| Author | 
		  Message
		 | 
		
		  | slonkoski | 
		  
		    
			  
				 Posted: Wed Jun 29, 2011 5:52 am    Post subject: Broker and/or EG bounce after adding intermediate certs? | 
				     | 
			   
			 
		   | 
		
		
		    Acolyte
 
 Joined: 18 Mar 2005 Posts: 52
  
  | 
		  
		    
			  
				Do I need to restart the Broker (v6.1.0.9) or EG after adding intermediate certs to an EG truststore?
 
 
We started receiving a 'java.security.cert.CertPathValidatorException: Certificate chaining error' after an external partner upgraded their VeriSign certs, it looks like I either need to add certs to my Truststore or recreate it to add any missing components of the certificate chain.  I did add the 2 certs that the external partner added, not sure if I need a restart. | 
			   
			 
		   | 
		
		
		  | Back to top | 
		  
		  	
		   | 
		
		
		    | 
		
		
		  | mqjeff | 
		  
		    
			  
				 Posted: Wed Jun 29, 2011 5:54 am    Post subject:  | 
				     | 
			   
			 
		   | 
		
		
		   Grand Master
 
 Joined: 25 Jun 2008 Posts: 17447
  
  | 
		  
		    
			  
				| You probably do need to at least reload the EG to get it to re-read the key and trust stores. | 
			   
			 
		   | 
		
		
		  | Back to top | 
		  
		  	
		   | 
		
		
		    | 
		
		
		  | slonkoski | 
		  
		    
			  
				 Posted: Wed Jun 29, 2011 6:08 am    Post subject: Thanks, can't hurt to reload the EG | 
				     | 
			   
			 
		   | 
		
		
		    Acolyte
 
 Joined: 18 Mar 2005 Posts: 52
  
  | 
		  
		    
			  
				| Only impacts the customer having the issue, I'll do that.  Can't restart broker that easy, need change approval blah blah blah. | 
			   
			 
		   | 
		
		
		  | Back to top | 
		  
		  	
		   | 
		
		
		    | 
		
		
		  | slonkoski | 
		  
		    
			  
				 Posted: Wed Jun 29, 2011 10:06 am    Post subject: Yup, needed to bounce the EG | 
				     | 
			   
			 
		   | 
		
		
		    Acolyte
 
 Joined: 18 Mar 2005 Posts: 52
  
  | 
		  
		    
		   | 
		
		
		  | Back to top | 
		  
		  	
		   | 
		
		
		    | 
		
		
		  | nandu123 | 
		  
		    
			  
				 Posted: Wed Jun 29, 2011 12:52 pm    Post subject:  | 
				     | 
			   
			 
		   | 
		
		
		    Newbie
 
 Joined: 10 Jan 2011 Posts: 5 Location: NewYork 
  | 
		  
		    
			  
				
   
	| Quote: | 
   
  
	| All set, thank you! | 
   
 
 
was that an EG restart that worked | 
			   
			 
		   | 
		
		
		  | Back to top | 
		  
		  	
		   | 
		
		
		    | 
		
		
		  | slonkoski | 
		  
		    
			  
				 Posted: Thu Jun 30, 2011 5:39 am    Post subject:  | 
				     | 
			   
			 
		   | 
		
		
		    Acolyte
 
 Joined: 18 Mar 2005 Posts: 52
  
  | 
		  
		    
			  
				| Yes, added the certs to the truststore but had to bounce the EG.  I did try an mqsirelaod command, but the flows didn't start.  I ended up very ungracefully doing it via a 'kill -9 pid' command against the EG.  It stopped and of course restarted and everything was fine.  The doc as far as I can see doesn't mention EG or Broker restarts after adding new certs, but it appears it is necessary. | 
			   
			 
		   | 
		
		
		  | Back to top | 
		  
		  	
		   | 
		
		
		    | 
		
		
		  | 
		    
		   |