On a Windows 2016 i try to create a suitable keystore for SSL access to confluence. I obtained a valid certificated (RapidSSL certificate) and have the private key.
Importing the certificate to the keystore and try to start confluence throws "
"java.io.IOException: Alias name [null] does not identify a key entry"
in the catalina.out. server.xml is configured as described in https://confluence.atlassian.com/conf63/running-confluence-over-ssl-or-https-929729905.html
Any ideas? What do i wrong?
Thanks,
David
Hi @David Thielheim,
Try adding this into your server.xml - where name is the alias given when adding the cert into the keystore.
keyAlias=name
Please also share your configuration so we can better help.
Hi Edvin,
thank you for your response and sorry for the delay. Got it working so far - i had to import the cert in pkcs12 format on the windows box to get the private key also imported.
Currently i din't add an Alias to the server.xml because i don't see any alias in my official certificate? Is this the fqdn of my site / cn in the certificate? In addition it all seems to work very unstrable with the official certificate (long response times accessing the confluence sites, timeout copying a simple confluence site). This all all is working smoothly, when i use my previous selfsigned certificate or doing it without ssl.
Here a snipit of my server.xml:
<Connector port="443" connectionTimeout="20000" maxHttpHeaderSize="8192" maxThreads="150" minSpareThreads="25" protocol="org.apache.coyote.http11.Http11NioProtocol" enableLookups="false" disableUploadTimeout="true" acceptCount="10" scheme="https" secure="true" clientAuth="false" sslProtocols="TLSv1,TLSv1.1,TLSv1.2" sslEnabledProtocols="TLSv1,TLSv1.1,TLSv1.2" SSLEnabled="true" URIEncoding="UTF-8" keystorePass="MyPassword" />
Currently i get only this one warning in the catalina.out log which does not to be specific?!
20-Aug-2018 08:38:34.010 WARNUNG [https-jsse-nio-443-exec-19] com.sun.jersey.spi.container.servlet.WebComponent.filterFormParameters A servlet request, to the URI https://wiki.myDomain.de/rest/table-filter/1.0/service/license?_=1534747113123, contains form parameters in the request body but the request body has been consumed by the servlet or a servlet filter accessing the request parameters. Only resource methods using @FormParam will work as expected. Resource methods consuming the request body by other means will not work as expected.
Any ideas?
No ideas? Any missing information i shoult provide?
The alias is the one given when importing the cert in the JVM running Confluence
How to import an existing SSL certificate for use in Tomcat
Is this how you imported the pkcs12 cert on the Windows box?
Also - the log message is a warning. Please check if there is other SSL related errors or grep for ERROR in the log.
It looks like you're new here. Sign in or register to get started.