Dear CAS user list,

Not a cas problem, but a java (I think) ssl problem. Any thoughts on 
troubleshooting this would be helpful. The CAS access for our main cas client 
is DOWN!

Last night we put a new cert in https://cas.pepperdine.edu/cas . All the 
browsers accepted it, functional test of some apps worked, so I moved it from 
test keystore to production keystore (tomcat server keystore from 
conf/server.xml). Peoplesoft portal does not work with this new cert. It gets 
an error attempting to validate the cert.

We're following the calpoly SLO setup for 
CAS+Peoplesoft<http://www.calpoly.edu/~cms/ExtAuthentication/CalPolyWebLoginPSHRSAShareable_20060417.pdf>
 apparently, and this is the error we get:

2010-11-10 12:15:43 ERROR: Exception attempting validate: java.io.IOException: 
unsupported keyword SERIALNUMBER

We've installed the intermediate and root CA certs into a java keystore on the 
peoplesoft side. Does not seem to be helping the situation.

Any suggestions on troublehooting further greatly appreciated.

Best,
KC


-- 
You are currently subscribed to [email protected] as: 
[email protected]
To unsubscribe, change settings or access archives, see 
http://www.ja-sig.org/wiki/display/JSG/cas-user

Reply via email to