[prev in list] [next in list] [prev in thread] [next in thread] 

List:       racf-l
Subject:    USS keytool import error: No certificate data found
From:       Peter Ulmer <00001283d9be3a75-dmarc-request () LISTSERV ! UGA ! EDU>
Date:       2022-07-06 10:58:45
Message-ID: 5193404737917418.WA.peter.ulmeraxa.ch () listserv ! uga ! edu
[Download RAW message or body]

Hi All,

In the third step (keytool -importcert) I get the following error message:
keytool error (likely untranslated): java.security.cert.CertificateException: No certificate data found


The following procedure has been performed:

1. CSR creation
keytool -genkeypair \                                                  
        -alias apache2021 -keyalg RSA -keysize 4096 -noprompt \        
        -dname "cn=s91.axa-ch.intraxa,ou=SRA-RACF,o=AXA-TECH-CH,c=CH" \
        -ext san=dns:s91.ch.winterthur.com,dns:x90.ch.winterthur.com,\ 
dns:s91.axa-ch.intraxa,dns:x90.axa-ch.intraxa \                        
        -keypass xyz002 -storepass xyz001 \                      
        -keystore /u/UserID/.keystore                                 
keytool -list -alias apache2021 -keypass xyz002 -v \                
        -storepass xyz001 \                                         
        -keystore /u/UserID/.keystore                                 
keytool -certreq -alias apache2021 -keyalg RSA -file apache.ascii \    
        -file /u/UserID/apache.ascii \                                
        -ext san=dns:s91.ch.winterthur.com,dns:x90.ch.winterthur.com,\ 
dns:s91.axa-ch.intraxa,dns:x90.axa-ch.intraxa \                        
        -noprompt -keypass xyz002 -storepass xyz001 \            
        -keystore /u/UserID/.keystore                                 
iconv -f iso8859-1 -t ibm-1047 /u/UserID/apache.ascii \               
        > /u/UserID/apache.ebcdic                                     
/* tr -d '\r' < /u/UserID/apache.ebcdic > apache.csr                  

2. Signed at Internal PKI

3. Import
keytool -importcert -alias apache2021          -noprompt \
        -trustcacerts                                    \
        -file /u/UserID/apache.cer                       \
        -storepass xyz001                                \
        -keypass xyz002                                  \
        -keystore /u/UserID/.keystore                     


Thanks in advance for your help,
Peter Ulmer
[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic