<html><body><div style="font-family: arial,helvetica,sans-serif; font-size: 12pt; color: #000000"><div><span style="font-size: 12pt; font-family: Helvetica, Arial, sans-serif;"></span></div><div style="color:#000;font-weight:normal;font-style:normal;text-decoration:none;font-family:Helvetica,Arial,sans-serif;font-size:12pt;"><div dir="ltr"><div class="gmail_extra"><div class="gmail_quote"><div><span style="font-size: 12pt;">> When you upgraded did you lose your cacerts file or is it corrupted?</span></div><div><br></div><div>I think not, since simply rolling back the java package and restarting tomcat6 fixed it.</div><div><br></div><div><div style="font-family: Helvetica, Arial, sans-serif;" data-mce-style="font-family: Helvetica, Arial, sans-serif;"><span style="font-size: 12pt;" data-mce-style="font-size: 12pt;">My target LDAP server is RHEL6's openldap presenting an "old" InCommon cert (SHA1 expiring early 2017). I will try pointing it at a "new" (SHA256) cert this afternoon.</span></div></div></div></div></div></div></div></body></html>