<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Tomcat - Caused by: java.lang.IllegalArgumentException: jsse.alias_no_key_entry in Installing and Upgrading</title>
    <link>https://community.qlik.com/t5/Installing-and-Upgrading/Tomcat-Caused-by-java-lang-IllegalArgumentException-jsse-alias/m-p/2404832#M10688</link>
    <description>&lt;P&gt;Dear Talend-Support-Team,&lt;/P&gt;&lt;P&gt;I've installed a new Talend 7.3.1. Everthung was fine - TAC, TDS, TDP, Kibana....&lt;/P&gt;&lt;P&gt;Then I would switch the TAC from http to https at port 8443.&lt;/P&gt;&lt;P&gt;The server.xml for this is attached.&lt;/P&gt;&lt;P&gt;When I start TAC, this error happens in the catalina.YY-MM-DD.log, which is attached too:&lt;/P&gt;&lt;P&gt;01-Feb-2021 11:19:49.010 SEVERE [main] org.apache.catalina.util.LifecycleBase.handleSubClassException Failed to initialize component [Connector[HTTP/1.1-8493]]&lt;/P&gt;&lt;P&gt;org.apache.catalina.LifecycleException: Protocol handler initialization failed&lt;/P&gt;&lt;P&gt;at org.apache.catalina.connector.Connector.initInternal(Connector.java:983)&lt;/P&gt;&lt;P&gt;at org.apache.catalina.util.LifecycleBase.init(LifecycleBase.java:136)&lt;/P&gt;&lt;P&gt;at org.apache.catalina.core.StandardService.initInternal(StandardService.java:533)&lt;/P&gt;&lt;P&gt;at org.apache.catalina.util.LifecycleBase.init(LifecycleBase.java:136)&lt;/P&gt;&lt;P&gt;at org.apache.catalina.core.StandardServer.initInternal(StandardServer.java:1057)&lt;/P&gt;&lt;P&gt;at org.apache.catalina.util.LifecycleBase.init(LifecycleBase.java:136)&lt;/P&gt;&lt;P&gt;at org.apache.catalina.startup.Catalina.load(Catalina.java:584)&lt;/P&gt;&lt;P&gt;at org.apache.catalina.startup.Catalina.load(Catalina.java:607)&lt;/P&gt;&lt;P&gt;at java.base/jdk.internal.reflect.NativeMethodAccessorImpl.invoke0(Native Method)&lt;/P&gt;&lt;P&gt;at java.base/jdk.internal.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:62)&lt;/P&gt;&lt;P&gt;at java.base/jdk.internal.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:43)&lt;/P&gt;&lt;P&gt;at java.base/java.lang.reflect.Method.invoke(Method.java:566)&lt;/P&gt;&lt;P&gt;at org.apache.catalina.startup.Bootstrap.load(Bootstrap.java:303)&lt;/P&gt;&lt;P&gt;at org.apache.catalina.startup.Bootstrap.main(Bootstrap.java:473)&lt;/P&gt;&lt;P&gt;Caused by: java.lang.IllegalArgumentException: jsse.alias_no_key_entry&lt;/P&gt;&lt;P&gt;at org.apache.tomcat.util.net.AbstractJsseEndpoint.createSSLContext(AbstractJsseEndpoint.java:99)&lt;/P&gt;&lt;P&gt;at org.apache.tomcat.util.net.AbstractJsseEndpoint.initialiseSsl(AbstractJsseEndpoint.java:71)&lt;/P&gt;&lt;P&gt;at org.apache.tomcat.util.net.NioEndpoint.bind(NioEndpoint.java:217)&lt;/P&gt;&lt;P&gt;at org.apache.tomcat.util.net.AbstractEndpoint.bindWithCleanup(AbstractEndpoint.java:1141)&lt;/P&gt;&lt;P&gt;at org.apache.tomcat.util.net.AbstractEndpoint.init(AbstractEndpoint.java:1154)&lt;/P&gt;&lt;P&gt;at org.apache.coyote.AbstractProtocol.init(AbstractProtocol.java:575)&lt;/P&gt;&lt;P&gt;at org.apache.coyote.http11.AbstractHttp11Protocol.init(AbstractHttp11Protocol.java:74)&lt;/P&gt;&lt;P&gt;at org.apache.catalina.connector.Connector.initInternal(Connector.java:980)&lt;/P&gt;&lt;P&gt;... 13 more&lt;/P&gt;&lt;P&gt;Caused by: java.io.IOException: jsse.alias_no_key_entry&lt;/P&gt;&lt;P&gt;at org.apache.tomcat.util.net.SSLUtilBase.getKeyManagers(SSLUtilBase.java:341)&lt;/P&gt;&lt;P&gt;at org.apache.tomcat.util.net.SSLUtilBase.createSSLContext(SSLUtilBase.java:247)&lt;/P&gt;&lt;P&gt;at org.apache.tomcat.util.net.AbstractJsseEndpoint.createSSLContext(AbstractJsseEndpoint.java:97)&lt;/P&gt;&lt;P&gt;... 20 more&lt;/P&gt;&lt;P&gt;I've checked the signed certificates, cacerts-keystore from Java and any more.&lt;/P&gt;&lt;P&gt;Please, can you tell me the problem?&lt;/P&gt;&lt;P&gt;Thx.&lt;/P&gt;&lt;P&gt;Please rename the&lt;/P&gt;&lt;P&gt;catalina.2021-02-01.log.xml to catalina.2021-02-01.log, because I can't upload .log-files, for whatever reason.&lt;/P&gt;&lt;P&gt;Best regards...Karl-Josef&lt;/P&gt;</description>
