<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Adding self signed certificate into AEM 6.4 trustore in Adobe Experience Manager Discussions</title>
    <link>https://experienceleaguecommunities.adobe.com/t5/adobe-experience-manager/adding-self-signed-certificate-into-aem-6-4-trustore/m-p/282754#M16652</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It would be good to know if the trustStore management is the section used to manage self signed third party certificates, and if there are any additional steps required after adding the certificate to the trustStore.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Based on my tests it appears just adding the certificate dosen't do the trick.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 15 Jun 2018 12:28:29 GMT</pubDate>
    <dc:creator>rajneeshg</dc:creator>
    <dc:date>2018-06-15T12:28:29Z</dc:date>
    <item>
      <title>Adding self signed certificate into AEM 6.4 trustore</title>
      <link>https://experienceleaguecommunities.adobe.com/t5/adobe-experience-manager/adding-self-signed-certificate-into-aem-6-4-trustore/m-p/282752#M16650</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;We are trying to integrate AEM Author(calling client) with a external REST service using SSL. On adding the public self signed certificate of the service onto AEM's trustStore we still see a SSLHandshake exception.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Used this section to add the self signed certificate into AEM TrustStore - &lt;A href="http://localhost:4502/libs/granite/security/content/truststore.html" title="http://localhost:4502/libs/granite/security/content/truststore.html"&gt;http://localhost:4502/libs/granite/security/content/truststore.html&lt;/A&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="Screen Shot 2018-06-14 at 15.22.17.png"&gt;&lt;img src="https://experienceleaguecommunities.adobe.com/t5/image/serverpage/image-id/11985iB0258AB2A73F0232/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screen Shot 2018-06-14 at 15.22.17.png" alt="Screen Shot 2018-06-14 at 15.22.17.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Please can you advice if I am missing anything?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;No change in the error after adding the certificate to the trustStore.&lt;/P&gt;&lt;PRE __default_attr="xml" __jive_macro_name="code" class="jive_macro_code _jivemacro_uid_15289859181768647 jive_text_macro" data-renderedposition="578_8_1027_48" jivemacro_uid="_15289859181768647"&gt;&lt;P&gt;&lt;/P&gt;&lt;P class="p1"&gt;&lt;SPAN class="s1"&gt;javax.net.ssl.SSLHandshakeException: sun.security.validator.ValidatorException: PKIX path building failed: sun.security.provider.certpath.SunCertPathBuilderException: unable to find valid certification path to requested target&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="p1"&gt;&lt;SPAN class="s1"&gt;&amp;nbsp; at sun.security.ssl.Alerts.getSSLException(Alerts.java:192)&lt;/SPAN&gt;&lt;/P&gt;&lt;/PRE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The documentation around how to manage certificate looks outdated to me. &lt;A href="https://helpx.adobe.com/experience-manager/6-4/forms/using/admin-help/certificates.html#managing_certificates"&gt;https://helpx.adobe.com/experience-manager/6-4/forms/using/admin-help/certificates.html#managing_certificates&lt;/A&gt;&lt;A href="https://helpx.adobe.com/experience-manager/6-4/forms/using/admin-help/certificates.html#managing_certificates"&gt;https://helpx.adobe.com/experience-manager/6-4/forms/using/admin-help/certificates.html#managing_certificates&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Any better documentation which could be used to understand how to manage certificates in AEM?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 14 Jun 2018 14:27:53 GMT</pubDate>
      <guid>https://experienceleaguecommunities.adobe.com/t5/adobe-experience-manager/adding-self-signed-certificate-into-aem-6-4-trustore/m-p/282752#M16650</guid>
      <dc:creator>rajneeshg</dc:creator>
      <dc:date>2018-06-14T14:27:53Z</dc:date>
    </item>
    <item>
      <title>Re: Adding self signed certificate into AEM 6.4 trustore</title>
      <link>https://experienceleaguecommunities.adobe.com/t5/adobe-experience-manager/adding-self-signed-certificate-into-aem-6-4-trustore/m-p/282753#M16651</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;We passed this to the Doc team. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 14 Jun 2018 15:55:53 GMT</pubDate>
      <guid>https://experienceleaguecommunities.adobe.com/t5/adobe-experience-manager/adding-self-signed-certificate-into-aem-6-4-trustore/m-p/282753#M16651</guid>
