RSA Authentication Manager 8.x Web Tier is not listening on TCP port 443
Originally Published: 2015-05-15
Article Number
Applies To
RSA Product/Service Type: Authentication Manager
RSA Version/Condition: 8.x Web Tier
Issue
<Error> <WebLogicServer> <ShortName> <AdminServer> <[ACTIVE] ExecuteThread: '0' for queue: 'weblogic.kernel.Default (self-tuning)'> <<WLS Kernel>> <> <> <1431553005608> <BEA-000297> <Inconsistent security configuration, weblogic.management.configuration.ConfigurationException: Identity certificate has expired: [ Version: V3 Serial Number: SignatureAlgorithm: SHA1withRSA (1.2.840.113549.1.1.5) Issuer Name: SERIALNUMBER=17963287, CN=Go Daddy Secure Certification Authority, OU=http://certificates.godaddy.com/repository, O="GoDaddy.com, Inc.", L=Scottsdale, ST=Arizona, C=US Validity From: Fri Apr 20 17:30:38 EDT 2012 To: Sat Apr 18 20:48:30 EDT 2015 Subject Name: CN=*.'domain'.com, OU=Domain Control Validated, O=*.'domain'.com Key: RSA (1.2.840.113549.1.1.1) Key value: ... <Emergency> <Security> <ShortName> <AdminServer> <[ACTIVE] ExecuteThread: '0' for queue: 'weblogic.kernel.Default (self-tuning)'> <<WLS Kernel>> <> <> <1431553005686> <BEA-090034> <Not listening for SSL, java.io.IOException: Identity certificate has expired: [ Version: V3 Serial Number: 22155402301514726 SignatureAlgorithm: SHA1withRSA (1.2.840.113549.1.1.5) Issuer Name: SERIALNUMBER=17963287, CN=Go Daddy Secure Certification Authority, OU=http://certificates.godaddy.com/repository, O="GoDaddy.com, Inc.", L=Scottsdale, ST=Arizona, C=US Validity From: Fri Apr 20 17:30:38 EDT 2012 To: Sat Apr 18 20:48:30 EDT 2015 Subject Name: CN=*.'domain'.com, OU=Domain Control Validated, O=*.'domain'.com
While Authentication Manager imsTrace.log shows.
@@@2015-05-13 17:34:15,108, [[ACTIVE] ExecuteThread: '0' for queue: 'weblogic.kernel.Default (self-tuning)'], (EJBRemoteTarget.java:302), trace.com.rsa.command.EJBRemoteTargetBase, ERROR, ShortName.'domain'.com,,,, Attempting downgraded connection protocol to EJB/2.1. @@@2015-05-13 17:34:26,030, [[ACTIVE] ExecuteThread: '0' for queue: 'weblogic.kernel.Default (self-tuning)'], (EJBRemoteTarget.java:316), trace.com.rsa.command.EJBRemoteTargetBase, ERROR, ShortName.'domain'.com,,,, Unable to connect to downgraded EJB/2.1 command server.null
Cause
Resolution
Or revert back to the original RSA self-signed Certificate, by activating it in the operations console.
Related Articles
Remote agent fails to start after metadata import 118Number of Views Form Control Type 'User Picker' with the User filter option generates a SQL Exception in RSA Identity Governance & Lifecycle 128Number of Views Identifying Custom Attribute column name in RSA Governance & Lifecycle 92Number of Views How to enable DEBUG logging to show SQL queries generated by RSA Identity Governance & Lifecycle 100Number of Views RSA Identity Governance & Lifecycle Identity Data Collection is failing due to ORA-00904: CUS_ATTR_USER_CAS_XX invalid ide… 589Number of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device RSA Authentication Manager 8.9 Patches and Hotfixes Readme RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide "No decryption codes were found in the zip file" error when decrypting RSA SecurID tokens Download RSA SecurID Access Cloud User Event audit logs using Cloud Administration REST API CLU
Don't see what you're looking for?