OCM Can't Connect Saying 'peer Not Authenticated' (Doc ID 2183251.1)

Last updated on SEPTEMBER 15, 2016

Applies to:

Oracle Configuration Manager - Version 12.0.0.2.0 and later
Information in this document applies to any platform.

Symptoms

Unable to configure a new OCM collector and existing OCM collectors fail to update.  Fails with peer not authenticated error.

 

 > ./emCCR -verbose test
Oracle Configuration Manager - Release: 12.0.0.3.0 - Production
Copyright (c) 2005, 2014, Oracle and/or its affiliates. All rights reserved.
------------------------------------------------------------------
warning: invalid plugin directory '/opt/java6/jre/jre/lib/PA_RISC2.0/plugins/'.
Verifying Proxy settings...
No Proxy host set.
Oracle Configuration Manager Server is: ccr.oracle.com
Resolving Oracle Configuration Manager Server address...
Connecting to Oracle Configuration Manager server...
Could not connect to Oracle Configuration Manager Server
Error connecting to server.
peer not authenticated

wget gives me that it can't verify the server certificate:
svr2[~]% wget -dvSN https://ccr.oracle.com:443/em/upload/
Setting --verbose (verbose) to 1
Setting --server-response (serverresponse) to 1
Setting --timestamping (timestamping) to 1
DEBUG output created by Wget 1.15 on hpux11.11.

--2016-08-29 12:44:37-- https://ccr.oracle.com/em/upload/
Resolving ccr.oracle.com... 141.146.54.49
Caching ccr.oracle.com => 141.146.54.49
Connecting to ccr.oracle.com|141.146.54.49|:443... connected.
Created socket 3.
Releasing 0x4002a190 (new refcount 1).
Initiating SSL handshake.
Handshake successful; connected socket 3 to SSL handle 0x4002a240
certificate:
subject: /C=US/ST=California/L=Redwood Shores/O=Oracle Corporation/OU=Global IT/CN=*.oracle.com
issuer: /C=US/O=Symantec Corporation/OU=Symantec Trust Network/CN=Symantec Class 3 Secure Server CA - G4
ERROR: cannot verify ccr.oracle.com's certificate, issued by '/C=US/O=Symantec Corporation/OU=Symantec Trust Network/CN=Symantec Class 3 Secure Server CA - G4':
Unable to locally verify the issuer's authority.
To connect to ccr.oracle.com insecurely, use '--no-check-certificate'.
Closed 3/SSL 0x4002a240

Cause

Sign In with your My Oracle Support account

Don't have a My Oracle Support account? Click to get started

My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms