The information you are about to copy is INTERNAL!
DO NOT share it with anyone outside Check Point.
After MDM Domain certificate renewal, synchronization with Harmony Mobile Dashboard and Connector fails
|
Technical Level
|
Solution ID |
sk174847 |
Technical Level |
|
Product |
Harmony Mobile |
Version |
All |
Platform / Model |
Open Server |
Date Created |
02-Aug-2021
|
Last Modified |
08-Aug-2021
|
Symptoms
- After MDM certificate renewal, synchronization with Harmony Mobile Dashboard and Connector fails.
- In the $SBMCDIR/log/api_dispatcher.log file, a 'http 400' response is found, for example:
:""},{"path":"$.OrganizationGroups[*]['Name']","action":"none","type":""}]}, body='null'}
[DATE TIME] INFO ThreadPoolTaskScheduler-1 c.c.a.d.c.MDMClient:122 - MDM Proxy not configured
[DATE TIME] INFO ThreadPoolTaskScheduler-1 c.c.a.d.c.MDMClient:154 - Using default SSL certificate CA
[DATE TIME] INFO ThreadPoolTaskScheduler-1 c.c.a.d.c.MDMClient:116 - MDM Rest Template encoder is set to UTF-8
[DATE TIME] INFO ThreadPoolTaskScheduler-1 c.c.a.d.c.MDMClient:85 - Performing request to MDM. URL = https://xxx.xxx.xxx/API/v1/system/groups/search, method = GET.
[DATE TIME] WARN ThreadPoolTaskScheduler-1 c.c.a.d.c.MDMClient:94 - MDM request failed. Requested url was https://xxx.xxx.xxx/API/v1/system/groups/search and method was GET Check configuration. Error: I/O error on GET request for "https://xxx.xxx.xxx/API/v1/system/groups/search": com.ibm.jsse2.util.h: PKIX path building failed:
java.security.cert.CertPathBuilderException: PKIXCertPathBuilderImpl could not build a valid CertPath.; internal cause is:
java.security.cert.CertPathValidatorException: The certificate issued by CN=DigiCert Global Root G2, OU=www.digicert.com, O=DigiCert Inc, C=US is not trusted; internal cause is:
java.security.cert.CertPathValidatorException: Certificate chaining error; nested exception is javax.net.ssl.SSLHandshakeException: com.ibm.jsse2.util.h: PKIX path building failed: java.security.cert.CertPathBuilderException: PKIXCertPathBuilderImpl could not build a valid CertPath.; internal cause is:
java.security.cert.CertPathValidatorException: The certificate issued by CN=DigiCert Global Root G2, OU=www.digicert.com, O=DigiCert Inc, C=US is not trusted; internal cause is:
java.security.cert.CertPathValidatorException: Certificate chaining erro
Cause
The Harmony Mobile connector does not recognize the certificate Authority of the new MDM certificate.
Solution
|
Note: To view this solution you need to
Sign In
.
|