hello, i enable ssl on cas server, but cas client gives "pkix path building failed. unable to find valid certifiaction path to requested target" error. i read documantation ( https://apereo.github.io/cas/6.1.x/installation/Troubleshooting-Guide.html#ssl--certificates). the recommended solution is to import certificate to client truststore. but it doesnt work for me.
*how i create certificate?* keytool -genkey -keyalg RSA -alias thekeystore -keystore thekeystore -storepass changeit -validity 360 -keysize 2048 -ext san=ip:x.y.z.t *how i convert this certificate to .der format?* (documentation say "The certificate to be imported MUST be a DER-encoded file.") keytool -export -alias thekeystore -file thekeystore.der -keystore thekeystore *how i import certificate to client?* keytool -import -alias thekeystore -storepass changeit -file thekeystore.der -keystore $JAVA_HOME\jre\lib\security\cacerts (gives success message: certificate added.) can you help me what the problem can be? thanks -- - Website: https://apereo.github.io/cas - Gitter Chatroom: https://gitter.im/apereo/cas - List Guidelines: https://goo.gl/1VRrw7 - Contributions: https://goo.gl/mh7qDG --- You received this message because you are subscribed to the Google Groups "CAS Community" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. To view this discussion on the web visit https://groups.google.com/a/apereo.org/d/msgid/cas-user/75cd774c-355a-4362-8085-430a47204af6%40apereo.org.