      <dc:creator>smacdonald2008</dc:creator>
      <dc:date>2018-06-14T15:55:53Z</dc:date>
    </item>
    <item>
      <title>Re: Adding self signed certificate into AEM 6.4 trustore</title>
      <link>https://experienceleaguecommunities.adobe.com/t5/adobe-experience-manager/adding-self-signed-certificate-into-aem-6-4-trustore/m-p/282754#M16652</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It would be good to know if the trustStore management is the section used to manage self signed third party certificates, and if there are any additional steps required after adding the certificate to the trustStore.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Based on my tests it appears just adding the certificate dosen't do the trick.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Jun 2018 12:28:29 GMT</pubDate>
      <guid>https://experienceleaguecommunities.adobe.com/t5/adobe-experience-manager/adding-self-signed-certificate-into-aem-6-4-trustore/m-p/282754#M16652</guid>
      <dc:creator>rajneeshg</dc:creator>
      <dc:date>2018-06-15T12:28:29Z</dc:date>
    </item>
    <item>
      <title>Re: Adding self signed certificate into AEM 6.4 trustore</title>
      <link>https://experienceleaguecommunities.adobe.com/t5/adobe-experience-manager/adding-self-signed-certificate-into-aem-6-4-trustore/m-p/282755#M16653</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I got the same issue long time back, we solved it by adding the certs to JDK cacerts using keytool. try this and see if that helps or not.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Below are some keytool commands to import certs&lt;/P&gt;&lt;P&gt;cd &amp;lt;JDK_CACERTS_PATH&amp;gt;&amp;nbsp;&amp;nbsp; -- generally cacerts will be here C:\Program Files\Java\jdk1.8.0_92\jre\lib\security&lt;/P&gt;&lt;P&gt;keytool -import -trustcacerts -alias XXX_ROOT -file &amp;lt;CERTS_PATH&amp;gt;/XXX_Root_CA.crt -keystore cacerts -storepass changeit&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Chandra &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 19 Jun 2018 14:01:53 GMT</pubDate>
      <guid>https://experienceleaguecommunities.adobe.com/t5/adobe-experience-manager/adding-self-signed-certificate-into-aem-6-4-trustore/m-p/282755#M16653</guid>
      <dc:creator>nchandra</dc:creator>
      <dc:date>2018-06-19T14:01:53Z</dc:date>
    </item>
    <item>
      <title>Re: Adding self signed certificate into AEM 6.4 trustore</title>
      <link>https://experienceleaguecommunities.adobe.com/t5/adobe-experience-manager/adding-self-signed-certificate-into-aem-6-4-trustore/m-p/282756#M16654</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks, did get it working eventually by adding the certificate to JVM keystore, however I believe there should be a easier way to get this done via the AEM console and moreover the documentation for 6.4 looks outdated.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 19 Jun 2018 14:25:22 GMT</pubDate>
      <guid>https://experienceleaguecommunities.adobe.com/t5/adobe-experience-manager/adding-self-signed-certificate-into-aem-6-4-trustore/m-p/282756#M16654</guid>
      <dc:creator>rajneeshg</dc:creator>
      <dc:date>2018-06-19T14:25:22Z</dc:date>
    </item>
    <item>
      <title>Re: Adding self signed certificate into AEM 6.4 trustore</title>
      <link>https://experienceleaguecommunities.adobe.com/t5/adobe-experience-manager/adding-self-signed-certificate-into-aem-6-4-trustore/m-p/282757#M16655</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;We will be logging a doc bug based on this community thread! &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 19 Jun 2018 14:44:12 GMT</pubDate>
      <guid>https://experienceleaguecommunities.adobe.com/t5/adobe-experience-manager/adding-self-signed-certificate-into-aem-6-4-trustore/m-p/282757#M16655</guid>
      <dc:creator>smacdonald2008</dc:creator>
      <dc:date>2018-06-19T14:44:12Z</dc:date>
    </item>
    <item>
      <title>Re: Adding self signed certificate into AEM 6.4 trustore</title>
      <link>https://experienceleaguecommunities.adobe.com/t5/adobe-experience-manager/adding-self-signed-certificate-into-aem-6-4-trustore/m-p/358369#M25506</link>
