[ome-users] server certificate change is restrictedduring renegotiation]

Aleksandra Tarkowska (Staff) A.Tarkowska at dundee.ac.uk
Fri May 29 11:29:08 BST 2015


Hi Bernie

Is ad.susx.ac.uk SSL cert self signed? Did you import to Java keystone and
then add

bin/omero config set omero.security.keyStore "/etc/pki/java/cacerts"
bin/omero config set omero.security.trustStore "/etc/pki/java/cacerts"



Kind regards
Ola





On 29/05/2015 11:18, "Bernie Broughton" <b.broughton at sussex.ac.uk> wrote:

>Hi,
>
>We've upgraded from 5.0.5 to 5.1.1 3 days ago successfully but are now
>finding users can't authenticate using LDAP. Restarting the server fixes
>the problem for initially but the problem returns with a very short
>period (a minute or so).
>
>Checking the Blitz log I can see the error:
>
>org.springframework.ldap.CommunicationException: simple bind failed:
>ad.susx.ac.uk:636; nested exception is
>javax.naming.CommunicationException: simple bind failed:
>ad.susx.ac.uk:636 [Root exception is javax.net.ssl.SSLHandshakeException:
>server certificate change is restrictedduring renegotiation]
>
>Can anyone help with this please,
>
>Bernie Broughton
>Research IT Support and Service Development Specialist (ITS Client
>Services)
>IT Manager (Genome Damage and Stability Centre)
>
>_______________________________________________
>ome-users mailing list
>ome-users at lists.openmicroscopy.org.uk
>http://lists.openmicroscopy.org.uk/mailman/listinfo/ome-users


The University of Dundee is a registered Scottish Charity, No: SC015096



More information about the ome-users mailing list