0 Replies Latest reply: Dec 28, 2009 10:21 PM by 807573 RSS

    Need help with installing a certificate

    807573
      I purchased a certificate from GO Daddy for one of my servers that needs ssl. I added the root, and then the chain, and finally my Certificate that was signed, imported into java keystore and exported to be used in Sun Web Server using the Admin UI. I enable trust per Meena's blog http://blogs.sun.com/meena/entry/configuring_reverse_proxy_in_web. When I test my SSL certs using openssl s_client -showcerts, I get "No client certificate CA names sent" and "verify error:num=19:self signed certificate in certificate chain" message. This config/NSS DB was empty when I started the CA/Certificate import. Go Daddy support gave up and said they cannot help any more. What am I missing here? Thanks for your help in advance.

      bash-3.00$ ../../bin/certutil -L -d .

      Certificate Nickname Trust Attributes
      SSL,S/MIME,JAR/XPI

      Go Daddy Secure Certification Authority - The Go Daddy Group, Inc. CT,C,C
      Go Daddy Class 2 Certification Authority - ValiCert, Inc. CT,C,C
      ValiCert Class 2 VA CT,C,C
      mycert u,u,u