We are configuring IFS10 new demo setup in our environment, Can anyone help the below error using self assigned certificate without LB.
While connecting the apps the DDL says below
System.Net.WebException - The underlying connection was closed: Could not establish trust relationship for the SSL/TLS secure channel. - Source: System - Stack trace: at System.Net.HttpWebRequest.GetResponse() at System.Deployment.Application.SystemNetDownloader.DownloadSingleFile(DownloadQueueItem next) --- Inner Exception --- System.Security.Authentication.AuthenticationException - The remote certificate is invalid according to the validation procedure. - Source: System - Stack trace:
Best answer by Charith Epitawatta
Hi @aravindhan,
Have you added your self-signed certificate as a Trusted Root CA on your client machine? Since the error says “Could not establish trust relationship for the SSL/TLS secure channel”, this could be the case. To do that, you can go to the Application Server access point URL using Internet Explorer and follow the steps mentioned here:
After doing this, you may have to clear the browser caches before retrying.
If that does not work, then it has to be a problem with your self signed certificate as @Ragaventhan Sathananda has mentioned. In which case you can regenerate a new self signed certificate from the installer by giving correct values.
Could you please check whether the certificate you have added through the installer is valid? If it has expired or not? Please use a valid certificate and do a reconfiguration with it to resolve this issue.
Have you added your self-signed certificate as a Trusted Root CA on your client machine? Since the error says “Could not establish trust relationship for the SSL/TLS secure channel”, this could be the case. To do that, you can go to the Application Server access point URL using Internet Explorer and follow the steps mentioned here:
After doing this, you may have to clear the browser caches before retrying.
If that does not work, then it has to be a problem with your self signed certificate as @Ragaventhan Sathananda has mentioned. In which case you can regenerate a new self signed certificate from the installer by giving correct values.
We use 3 different kinds of cookies. You can choose which cookies you want to accept. We need basic cookies to make this site work, therefore these are the minimum you can select. Learn more about our cookies.