When importing a PFX or PEM file into the SBM Configurator, the error No Keypair entries found in the file is displayed. This means that the PFX or PEM does not have a public key, private key and complete chain of all certificate authorities responsible for signing the certificate .
There are several ways to implement SSL in Business Mashups. The Installation Guide describes the basic steps that are necessary to establish SSL for IIS and JBoss, as well as additional steps you can follow if your server certificate is not signed by a well-known authority. The example provided in the guide for creating a self-signed certificate shows how to create a CA and certificate using openSSL.
Nearly all DA process steps are executed on the agent, in the context of that agent machine. If the process step will connect with another resource that requires SSL for communication, then the Agent must have the necessary certificates . For example, if the Send Mail process step is used and the mail server requires SSL for communication then the agent will need the appropriate certificates.
When setting up the LDAP import in SBM Application Administrator to use SSL, it is necessary to point to a certificate file that contains the complete certificate chain. Here is how to set it up. Start with the LDAP server certificate (a CER file).
Once the SSO certificates are generated on the SSO server, they should be imported to other SBM component servers. These component servers need to have all certificates for the SSO gatekeeper that is installed. Note that SSO gatekeeper will not appear as a component