RE: tomcat and FIPS - PKCS11 CKR_SESSION_READ_ONLY error after OpenJDK upgrade

2022-11-22 Thread Cantor, Angela T.
hat. -chris > -----Original Message- > From: Cantor, Angela T. > Sent: Wednesday, November 16, 2022 7:28 PM > To: Tomcat Users List > Subject: RE: tomcat and FIPS - PKCS11 CKR_SESSION_READ_ONLY error > after OpenJDK upgrade > > Thanks to Joey and Chris for respo

RE: tomcat and FIPS - PKCS11 CKR_SESSION_READ_ONLY error after OpenJDK upgrade

2022-11-16 Thread Cantor, Angela T.
And one thing I forgot - yes Chris, could you please provide the code you mentioned in case that is the issue? Thanks, Angela >> certificateKeystoreProvider="SunPKCS11-NSS-FIPS" > >Could this be the problem? Does your new Java version have that security >provider available

RE: tomcat and FIPS - PKCS11 CKR_SESSION_READ_ONLY error after OpenJDK upgrade

2022-11-16 Thread Cantor, Angela T.
m: Christopher Schultz Sent: Tuesday, November 15, 2022 21:50 To: users@tomcat.apache.org Subject: Re: tomcat and FIPS - PKCS11 CKR_SESSION_READ_ONLY error after OpenJDK upgrade Angela, On 11/14/22 11:56, Cantor, Angela T. wrote: > We just upgraded OpenJDK from 17.0.4.0.8-2.el8_6 to the abov

tomcat and FIPS - PKCS11 CKR_SESSION_READ_ONLY error after OpenJDK upgrade

2022-11-14 Thread Cantor, Angela T.
Hi all, We have - tomcat 9.0.68 - RHEL 8.6 with FIPS - OpenJDK 17.0.5.0.8-2.el8_6 We just upgraded OpenJDK from 17.0.4.0.8-2.el8_6 to the above version. Now tomcat won't listen on the desired port. Something is wonky with it accessing the keystore. If you all see anything obvious, could you