SSL Configuration Options for Root, Intermediate, and Full Cert Chain #390
-
Hello, I am wondering how to appropriately deploy a enterprise primary single machine base deployment with the full valid ssl chain. I'm trying to import the root cert, the intermediate cert, and the valid .pfx cert (including the full cert chain). I don't see options to import them all, and without all three present I am experiencing some issues with the internal communication between the Server and Portal components. Ive included links to the two help articles I referenced leading me to manually importing the three certs and selecting the full chain when importing the signed pfx (this solved my issue). I see the attributes for the signed cert as well as the root cert, but I don't see one for the intermediate cert. I am also wondering if the keystore_file, keystore_password use the option that is present in the webui of "Import Certificate Chain" Server Attributes:
Portal Attributes:
Help Articles: https://support.esri.com/en-us/knowledge-base/error-failed-to-federate-data-store-item-000023475 |
Beta Was this translation helpful? Give feedback.
Replies: 2 comments 3 replies
-
Hi @J-J-E, This is a limitation of the current cookbooks, but a valid feature request. At this time the cookbooks can only import the root cert, and signed cert (pfx). Thanks, |
Beta Was this translation helpful? Give feedback.
-
For anyone else who comes across this issue, here is the ENH for tracking this enhancement: ENH-000168761 |
Beta Was this translation helpful? Give feedback.
Hi @J-J-E,
This is a limitation of the current cookbooks, but a valid feature request. At this time the cookbooks can only import the root cert, and signed cert (pfx).
Thanks,
Cameron K.