      <description>&lt;P&gt;&lt;LI-USER uid="49491"&gt;&lt;/LI-USER&gt;&amp;nbsp;looks like the doc is still not updated and equivalent doc doenst exist for 6.5&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;LI-USER uid="12211690"&gt;&lt;/LI-USER&gt;&amp;nbsp;can you guide me here.. i am trying to read the truststore with&amp;nbsp;&lt;SPAN&gt;KeyStore &lt;/SPAN&gt;&lt;SPAN&gt;trustStore&lt;/SPAN&gt;&lt;SPAN&gt; = &lt;/SPAN&gt;&lt;I&gt;&lt;SPAN&gt;keyStoreService&lt;/SPAN&gt;&lt;/I&gt;&lt;SPAN&gt;.getTrustStore(&lt;/SPAN&gt;&lt;SPAN&gt;resourceResolver&lt;/SPAN&gt;&lt;SPAN&gt;); but this is returning null..&amp;nbsp;resourceResolver.getUserID is giving me the system user and has admin privileges. Not sure what i am missing here..&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;i am on 6.5.2&lt;/P&gt;</description>
      <pubDate>Wed, 08 Apr 2020 19:57:14 GMT</pubDate>
      <guid>https://experienceleaguecommunities.adobe.com/t5/adobe-experience-manager/adding-self-signed-certificate-into-aem-6-4-trustore/m-p/358369#M25506</guid>
      <dc:creator>harishred</dc:creator>
      <dc:date>2020-04-08T19:57:14Z</dc:date>
    </item>
    <item>
      <title>Actually i was able to figure out the null issue.. now i...</title>
      <link>https://experienceleaguecommunities.adobe.com/t5/adobe-experience-manager/adding-self-signed-certificate-into-aem-6-4-trustore/m-p/358391#M25509</link>
      <description>&lt;P&gt;Actually i was able to figure out the null issue.. now i am getting this error:&amp;nbsp;&lt;SPAN&gt;javax.net.ssl.SSLHandshakeException: Received fatal alert: certificate_required&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;I installed my ca and client cert&amp;nbsp;&lt;A title="http://localhost:4502/libs/granite/security/content/truststore.html" href="http://localhost:4502/libs/granite/security/content/truststore.html" target="_blank" rel="nofollow noopener noreferrer"&gt;http://localhost:4502/libs/granite/security/content/truststore.html&lt;/A&gt;&amp;nbsp;and also added them to my jvm keystore&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;in my code i added:&lt;/P&gt;&lt;PRE&gt;String certificatesTrustStorePath = "/Library/Java/JavaVirtualMachines/jdk-11.0.6.jdk/Contents/Home/lib/security/cacerts";			
System.setProperty("javax.net.ssl.trustStore", certificatesTrustStorePath);
System.setProperty("javax.net.ssl.trustStorePassword", "changeit");&lt;BR /&gt;&lt;BR /&gt;CloseableHttpResponse response = httpClient.execute(httpPost); --&amp;gt; ERROR&lt;BR /&gt;&lt;BR /&gt;&lt;/PRE&gt;&lt;P&gt;Still i keep getting this error as&amp;nbsp;&lt;SPAN&gt;certificate_required... Hope the documentation was clear&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;LI-USER uid="49491"&gt;&lt;/LI-USER&gt;&amp;nbsp;&lt;LI-USER uid="7924296"&gt;&lt;/LI-USER&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 09 Apr 2020 03:28:33 GMT</pubDate>
      <guid>https://experienceleaguecommunities.adobe.com/t5/adobe-experience-manager/adding-self-signed-certificate-into-aem-6-4-trustore/m-p/358391#M25509</guid>
      <dc:creator>harishred</dc:creator>
      <dc:date>2020-04-09T03:28:33Z</dc:date>
    </item>
    <item>
      <title>Re: Adding self signed certificate into AEM 6.4 trustore</title>
      <link>https://experienceleaguecommunities.adobe.com/t5/adobe-experience-manager/adding-self-signed-certificate-into-aem-6-4-trustore/m-p/439627#M31524</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;LI-USER uid="49491"&gt;&lt;/LI-USER&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any upadtes on this issue ? Seems it's still the case for AEM 6.5.9. I was not able to find any updated docs on that issue&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Cheers!&lt;/P&gt;</description>
      <pubDate>Fri, 04 Feb 2022 14:03:08 GMT</pubDate>
      <guid>https://experienceleaguecommunities.adobe.com/t5/adobe-experience-manager/adding-self-signed-certificate-into-aem-6-4-trustore/m-p/439627#M31524</guid>
      <dc:creator>bartek_887</dc:creator>
      <dc:date>2022-02-04T14:03:08Z</dc:date>
    </item>
    <item>
      <title>Re: Adding self signed certificate into AEM 6.4 trustore</title>
      <link>https://experienceleaguecommunities.adobe.com/t5/adobe-experience-manager/adding-self-signed-certificate-into-aem-6-4-trustore/m-p/447426#M32672</link>
      <description>&lt;P&gt;I encountered a similar problem, the same error occurred, it helped me (oddly enough) duplicating the certificate in the user's root folder -&lt;SPAN&gt;&amp;nbsp;from where the command was launched&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;/home/{user}/&lt;/P&gt;</description>
      <pubDate>Thu, 07 Apr 2022 13:23:42 GMT</pubDate>
      <guid>https://experienceleaguecommunities.adobe.com/t5/adobe-experience-manager/adding-self-signed-certificate-into-aem-6-4-trustore/m-p/447426#M32672</guid>
      <dc:creator>cmptq</dc:creator>
      <dc:date>2022-04-07T13:23:42Z</dc:date>
    </item>
  </channel>
</rss>

