IBM Support

What to do when you see the warning message: 'The JKS keystore uses a proprietary format'

Question & Answer


Question

Do I need to be concerned when I see 
Warning:

The JKS keystore uses a proprietary format. It is recommended to migrate to PKCS12 which is an industry standard format using "keytool -importkeystore -srckeystore /opt/IBM/Guardium/tomcat/.keystore -destkeystore /opt/IBM/Guardium/tomcat/.keystore -deststoretype pkcs12".

Cause

The message can be seen as output after running the CLI commands 'restart network', or 'show certificate summary'
The warning does not appear in v11.4 but can be seen in v11.5 patch levels p530 - p540. It does not appear in v12 since it has been suppressed.

Answer

The warning is referring to a protocol no longer used in Guardium since v11.4 and can be safely ignored. 

[{"Type":"MASTER","Line of Business":{"code":"LOB24","label":"Security Software"},"Business Unit":{"code":"BU048","label":"IBM Software"},"Product":{"code":"SSMPHH","label":"IBM Security Guardium"},"ARM Category":[{"code":"a8m0z0000001hbcAAA","label":"CLI"}],"ARM Case Number":"","Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"All Versions"}]

Document Information

Modified date:
07 August 2024

UID

ibm17009223