IBM Support

Enabling SSL certificate verification

Troubleshooting


Problem

Anyone can access the IBM Lifecycle Integration Adapter for Aras Innovator. The adapter accepts all SSL certificates by default.

Cause

Not verifying SSL certificate validity could enable untrusted websites to enter data into the adapter.

Resolving The Problem

If you're using WebSphere Application Server Liberty, add the certificates property to the jvm.options file.
If you're using the TOMCAT server, add it to the catalina.prop file.

Set the value of the following property to true or false.

com.ibm.lia4ai.accept_ssl_certs = <'true' or 'false'>

You can set this property to decide whether you want the adapter to accept all the certificates or not.


If you set the property to true, the adapter accepts any certificate without checking the certificate's validity.
If you set it to false, the adapter checks for valid certificates.

[{"Product":{"code":"SSUN5A","label":"IBM Lifecycle Integration Adapter for Aras Innovator"},"Business Unit":{"code":"BU059","label":"IBM Software w\/o TPS"},"Component":"General Information","Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"1.0","Edition":"","Line of Business":{"code":"LOB59","label":"Sustainability Software"}}]

Document Information

Modified date:
17 June 2018

UID

swg22005397