APAR status
Closed as program error.
Error description
While connect to WebSphere internal http server over SSL,
additional custom SSL properties are ignored by the HTTP
transport. In this scenario, the custom property
com.ibm.ssl.keyStoreServerAlias = <key lable> was ignore.
http transport is using a default socket factory <
HttpSSLServerSocketFactory > which does not process
com.ibm.ssl.keyStoreServerAlias property. RMI and does handle
customized SSL propertties, include
com.ibm.ssl.keyStoreServerAlias property.
Local fix Problem summary
****************************************************************
* USERS AFFECTED: WebSphere Application Server security *
* users who have multiple certificates in *
* server key store files. *
****************************************************************
* PROBLEM DESCRIPTION: If more than one certificate is in a *
* given key store, the first certificate *
* in the key store is used. There is no *
* ability to utilize other certificates. *
****************************************************************
* RECOMMENDATION: *
****************************************************************
If more than one certificate in a given key store, the user
cannot choose which certificate to use, even by setting SSL
configuration property, com.ibm.ssl.keyStoreServerAlias.
Problem conclusion
WebSphere security key manager was corrected to set
com.ibm.ssl.keyStoreServerAlias property properly.
Temporary fix
Test fix provided.
Comments
APAR information |
APAR number |
PQ90275 |
Reported component name |
WAS BASE 5.0 |
Reported component ID |
5630A3600 |
Reported release |
10W |
Status |
CLOSED PER |
PE |
NoPE |
HIPER |
NoHIPER |
Special Attention |
NoSpecatt |
Submitted date |
2004-06-16 |
Closed date |
2004-06-30 |
Last modified date |
2004-06-30 |
APAR is sysrouted FROM one or more of the following:
APAR is sysrouted TO one or more of the following:
Modules/Macros
Publications Referenced
Applicable component levels |
R003 PSY |
UP |
R00A PSY |
UP |
R00H PSY |
UP |
R00I PSY |
UP |
R00P PSY |
UP |
R00S PSY |
UP |
R00W PSY |
UP |
R103 PSY |
UP |
R10A PSY |
UP |
R10H PSY |
UP |
R10I PSY |
UP |
R10P PSY |
UP |
R10S PSY |
UP |
R10W PSY |
UP |
|