IBM webMethods Hybrid Integration

IBM webMethods Hybrid Integration

Join this online group to communicate across IBM product users and experts by sharing advice and best practices with peers and staying up to date regarding product enhancements.


#TechXchangePresenter
 View Only
Expand all | Collapse all

Sending NULL for trusted CA list during SSL Handshake

  • 1.  Sending NULL for trusted CA list during SSL Handshake

    Posted Mon April 28, 2008 05:33 PM

    Is it possible to configure IS to send a NULL for trussted CA list during an SSL Handshake. In this scenario IS will be the server. We are running into a situation where Microsoft security API is throwing an error because we have too many CA certs in trusted root.


    #Integration-Server-and-ESB
    #webMethods


  • 2.  RE: Sending NULL for trusted CA list during SSL Handshake

    Posted Wed September 03, 2008 08:06 PM

    This is an issue with Microsoft’s implementation that is not fixed afaik. The work around is to examine your trustroots and attempt to consolidate. It is best practice to use only a few CA certificates, not trust individual server certificates. Also check for expired CA certs and duplicates. There is a package on advantage which can help look at this (WmCertCheck).


    #Integration-Server-and-ESB
    #webMethods