On 15.1.2019 22.39, Endi Sukma Dewata wrote:
----- Original Message -----
>> Are you getting this error:
>>
>> java.lang.IllegalArgumentException: Alias name [sslserver] does not
>> identify a key
>> entry
>>
>> or this error?
>>
>> java.lang.IllegalArgumentException: Multiple SSLHostConfig elements were
>> provided
>> for the host name [_default_]. Host names must be unique.
>>
>> If it's the first one, that means the PKCS #11 keystore (i.e. JSS keystore)
>> cannot
>> find the SSL server certificate. We may not have a solution since we do not
>> support
>> Java 11 yet.
>
> But I've patched Dogtag to support the new keystore, and am using JSS
> 4.5.1, I thought they did support Java 11.. so something is missing
> still then..
IIUC JSS was updated so it can build with Java 11, but I don't think it
has been thoroughly tested yet. The only user of JSS keystore (that I'm aware
of) is Dogtag and Dogtag is still using Java 8 on Fedora.
Right, here's hoping it's something simple and will be fixed soonish ;)
--
t