Announcing the Saviynt Knowledge Exchange unifying the Saviynt forums, documentation, training,
and more in a single search tool across platforms. Read the announcement here.

Getting Certificate error while trying to connect to AD

Ajith
New Contributor III
New Contributor III

Error: 
PKIX path building failed: sun.security.provider.certpath.SunCertPathBuilderException: unable to find valid certification path to requested target]

Action:
Create a AD connection -> Specified the server IP (not DNS name), username and password -> selected the Domain Controller certificate for AD

Certificate Details:
Leaf Cert: cn=servername
Issuing Cert: Issuing CA 1
Root Cert: Root CA 1 (root CA is from our own CA, not a trusted third party CA)

question:
I have already uploaded the leaf cert, intermediate cert and the root cert in Saviynt certificate management portal. But still getting certificate error. Do we need to raise a freshdesk ticket and share the intermediate and root certificate to the support team, so that they configure the trust for our root CA ?

Thanks,
Ajith

5 REPLIES 5

dgandhi
All-Star
All-Star

Did you perform restart after importing the certificate?

 

Thanks,
Devang Gandhi
If this reply answered your question, please Accept As Solution and give Kudos to help others who may have a similar problem.

Ajith
New Contributor III
New Contributor III

We are using Saviynt SaaS. Server restart cannot be performed by us.

rushikeshvartak
All-Star
All-Star

Certificate works on DNS name , Please add DNS name in connection. If you dont have DNS resolver , add into host file as you are on 5.5 version and restart server 


Regards,
Rushikesh Vartak
If you find the response useful, kindly consider selecting Accept As Solution and clicking on the kudos button.

Saviynt is hosted on Saviynt cloud (managed solution). We can't make entries into the host file or perform any server restart.

Thanks,
Ajith

Rishi
Saviynt Employee
Saviynt Employee

Follow this process with Saviynt support to configure DNS forwarding. Once completed use hostname matching cert domain name in the connection
https://docs.saviyntcloud.com/bundle/Saviynt-Connect-20-Resources/page/Content/Setting-Up-DNS-Resolu...