ctc.wstx.exc.WstxParsingException: Duplicate attribute 'enabled-cipher-suites'
search cancel

vApp Identity Governance/Manager fails to start with JBAS015956, JBAS014676, com.ctc.wstx.exc.WstxParsingException: Duplicate attribute 'enabled-cipher-suites'

book

Article ID: 94147

calendar_today

Updated On:

Products

CA Identity Manager CA Identity Governance CA Identity Portal

Issue/Introduction

Startup of Identity Governance or Identity Manager in vAPP fails with "com.ctc.wstx.exc.WstxParsingException: Duplicate attribute 'enabled-cipher-suites'".


07:20:40,226 DEBUG [org.jboss.as.config] (MSC service thread 1-7) VM Arguments: -D[Standalone] -Xms8196m -Xmx8196m -Djava.net.preferIPv4Stack=true -Djboss.modules.system.pkgs=org.jboss.####
 -Djava.awt.headless=true -Dcom.sun.jersey.server.impl.cdi.lookupExtensionInBeanManager=true -Dhazelcast.config=/opt/CA/wildfly-ig/conf/hazelcast.xml -Dwicket.configuration=deployment -Dwork
point.classpath.url=/opt/CA/wildfly-ig/Workpoint/ -Dorg.jboss.as.logging.per-deployment=false -Dorg.jboss.boot.log.file=/opt/CA/wildfly-ig/standalone/log/server.log -Dlogging.configuration=fi
le:/opt/CA/wildfly-ig/standalone/configuration/logging.properties
07:20:41,521 ERROR [org.jboss.as.server] (Controller Boot Thread) JBAS015956: Caught exception during boot: org.jboss.as.controller.persistence.ConfigurationPersistenceException: JBAS014676:
Failed to parse configuration
at org.jboss.as.controller.persistence.XmlConfigurationPersister.load(XmlConfigurationPersister.java:112) [wildfly-controller-8.2.0.Final.jar:8.2.0.Final]
at org.jboss.as.server.ServerService.boot(ServerService.java:331) [wildfly-server-8.2.0.Final.jar:8.2.0.Final]
at org.jboss.as.controller.AbstractControllerService$1.run(AbstractControllerService.java:259) [wildfly-controller-8.2.0.Final.jar:8.2.0.Final]
at java.lang.Thread.run(Thread.java:745) [rt.jar:1.8.0_71]
Caused by: com.ctc.wstx.exc.WstxParsingException: Duplicate attribute 'enabled-cipher-suites'.
at [row,col {unknown-source}]: [845,1246]

Environment

Release:
Component: IDSVA

Cause

Suspected cause is due to application of a hotfix with an incorrect hardening setting. Fix in subsequent versions.

Resolution

Please ensure that the line "true" is present in /opt/CA/VirtualAppliance/custom/IdentityManager/https-listener-hardening.

If it is not present, please add true to https-listener-hardening and restart IM or IG.

When it is present, you should see the following line in the vApp log:
reset_wildfly_deployment_status [INFO] Hardening wildfly https listener of /opt/CA/wildfly-idm/standalone/configuration/ca-standalone-full-ha.xml