Melanie:

Your certificate is invalid, as your navigator does not know the Certificate 
Authority who issued your server certificate (In this case, you). It's not 
related to expiration dates. You can find nice guides (using openssl :(  ) 
here: http://www.tc.umn.edu/~brams006/selfsign.html  and here: 
http://marc.info/?l=tomcat-user&m=106293430225790&w=2 that can help you to 
understand the process, and of course with the problem you are having

Best,

Toni





-----Original Message-----
From: Melanie Pfefer [mailto:melanie_pfe...@yahoo.co.uk] 
Sent: miƩrcoles, 06 de mayo de 2009 12:04
To: users@tomcat.apache.org
Subject: invalid certificate


Hi,

I generated a new certificate according to 
http://tomcat.apache.org/tomcat-6.0-doc/ssl-howto.html

First step:
keytool -genkey -alias tomcat -keyalg RSA -keystore /usr/local/tomcat/.keystore

Second step:

in servers.xml:

<Connector protocol="org.apache.coyote.http11.Http11Protocol"
           port="8443" minSpareThreads="5" maxSpareThreads="75"
           enableLookups="true" disableUploadTimeout="true"
           acceptCount="100"  maxThreads="200"
           scheme="https" secure="true" SSLEnabled="true"
           keystoreFile="/usr/local/tomcat/.keystore" keystorePass="password"
           clientAuth="false" sslProtocol="TLS"/>


I am getting an error that the certificate is not valid when I access the https 
URL:

The error message is: uses an invalid security certificate


When I list the certificate:

Valid from: Wed May 06 11:52:13 MEST 2009 until: Tue Aug 04 11:52:13 MEST 2009

Can you please shed some light on this?

thanks



      

---------------------------------------------------------------------
To unsubscribe, e-mail: users-unsubscr...@tomcat.apache.org
For additional commands, e-mail: users-h...@tomcat.apache.org


---------------------------------------------------------------------
To unsubscribe, e-mail: users-unsubscr...@tomcat.apache.org
For additional commands, e-mail: users-h...@tomcat.apache.org

Reply via email to