SSL Error: alert internal error
Cantor, Scott
cantor.2 at osu.edu
Mon Jul 29 15:24:56 EDT 2013
On 7/29/13 3:14 PM, "Christopher Peters" <cjpeters at uci.edu> wrote:
>I won't go too in detail about our metadata and configuration, as it
>didn't change (except the minor things listed in the upgrade page), but
>we use Apache with a connector to Tomcat for attribute queries, and our
>metadata is published through InCommon for all
> of these SPs. Also, no software other than the IDP changed. We didn't
>upgrade SSL, Apache, Tomcat or anything else.
Whether you think so or not, you did. You just had a time bomb waiting to
go off. That error has nothing whatsoever to do with the IdP software, it
physically can't. If you want to prove me wrong, you can roll back and see.
>Two further things I want to note: 1) we have two certificates in
>metadata but only one can be specified in Tomcat configuration at a time,
>so I am concerned that it fell back to the cert that is not configured.
That wouldn't cause a TLS error.
>2) some of the service providers continue to work just fine and retrieve
>attributes without issue. Is there a version of SP that I might look for
>in common with this issue?
Nothing specifically I'm aware of. The error is nothing I've ever seen.
-- Scott
More information about the users
mailing list