Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Problem when using CRL validation on an Application domain #11

Open
TakahiroIchi opened this issue Jan 7, 2019 · 0 comments
Open

Problem when using CRL validation on an Application domain #11

TakahiroIchi opened this issue Jan 7, 2019 · 0 comments

Comments

@TakahiroIchi
Copy link

Hi guys,

I want to configure CRL validation on an Application domain in IBM DataPower Gateway.
I'm using IBM DataPower Gateway Version 7.5.1.2

I followed this tutorial: CRLs in DataPower

I have configured the CRL Retrieval object in the default domain and the getting CRL has succeeded.
I found the following message in the default log.

[default log message] 0x806000a0 Successfully fetched valid CRL from HTTP source 'QTSP01_CRL_Retrieval

I configured Crypto Validation on an Application domain as Require CRL parameter is enabled.
But, the API request with client certificate could not access to an Application domain.
I found the following error message in the default log.

[default log error message] 0x81200026 SSL handshake certificate validation error with validation credentials QTSP01_CrytoValidation_CustomAppFW: unable to get certificate CRL

Since CRL Retrieval doesn't specify Crypto Validation on an Application domain, I configured Crypto Validation on each domain.

ws000016

[Crypto Valication on default domain]
image

[Crypto Valication on an application domain]
image

Cloud you tell me how to configure CRL validation on an Application domain.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant