I ran below command to add SSL certificate to the loadbalancer :
enhance loadbalancer_m with sslCertificate local file "c:\\temp\\lbcertificate.zip".
I am able to see SSL certificate entry in the config file (loadbalancer.cfg) after running the command.
Thereafter, I am facing this issues that ping to 443 failed and loadbalancer is in failed stage:
[run] C:\SoftwareAG\ARIS10.0\server\bin\agentLocalRepo\.unpacked\20180514.171251_httpd-run-prod-10.0.4-windows64-runnable.zip\exec.xml:429: No successful ping to loadbalancer port 443 within 30sec.
INFO | jvm 1 | 2018/06/08 17:18:04 | 2018-06-08 17:18:04,729|INFO |qtp1112520866-12356355| com.aris.prov.agent.lifecycle.ant.AntAdapter - UNsuccessfully executed Ant with target run in working directory C:\SoftwareAG\ARIS10.0\server\bin\.\work\work_loadbalancer_m for target run, exit code 1
INFO | jvm 1 | 2018/06/08 17:18:04 | 2018-06-08 17:18:04,730|INFO |qtp1112520866-12356355| com.aris.prov.agent.RUNNABLE.HISTORY - loadbalancer_m - State change: STARTING -> FAILED.
Without adding certificate, it was working perfectly. Also, when i reconfigured the port to 0, the loadbalancer is up and running :
reconfigure loadbalancer_m +HTTPD.ssl.port=0
Please let me know steps/commands to delete this certificate from the server to make it work again.
Thanks,
Pankaj
Dear Pankaj,
These forums are not meant for resolving specific technical issues, because for that we offer a dedicated support service on Empower which several ways to get in contact with out support staff. I suggest you open a support ticket there: https://empower.softwareag.com/ContactSupport/default.asp
Cheers
Rune
Dear Rune,
Thanks for the response.
I had already raised a incident ticket with empower SAG to resolve this issue. I got the reply that either the port is in use with other application or restart ARIS server. I restarted the server but that couldn't fix the issue. Also, there is no other application with port 443 on my server.
My inquiry is to know steps/commands to delete the SSL certificate which I created and imported into the loadbalancer using command : enhance loadbalancer_m with sslCertificate local file "c:\\temp\\lbcertificate.zip"
I am very sure that the issue will be resolved then.
I had gone through ARIS documents too but nothing is mentioned about deleting or removing SSL certificate from the server.
Thanks & Regards,
Pankaj
But that response seems to me as if you were asking how to enable SSL, and not how to disable it. And the latter is what I understood from your question in this forum.
That brings us back to the question of what do you want to achieve? Enabling SSL/HTTPS or to turn it off?
I think removing certificates is not documented as that's rather an usual use case. But I think the support engineer could tell you where the both files (.key + .crt) are stored inside the ARIS installation and how they were configured by the enhance command. A manual rollback should then be feasible. To my knowledge those files are stored in folder C:\SoftwareAG\ARIS10.0\server\bin\work\work_loadbalancer_s\httpd\conf. That is set in runnable.properties, located in C:\SoftwareAG\ARIS10.0\server\bin\work\work_loadbalancer_s by this key:
HTTPD.ssl.key.dir=C\:/SoftwareAG/ARIS10.0/server/bin/work/work_loadbalancer_s/httpd/conf
Cheers
Rune
Thanks Rune,
I restored the original "server.crt" and "server.key" in the folder InstDir>\server\bin\work\work_loadbalancer_<s,m,l>\httpd\conf and then restarted the loadbalancer after configuring HTTPD.port as 443.
It is working now though I am still looking for CA trusted SSL certificate. :)
Regards,
Pankaj