Sign Up

Sign Up to our social questions and Answers Engine to ask questions, answer people’s questions, and connect with other people.

Have an account? Sign In

Have an account? Sign In Now

Sign In

Login to our social questions & Answers Engine to ask questions answer people’s questions & connect with other people.

Sign Up Here

Forgot Password?

Don't have account, Sign Up Here

Forgot Password

Lost your password? Please enter your email address. You will receive a link and will create a new password via email.

Have an account? Sign In Now

You must login to ask a question.

Forgot Password?

Need An Account, Sign Up Here

Please briefly explain why you feel this question should be reported.

Please briefly explain why you feel this answer should be reported.

Please briefly explain why you feel this user should be reported.

Sign InSign Up

The Archive Base

The Archive Base Logo The Archive Base Logo

The Archive Base Navigation

  • SEARCH
  • Home
  • About Us
  • Blog
  • Contact Us
Search
Ask A Question

Mobile menu

Close
Ask a Question
  • Home
  • Add group
  • Groups page
  • Feed
  • User Profile
  • Communities
  • Questions
    • New Questions
    • Trending Questions
    • Must read Questions
    • Hot Questions
  • Polls
  • Tags
  • Badges
  • Buy Points
  • Users
  • Help
  • Buy Theme
  • SEARCH
Home/ Questions/Q 7514181
In Process

The Archive Base Latest Questions

Editorial Team
  • 0
Editorial Team
Asked: May 30, 20262026-05-30T00:25:15+00:00 2026-05-30T00:25:15+00:00

how to setup ssl certificate(self signed) in different machines for CAS server and client

  • 0

how to setup ssl certificate(self signed) in different machines for CAS server and client

  • CAS Server : Linux , Tomcat , jdk6
  • Client : windows ,Tomcat,jdk6
  • Certificate : self signed (keytool)
  • Environment : development

CAS and Clients are working fine with single machine , if using different machine it is throwing certificate error.

whether single self signed certificate is enought for both client and server machine ?

any specific client and server settings changes are required like server machine name and client machine name for certificate creation

  • 1 1 Answer
  • 0 Views
  • 0 Followers
  • 0
Share
  • Facebook
  • Report

Leave an answer
Cancel reply

You must login to add an answer.

Forgot Password?

Need An Account, Sign Up Here

1 Answer

  • Voted
  • Oldest
  • Recent
  • Random
  1. Editorial Team
    Editorial Team
    2026-05-30T00:25:17+00:00Added an answer on May 30, 2026 at 12:25 am

    Can you please add the exception you are getting and in which node?

    As a general advice, please note that:

    1) you have to install the certificate on the client JVM machine if you are using https communication on the server side between the cas client and the CAS server

    2) JVM will not accept (at runtime) self signed certificate with the ip in the CN (common name).

    See https://wiki.jasig.org/display/CASUM/SSL+Troubleshooting+and+Reference+Guide for more details


    So from the exception you posted it seems the folowing case (quoted from the CAS Troubleshooting link above):

    No subject alternative names present Sample Alt Name Stack Trace
    javax.net.ssl.SSLHandshakeException:
    java.security.cert.CertificateException: No subject alternative names
    present In most cases this is a hostname/SSL certificate CN mismatch.

    This commonly happens when a self-signed certificate issued to
    localhost is placed on a machine that is accessed by IP address. It
    should be noted that generating a certificate with an IP address for a
    common name, e.g. CN=192.168.1.1,OU=Middleware,dc=vt,dc=edu, will not
    work in most cases where the client making the connection is Java. For
    example the Java CAS client will throw SSL errors on connecting to a
    CAS server secured with a certificate containing an IP address in the
    CN.

    Have you resolved changing the certificate with a domain name instead of the ip and then reinstalling it in the system truststore for the CAS client and in the keystore for the CAS server?

    • 0
    • Reply
    • Share
      Share
      • Share on Facebook
      • Share on Twitter
      • Share on LinkedIn
      • Share on WhatsApp
      • Report

Sidebar

Related Questions

I've setup a self-signed certificate to test an ssl java connection - however, it
I got an issue from my client regarding the SSL setup for his website.
I've installed a self signed cert on my staging server. I'm using that to
My Tomcat needs to connect to another web server (at https://foreign.example.com ) using SSL
For testing purposes I have and SSL certificate set up on a dev site
I have an SSL certificate and have set up a rewrite rule in my
I am trying to configure an IIS website to require SSL client certificates. The
I'm trying to setup SSL and Apache on localhost. So far, I follow all
I am developping facebook apps therefore i need to setup ssl certificates and i
I am using plesk 9.5. When i try to set up a ssl certificate

Explore

  • Home
  • Add group
  • Groups page
  • Communities
  • Questions
    • New Questions
    • Trending Questions
    • Must read Questions
    • Hot Questions
  • Polls
  • Tags
  • Badges
  • Users
  • Help
  • SEARCH

Footer

© 2021 The Archive Base. All Rights Reserved
With Love by The Archive Base

Insert/edit link

Enter the destination URL

Or link to existing content

    No search term specified. Showing recent items. Search or use up and down arrow keys to select an item.