Unsupported Certificate Purpose Error When Using Two Way SSL In Oracle API Gateway

(Doc ID 1681104.1)

Last updated on JANUARY 03, 2018

Applies to:

Oracle API Gateway - Version 11.1.2 and later
Information in this document applies to any platform.


When connecting using two way ssl to a secured service, OAG server logs the following error in the trace file:

In this particular example, the client certificate subject is /O=Client/OU=ESI/CN=cgml068967.com and the OAG server certificate subject is /O=Client/OU=ESI/CN=deved2ioagl.com

Why is this error occurring, and how can the configuration be altered to overcome the issue?


Sign In with your My Oracle Support account

Don't have a My Oracle Support account? Click to get started

My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms