Ajithlal
Ajithlal

Reputation: 109

SSL Certificate chaining error in WAS happened intermittenly

I'm facing a certificate chaining error in a Websphere application server. After installing the certificate, it is working for first request and getting Certificate chaining error for the subsequent request.

Please find the log file

javax.xml.ws.WebServiceException: javax.net.ssl.SSLHandshakeException: com.ibm.jsse2.util.h: PKIX path building failed: java.security.cert.CertPathBuilderException: PKIXCertPathBuilderImpl could not build a valid CertPath.; internal cause is: java.security.cert.CertPathValidatorException: The certificate issued by EMAILADDRESS=*.@.com, CN=****, OU=****, O=****, ST=****, C= is not trusted; internal cause is: java.security.cert.CertPathValidatorException: Certificate chaining error

Upvotes: 1

Views: 1206

Answers (1)

Rushi Daxini
Rushi Daxini

Reputation: 1700

There can be multiple reasons behind this error. You can enable WAS SSL logs and check the trace logs or share here.

PS: It has been observed that WAS serves few incoming requests immediately after installing certificate. Experienced the same issue and the reason was installed wrong sequence of chain certificate at host side.

Upvotes: 0

Related Questions