Hey Confluence-Support!
First, here you go with a few details about my config:
- - Windows Server 2016 Build 1607 (VM) / 2 Core Xeon / 8GB RAM
- - atlassian-confluence-6.13.0-x64.exe has been installed
- - server has been configured as a Windows service
- - internal dns (AD) has been configured in case of hostname/IP
- - external dns has been configured
- - internal firewall/ports have been configured
The default setup was running perfectly until migrating to https.
After carefully following this guide
https://confluence.atlassian.com/conf64/running-confluence-over-ssl-or-https-936511699.html
Both pages are no more available (http://host.localdomain.loc:8090, https://host.mydomain.com:8443). Means i´m no more able to login...
In fact, ports 8090 and 8443 are reachable, i can do a "telnet host.localdomain.loc 8090" from internal network and a "telnet host.mydomain.com 8443" from the outside world.
Also, tomcat9.exe service is running with at least 1,7GB memory consumption.
Each and every command during ssl migration was successful without any error:
- generate .keystore (Keypair)
- create request
- wait to receive official cert from our provider
- export private key from .keystore
- remove recently added cert from .keystore
- export to pkcs12 format
- import from pkcs12 to JKS
The only related log entries i can find in the atlassian-confluence.log:
Caused by: java.net.SocketTimeoutException: Read timed out
at java.net.SocketInputStream.socketRead0(Native Method)
at java.net.SocketInputStream.socketRead(Unknown Source)
at java.net.SocketInputStream.read(Unknown Source)
at java.net.SocketInputStream.read(Unknown Source)
at sun.security.ssl.InputRecord.readFully(Unknown Source)
at sun.security.ssl.InputRecord.read(Unknown Source)
at sun.security.ssl.SSLSocketImpl.readRecord(Unknown Source)
at sun.security.ssl.SSLSocketImpl.performInitialHandshake(Unknown Source)
at sun.security.ssl.SSLSocketImpl.startHandshake(Unknown Source)
at sun.security.ssl.SSLSocketImpl.startHandshake(Unknown Source)
at org.apache.http.conn.ssl.SSLConnectionSocketFactory.createLayeredSocket(SSLConnectionSocketFactory.java:396)
at org.apache.http.conn.ssl.SSLConnectionSocketFactory.connectSocket(SSLConnectionSocketFactory.java:355)
at org.apache.http.impl.conn.DefaultHttpClientConnectionOperator.connect(DefaultHttpClientConnectionOperator.java:142)
...but unfortunately i can´t find something really helpful in the Internet.
I´ve also tried to find a solution by following this guide:
https://confluence.atlassian.com/kb/unable-to-connect-to-ssl-services-due-to-pkix-path-building-failed-779355358.html
Hopefully you guys can help me!
Thanks a lot in advance!
Best Regards
Thorsten