OHS12c In Simple Mode Experiences TLS Handshake Failure

(Doc ID 2389283.1)

Last updated on APRIL 20, 2018

Applies to:

Oracle Access Manager - Version 11.1.2.3.0 and later
Information in this document applies to any platform.

Symptoms



Configured OHS12.2.1.3 with webgate to communicate with OAM server 11gR2PS3 in simple mode.

On access to resource, in the browse, we see "500 Internal Server Error has occurred".



ERROR
-----------------------

ohs1.log
-----------
OBWebGate_AuthnAndAuthz: Cannot get message for ObAccessException_ENGINE_DOWN

webgate.log
--------------
2018/04/20@13:05:05.42693 19883 20121 CONNECTIVITY WARNING 0x0000210C /ade/aime_NGAMAC_12.2.1.3.0_LINUX.X64_slaveView_193/ngamac/src/palantir/netlib/src/obnzwrapper.cpp:420 "TLS Handshake unsuccessful" TLS Handshake Unsuccessful with error code: ^29024 "Failure Reason: NZERROR_CIC_ERR_SSL_CERTIFICATE_VALIDATE_FAILED"^Failure Reason: NZERROR_CIC_ERR_SSL_CERTIFICATE_VALIDATE_FAILED

OAM server log
----------------------------------------
javax.net.ssl.SSLHandshakeException: SSL handshake failed.
  at org.apache.mina.filter.ssl.SslFilter.messageReceived(SslFilter.java:426)
Caused by: javax.net.ssl.SSLException: Received fatal alert: unknown_ca
Managed Server Diag log
------------------------------
javax.net.ssl.SSLHandshakeException: SSL handshake failed.
  at org.apache.mina.filter.ssl.SslFilter.messageReceived(SslFilter.java:426)
Caused by: javax.net.ssl.SSL





Changes

 

Cause

Sign In with your My Oracle Support account

Don't have a My Oracle Support account? Click to get started

My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms