[ome-users] server certificate change is restrictedduring renegotiation]

Bernie Broughton b.broughton at sussex.ac.uk
Fri May 29 11:52:16 BST 2015


Hi Ola,

Thanks for the quick response.

The LDAP configuration was managed by the central IT department but I'm pretty sure the certificate was self signed. This issue has only appeared since the upgrade though.

keystore.jks exists in the correct path and is readable.

The relevant entries in config are:

omero.security.keyStore=/var/omero/keystore.jks
omero.security.keyStorePassword=xxxx
omero.security.trustStore=/var/omero/keystore.jks

Can I just run the 2 set config commands you mention or should I pass this back to our IT department?

Bernie

> -----Original Message-----
> From: ome-users [mailto:ome-users-bounces at lists.openmicroscopy.org.uk]
> On Behalf Of Aleksandra Tarkowska (Staff)
> Sent: 29 May 2015 11:29
> To: OME User Support List
> Subject: Re: [ome-users] server certificate change is restrictedduring
> renegotiation]
> 
> Hi Bernie
> 
> Is ad.susx.ac.uk SSL cert self signed? Did you import to Java keystone and
> then add
> 
> bin/omero config set omero.security.keyStore "/etc/pki/java/cacerts"
> bin/omero config set omero.security.trustStore "/etc/pki/java/cacerts"
> 
> 
> 
> Kind regards
> Ola





More information about the ome-users mailing list