Troubleshooting
Problem
Routing of application traffic to remote cell applications fails due to an Intelligent Management connector initialization failure.
Symptom
On the remote cell, the deployment manager and the node agents display a failed connection attempt:
WSX509TrustMa E CWPKI0022E: SSL HANDSHAKE FAILURE: A signer with SubjectDN "CN=local.cell.com, OU=node4, OU=node4, O=IBM, C=US" was sent from target host:port "unknown:0". The signer may need to be added to local trust store "/opt/was855/profiles/dmgr/config/cells/ndcell/trust.p12" located in SSL configuration alias "XDADefaultSSLSettings" loaded from SSL configuration file "security.xml".
Resolving The Problem
Ensure that an exchange of certificates takes place. For a secure connection to a remote cell, use one of the following methods to import the local cell certificate into the remote cell:
- In the administrative console for the remote cell, click Security > SSL certificate and key management > Key stores and certificates > CellDefaultTrustStore > Signer certificates. Click Retrieve from port.
- At the command prompt, use the wsadmin command AdminTask.retrieveSignerFromPort.
Related Information
Was this topic helpful?
Document Information
Modified date:
15 June 2018
UID
swg21636310