Saviynt unveils its cutting-edge Intelligence Suite products to revolutionize Identity Security!
Click HERE to see how Saviynt Intelligence is transforming the industry.
Saviynt Copilot Icon

Getting Certificate error while trying to connect to AD

Ajith
New Contributor III
New Contributor III

Error: 
PKIX path building failed: sun.security.provider.certpath.SunCertPathBuilderException: unable to find valid certification path to requested target]

Action:
Create a AD connection -> Specified the server IP (not DNS name), username and password -> selected the Domain Controller certificate for AD

Certificate Details:
Leaf Cert: cn=servername
Issuing Cert: Issuing CA 1
Root Cert: Root CA 1 (root CA is from our own CA, not a trusted third party CA)

question:
I have already uploaded the leaf cert, intermediate cert and the root cert in Saviynt certificate management portal. But still getting certificate error. Do we need to raise a freshdesk ticket and share the intermediate and root certificate to the support team, so that they configure the trust for our root CA ?

Thanks,
Ajith

5 REPLIES 5

dgandhi
All-Star
All-Star

Did you perform restart after importing the certificate?

 

Thanks,
Devang Gandhi
If this reply answered your question, please Accept As Solution and give Kudos to help others who may have a similar problem.

Ajith
New Contributor III
New Contributor III

We are using Saviynt SaaS. Server restart cannot be performed by us.

rushikeshvartak
All-Star
All-Star

Certificate works on DNS name , Please add DNS name in connection. If you dont have DNS resolver , add into host file as you are on 5.5 version and restart server 


Regards,
Rushikesh Vartak
If this helped you move forward, click 'Kudos'. If it solved your query, select 'Accept As Solution'.

Saviynt is hosted on Saviynt cloud (managed solution). We can't make entries into the host file or perform any server restart.

Thanks,
Ajith

Rishi
Saviynt Employee
Saviynt Employee

Follow this process with Saviynt support to configure DNS forwarding. Once completed use hostname matching cert domain name in the connection
https://docs.saviyntcloud.com/bundle/Saviynt-Connect-20-Resources/page/Content/Setting-Up-DNS-Resolu...