How to recover from incorrectly uploading a DER encoded public SSL certificate to the SecurID Access Administration Console
Originally Published: 2017-01-19
Article Number
Applies To
Issue
TBD: are there problems if IDR is not restarted? Do you have to reboot or restart services?
Cause
2017-01-13/20:48:32.921/UTC [ServiceMonitor] WARN com.symplified.service.shared.manager.ServiceMonitor[178] - Failed to start keystoreService since Fri Jan 13 20:43:30 UTC 2017 (302 seconds), retrying..., cause: com.symplified.service.shared.StateChangeException: Unable to start service: keystoreService [at com.symplified.service.shared.AbstractStatefulService.start(AbstractStatefulService.java:72)], Caused by com.symplified.service.shared.StateChangeException: Unable to load configuration for service: keystoreService [at com.symplified.service.shared.AbstractStatefulService.refresh(AbstractStatefulService.java:228)], Caused by java.security.cert.CertificateException: java.io.IOException: Invalid BER/DER data (too huge?) [at sun.security.provider.X509Factory.engineGenerateCertificates(X509Factory.java:337)], Caused by java.io.IOException: Invalid BER/DER data (too huge?) [at sun.security.provider.X509Factory.readBERInternal(X509Factory.java:690)]
Resolution
Case reported redeploying IDR. Is that really necessary? See if reboot makes any difference.
Related Articles
Invalid filename message when uploading an attachment to a Request Form in RSA Identity Governance & Lifecycle 25Number of Views An Invalid Content Type error occurs when uploading images in RSA Identity Governance & Lifecycle 48Number of Views Password incorrect error when importing a PKCS#12 generated by RSA Certificate Manager on Microsoft Internet Explorer 108Number of Views Invalid content type error when uploading attachments to change requests in RSA Identity Governance & Lifecycle 146Number of Views FIM Weblogic throws exception with new SSL cert - java.io.IOException: Cannot convert identity certificate 60Number of Views
Trending Articles
RSA Authentication Manager 8.9 Setup and Configuration Guide How to 'Trust' the RSA Authentication Manager Security Console Self-Signed Root CA certificate and prevent Cert warnings. RSA Authentication Manager 8.9 Release Notes (January 2026) Configure RSA Authentication Manager as a Secure Proxy Server for Cloud Access Service RSA Authentication Manager Upgrade Process
Don't see what you're looking for?