<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Add a custom certificate to the cluster node TrustStore in Open Q&amp;A</title>
    <link>https://community.dynatrace.com/t5/Open-Q-A/Add-a-custom-certificate-to-the-cluster-node-TrustStore/m-p/232116#M30112</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.dynatrace.com/t5/user/viewprofilepage/user-id/4525"&gt;@RazTN7&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;I did not see this message &lt;span class="lia-unicode-emoji" title=":thinking_face:"&gt;🤔&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Kind Regards,&lt;/P&gt;&lt;P&gt;Abner&lt;/P&gt;</description>
    <pubDate>Mon, 18 Dec 2023 02:31:06 GMT</pubDate>
    <dc:creator>abnerlusung</dc:creator>
    <dc:date>2023-12-18T02:31:06Z</dc:date>
    <item>
      <title>Add a custom certificate to the cluster node TrustStore</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Add-a-custom-certificate-to-the-cluster-node-TrustStore/m-p/231988#M30093</link>
      <description>&lt;P&gt;Hi ,&lt;/P&gt;&lt;P&gt;I created a self signed certificate using&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;openssl req -new -newkey rsa:2048 -days 365 -nodes -x509 -keyout abc.pem -out abc.pem&lt;/LI-CODE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I followed this command from&amp;nbsp;&lt;A href="https://docs.dynatrace.com/docs/managed-cluster/configuration/how-to-add-a-certificate-to-server-trust-store" target="_blank"&gt;https://docs.dynatrace.com/docs/managed-cluster/configuration/how-to-add-a-certificate-to-server-trust-store&lt;/A&gt;&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;nohup &amp;lt;PRODUCT_PATH&amp;gt;/installer/reconfigure.sh --update-cert --network-proxy-cert-file &amp;lt;cert_file&amp;gt;.cer &amp;amp;&lt;/LI-CODE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;And I have encountered this issue.&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;2023-12-15 06:58:01 UTC SEVERE  [&amp;lt;server,0x3&amp;gt;] [&amp;lt;platform&amp;gt;, LoggingThrowableHandler] VirtualMachineError in thread "main@main": java.security.NoSuchAlgorithmException: Error constructing implementation (algorithm: Default, provider: SunJSSE, class: sun.security.ssl.SSLContextImpl$DefaultSSLContext); taskInfo= ... Terminating Runtime with exit code=2
java.lang.InternalError: java.security.NoSuchAlgorithmException: Error constructing implementation (algorithm: Default, provider: SunJSSE, class: sun.security.ssl.SSLContextImpl$DefaultSSLContext)
	at java.net.http/jdk.internal.net.http.HttpClientImpl.&amp;lt;init&amp;gt;(Unknown Source)
	at java.net.http/jdk.internal.net.http.HttpClientImpl.create(Unknown Source)
	at java.net.http/jdk.internal.net.http.HttpClientBuilderImpl.build(Unknown Source)
	at java.net.http/java.net.http.HttpClient.newHttpClient(Unknown Source)
	at com.dynatrace.sso.shared.api.idp.IdpUriSupplier.&amp;lt;init&amp;gt;(IdpUriSupplier.java:91)
	at com.dynatrace.sso.shared.api.idp.IdpUriSupplier.newInstance(IdpUriSupplier.java:135)
	at com.compuware.apm.server.core.api.ServerLifecycle.&amp;lt;init&amp;gt;(ServerLifecycle.java:878)
	at com.compuware.apm.server.onprem.OnPremServerLifecycle.&amp;lt;init&amp;gt;(OnPremServerLifecycle.java:712)
	at com.compuware.apm.server.onprem.OnPremServerStartup.lambda$main$0(OnPremServerStartup.java:29)
	at com.compuware.apm.server.core.ServerStartup.commonMain(ServerStartup.java:34)
	at com.compuware.apm.server.onprem.OnPremServerStartup.main(OnPremServerStartup.java:22)
Caused by: java.security.NoSuchAlgorithmException: Error constructing implementation (algorithm: Default, provider: SunJSSE, class: sun.security.ssl.SSLContextImpl$DefaultSSLContext)
	at java.base/java.security.Provider$Service.newInstance(Unknown Source)
	at java.base/sun.security.jca.GetInstance.getInstance(Unknown Source)
	at java.base/sun.security.jca.GetInstance.getInstance(Unknown Source)
	at java.base/javax.net.ssl.SSLContext.getInstance(Unknown Source)
	at java.base/javax.net.ssl.SSLContext.getDefault(Unknown Source)
	... 11 more
Caused by: java.security.KeyStoreException: problem accessing trust store
	at java.base/sun.security.ssl.TrustManagerFactoryImpl.engineInit(Unknown Source)
	at java.base/javax.net.ssl.TrustManagerFactory.init(Unknown Source)
	at java.base/sun.security.ssl.SSLContextImpl$DefaultManagersHolder.getTrustManagers(Unknown Source)
	at java.base/sun.security.ssl.SSLContextImpl$DefaultManagersHolder.&amp;lt;clinit&amp;gt;(Unknown Source)
	at java.base/sun.security.ssl.SSLContextImpl$DefaultSSLContext.&amp;lt;init&amp;gt;(Unknown Source)
	at java.base/jdk.internal.reflect.NativeConstructorAccessorImpl.newInstance0(Native Method)
	at java.base/jdk.internal.reflect.NativeConstructorAccessorImpl.newInstance(Unknown Source)
	at java.base/jdk.internal.reflect.DelegatingConstructorAccessorImpl.newInstance(Unknown Source)
	at java.base/java.lang.reflect.Constructor.newInstance(Unknown Source)
	at java.base/java.security.Provider.newInstanceUtil(Unknown Source)
	... 16 more
Caused by: java.io.IOException: DerInputStream.getLength(): lengthTag=109, too big.
