cancel
Showing results for 
Search instead for 
Did you mean: 

Ceritificate rejected by chainverifier - issue with SSL config (Ciphers)

0 Kudos

Dear Expert,

Starting this week, few interfaces weren't working in my production environment. The target group to which these interfaces communicate says, they removed from weak ciphers from their configuration last week. I guess this could be the issue, as certificate used is still valid.

Please advise on how to check what ciphers I have on my PI system. Can this only be done on PI server using Putty or so?. Possible to check somewhere in NWA?.

Thank you in advance.

Error:

Error occurred while connecting the FTP server "xxx.yyy:21": iaik.security.ssl.SSLCertificateException: Peer certificate rejected by Chainverifier

Regards,

Kumaran

Accepted Solutions (0)

Answers (2)

Answers (2)

praveen_sutra
Active Contributor
0 Kudos

Hi Guna,

Which PI version are you working ??

as per my understanding it might be because of the removing weak ciphers.

In that case you can also strengthen your cipher suites.

PFB the links that can be useful to answer your query.

Hardening SSL/TLS Configuration by Usage of Sec... | SCN

hope this helps,

thanks and regards,

Praveen T

ravi_reddy1
Participant
0 Kudos

Hi Kumaran,

i think  certificates are expired.. please ask the basis team for your confirmation

Regards

Ravi

0 Kudos

Hi Ravi,

Thanks for your reply. I got it checked, certificate is valid.

Regards,

Kumaran