How to recover from incorrectly uploading a DER encoded public SSL certificate to the SecurID Access Administration Console
Originally Published: 2017-01-19
Last Modified: 2023-09-22
Article Number
Applies To
Issue
TBD: are there problems if IDR is not restarted? Do you have to reboot or restart services?
Cause
2017-01-13/20:48:32.921/UTC [ServiceMonitor] WARN com.symplified.service.shared.manager.ServiceMonitor[178] - Failed to start keystoreService since Fri Jan 13 20:43:30 UTC 2017 (302 seconds), retrying..., cause: com.symplified.service.shared.StateChangeException: Unable to start service: keystoreService [at com.symplified.service.shared.AbstractStatefulService.start(AbstractStatefulService.java:72)], Caused by com.symplified.service.shared.StateChangeException: Unable to load configuration for service: keystoreService [at com.symplified.service.shared.AbstractStatefulService.refresh(AbstractStatefulService.java:228)], Caused by java.security.cert.CertificateException: java.io.IOException: Invalid BER/DER data (too huge?) [at sun.security.provider.X509Factory.engineGenerateCertificates(X509Factory.java:337)], Caused by java.io.IOException: Invalid BER/DER data (too huge?) [at sun.security.provider.X509Factory.readBERInternal(X509Factory.java:690)]
Resolution
Case reported redeploying IDR. Is that really necessary? See if reboot makes any difference.
Related Articles
Appliance backup script fails with error 'encryption failed: public key not found' 26Number of Views Unable to access public folders through OWA when protected by RSA Authentication Agent 7.1.3 for Web for IIS using Google … 35Number of Views RSA Governance & Lifecycle Recipes: Rule Telemetry - Summary 11Number of Views How to Recompile Invalid Objects in RSA Identity Governance & Lifecycle 340Number of Views RSA FIM error: The public key present in the message did not match the public key present in the trusted keystore. 27Number of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device Manual synchronization introduced in RSA Authentication Manager 8.2 Service Pack 1 patch 6 Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory How to verify NTP server synchronization is not working in RSA Authentication Manager 8.x RSA Governance & Lifecycle 8.0.0 Installation Guide
Don't see what you're looking for?