	at java.base/sun.security.util.DerInputStream.getLength(Unknown Source)
	at java.base/sun.security.util.DerValue.init(Unknown Source)
	at java.base/sun.security.util.DerValue.&amp;lt;init&amp;gt;(Unknown Source)
	at java.base/sun.security.util.DerValue.&amp;lt;init&amp;gt;(Unknown Source)
	at java.base/sun.security.pkcs12.PKCS12KeyStore.engineLoad(Unknown Source)
	at java.base/sun.security.util.KeyStoreDelegator.engineLoad(Unknown Source)
	at java.base/java.security.KeyStore.load(Unknown Source)
	at java.base/sun.security.ssl.TrustStoreManager$TrustAnchorManager.loadKeyStore(Unknown Source)
	at java.base/sun.security.ssl.TrustStoreManager$TrustAnchorManager.getTrustedCerts(Unknown Source)
	at java.base/sun.security.ssl.TrustStoreManager.getTrustedCerts(Unknown Source)
	... 26 more&lt;/LI-CODE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any ideas what I did wrong? Your help is very much appreciated &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Best Regards,&lt;/P&gt;&lt;P&gt;Abner&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 15 Dec 2023 08:10:29 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Add-a-custom-certificate-to-the-cluster-node-TrustStore/m-p/231988#M30093</guid>
      <dc:creator>abnerlusung</dc:creator>
      <dc:date>2023-12-15T08:10:29Z</dc:date>
    </item>
    <item>
      <title>Re: Add a custom certificate to the cluster node TrustStore</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Add-a-custom-certificate-to-the-cluster-node-TrustStore/m-p/232000#M30094</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.dynatrace.com/t5/user/viewprofilepage/user-id/58264"&gt;@abnerlusung&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;1. Get the&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;.pem&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;version of the certificate assigned to Proxy.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;2. Run the&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;reconfigure.sh&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;command and it should complete without any errors:&lt;/SPAN&gt;&lt;/P&gt;&lt;DIV class=""&gt;&lt;P&gt;nohup &amp;lt;PRODUCT_PATH&amp;gt;/installer/reconfigure.sh --update-cert --network-proxy-cert-file &amp;lt;cert_file&amp;gt;.pem &amp;amp;&lt;/P&gt;&lt;/DIV&gt;&lt;P&gt;&lt;SPAN&gt;3. Restart all the services (If needed)&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Cheers!&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;RN&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 15 Dec 2023 09:21:24 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Add-a-custom-certificate-to-the-cluster-node-TrustStore/m-p/232000#M30094</guid>
      <dc:creator>RazTN7</dc:creator>
      <dc:date>2023-12-15T09:21:24Z</dc:date>
    </item>
    <item>
      <title>Re: Add a custom certificate to the cluster node TrustStore</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Add-a-custom-certificate-to-the-cluster-node-TrustStore/m-p/232009#M30095</link>
      <description>&lt;P&gt;This is exactly what I did.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 15 Dec 2023 10:29:24 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Add-a-custom-certificate-to-the-cluster-node-TrustStore/m-p/232009#M30095</guid>
      <dc:creator>abnerlusung</dc:creator>
      <dc:date>2023-12-15T10:29:24Z</dc:date>
    </item>
    <item>
      <title>Re: Add a custom certificate to the cluster node TrustStore</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Add-a-custom-certificate-to-the-cluster-node-TrustStore/m-p/232011#M30096</link>
      <description>&lt;P&gt;Did you receive similar message post execute reconfigure.sh&lt;/P&gt;&lt;P&gt;Error -&amp;nbsp;&lt;SPAN&gt;'utf-8' codec can't decode byte 0x82 in position 1: invalid start byte&lt;/SPAN&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 15 Dec 2023 10:37:11 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Add-a-custom-certificate-to-the-cluster-node-TrustStore/m-p/232011#M30096</guid>
      <dc:creator>RazTN7</dc:creator>
      <dc:date>2023-12-15T10:37:11Z</dc:date>
    </item>
    <item>
      <title>Re: Add a custom certificate to the cluster node TrustStore</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Add-a-custom-certificate-to-the-cluster-node-TrustStore/m-p/232116#M30112</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.dynatrace.com/t5/user/viewprofilepage/user-id/4525"&gt;@RazTN7&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;I did not see this message &lt;span class="lia-unicode-emoji" title=":thinking_face:"&gt;🤔&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Kind Regards,&lt;/P&gt;&lt;P&gt;Abner&lt;/P&gt;</description>
      <pubDate>Mon, 18 Dec 2023 02:31:06 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Add-a-custom-certificate-to-the-cluster-node-TrustStore/m-p/232116#M30112</guid>
      <dc:creator>abnerlusung</dc:creator>
      <dc:date>2023-12-18T02:31:06Z</dc:date>
    </item>
    <item>
      <title>Re: Add a custom certificate to the cluster node TrustStore</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Add-a-custom-certificate-to-the-cluster-node-TrustStore/m-p/232129#M30117</link>
      <description>&lt;P&gt;Most likely you need to strip the PEM file to contain just the certifikacte (no private key, no other information, just everything between BEGIN CERTIFICATE and END CERTIFICATE, including those two lines).&lt;/P&gt;</description>
      <pubDate>Mon, 18 Dec 2023 07:18:43 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Add-a-custom-certificate-to-the-cluster-node-TrustStore/m-p/232129#M30117</guid>
      <dc:creator>Julius_Loman</dc:creator>
      <dc:date>2023-12-18T07:18:43Z</dc:date>
    </item>
  </channel>
</rss>

