My Oracle Support Banner

EM 13c: How To Secure EM Console with SAN Certificates From 12c to 13.3.0.0.0 Version (Doc ID 2292295.1)

Last updated on JULY 13, 2022

Applies to:

Enterprise Manager Base Platform - Version 12.1.0.5.0 to 13.3.2.0.0 [Release 12.1 to 13c]
Information in this document applies to any platform.

Goal

EM is secured out-of-box with default EM certificates , which contain CN(common name) .Google Chrome 58+ need certificates with SAN name to be accessible in browser. and this document is mandatory for them This document is applicable for console access through other browser also
Error below is observed in Chrome browser,though a valid trusted Certificate Authority is used 
NET::ERR_CERT_AUTHORITY_INVALID
NET::ERR_CERT_COMMON_NAME_INVALID

SAN Certificates can be used with EM Console application only ,using the steps below till EM 13.3. Once wallets with SAN certificates are ready, we can use it with EM . Step I and Step II listed below are for example purpose only.
Starting with EM 13.4 SAN certificates can be used with EM Console ,Upload and WLS in EM also.

<Note: 2626028.1> EM 13.4 support SAN Certificates for console and upload access.

Solution

To view full details, sign in with your My Oracle Support account.

Don't have a My Oracle Support account? Click to get started!


In this Document
Goal
Solution
 Step I.Steps to raise CSR (Certificate Signing Request) with SAN name 
 Step II.Create wallet and import the certificates to it
 Step III.Secure EM Console with SAN Certificates
References

My Oracle Support provides customers with access to over a million knowledge articles and a vibrant support community of peers and Oracle experts.