    <pubDate>Sat, 16 Nov 2024 00:43:06 GMT</pubDate>
    <dc:creator>Karl-Josef_Blaser</dc:creator>
    <dc:date>2024-11-16T00:43:06Z</dc:date>
    <item>
      <title>Tomcat - Caused by: java.lang.IllegalArgumentException: jsse.alias_no_key_entry</title>
      <link>https://community.qlik.com/t5/Installing-and-Upgrading/Tomcat-Caused-by-java-lang-IllegalArgumentException-jsse-alias/m-p/2404832#M10688</link>
      <description>&lt;P&gt;Dear Talend-Support-Team,&lt;/P&gt;&lt;P&gt;I've installed a new Talend 7.3.1. Everthung was fine - TAC, TDS, TDP, Kibana....&lt;/P&gt;&lt;P&gt;Then I would switch the TAC from http to https at port 8443.&lt;/P&gt;&lt;P&gt;The server.xml for this is attached.&lt;/P&gt;&lt;P&gt;When I start TAC, this error happens in the catalina.YY-MM-DD.log, which is attached too:&lt;/P&gt;&lt;P&gt;01-Feb-2021 11:19:49.010 SEVERE [main] org.apache.catalina.util.LifecycleBase.handleSubClassException Failed to initialize component [Connector[HTTP/1.1-8493]]&lt;/P&gt;&lt;P&gt;org.apache.catalina.LifecycleException: Protocol handler initialization failed&lt;/P&gt;&lt;P&gt;at org.apache.catalina.connector.Connector.initInternal(Connector.java:983)&lt;/P&gt;&lt;P&gt;at org.apache.catalina.util.LifecycleBase.init(LifecycleBase.java:136)&lt;/P&gt;&lt;P&gt;at org.apache.catalina.core.StandardService.initInternal(StandardService.java:533)&lt;/P&gt;&lt;P&gt;at org.apache.catalina.util.LifecycleBase.init(LifecycleBase.java:136)&lt;/P&gt;&lt;P&gt;at org.apache.catalina.core.StandardServer.initInternal(StandardServer.java:1057)&lt;/P&gt;&lt;P&gt;at org.apache.catalina.util.LifecycleBase.init(LifecycleBase.java:136)&lt;/P&gt;&lt;P&gt;at org.apache.catalina.startup.Catalina.load(Catalina.java:584)&lt;/P&gt;&lt;P&gt;at org.apache.catalina.startup.Catalina.load(Catalina.java:607)&lt;/P&gt;&lt;P&gt;at java.base/jdk.internal.reflect.NativeMethodAccessorImpl.invoke0(Native Method)&lt;/P&gt;&lt;P&gt;at java.base/jdk.internal.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:62)&lt;/P&gt;&lt;P&gt;at java.base/jdk.internal.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:43)&lt;/P&gt;&lt;P&gt;at java.base/java.lang.reflect.Method.invoke(Method.java:566)&lt;/P&gt;&lt;P&gt;at org.apache.catalina.startup.Bootstrap.load(Bootstrap.java:303)&lt;/P&gt;&lt;P&gt;at org.apache.catalina.startup.Bootstrap.main(Bootstrap.java:473)&lt;/P&gt;&lt;P&gt;Caused by: java.lang.IllegalArgumentException: jsse.alias_no_key_entry&lt;/P&gt;&lt;P&gt;at org.apache.tomcat.util.net.AbstractJsseEndpoint.createSSLContext(AbstractJsseEndpoint.java:99)&lt;/P&gt;&lt;P&gt;at org.apache.tomcat.util.net.AbstractJsseEndpoint.initialiseSsl(AbstractJsseEndpoint.java:71)&lt;/P&gt;&lt;P&gt;at org.apache.tomcat.util.net.NioEndpoint.bind(NioEndpoint.java:217)&lt;/P&gt;&lt;P&gt;at org.apache.tomcat.util.net.AbstractEndpoint.bindWithCleanup(AbstractEndpoint.java:1141)&lt;/P&gt;&lt;P&gt;at org.apache.tomcat.util.net.AbstractEndpoint.init(AbstractEndpoint.java:1154)&lt;/P&gt;&lt;P&gt;at org.apache.coyote.AbstractProtocol.init(AbstractProtocol.java:575)&lt;/P&gt;&lt;P&gt;at org.apache.coyote.http11.AbstractHttp11Protocol.init(AbstractHttp11Protocol.java:74)&lt;/P&gt;&lt;P&gt;at org.apache.catalina.connector.Connector.initInternal(Connector.java:980)&lt;/P&gt;&lt;P&gt;... 13 more&lt;/P&gt;&lt;P&gt;Caused by: java.io.IOException: jsse.alias_no_key_entry&lt;/P&gt;&lt;P&gt;at org.apache.tomcat.util.net.SSLUtilBase.getKeyManagers(SSLUtilBase.java:341)&lt;/P&gt;&lt;P&gt;at org.apache.tomcat.util.net.SSLUtilBase.createSSLContext(SSLUtilBase.java:247)&lt;/P&gt;&lt;P&gt;at org.apache.tomcat.util.net.AbstractJsseEndpoint.createSSLContext(AbstractJsseEndpoint.java:97)&lt;/P&gt;&lt;P&gt;... 20 more&lt;/P&gt;&lt;P&gt;I've checked the signed certificates, cacerts-keystore from Java and any more.&lt;/P&gt;&lt;P&gt;Please, can you tell me the problem?&lt;/P&gt;&lt;P&gt;Thx.&lt;/P&gt;&lt;P&gt;Please rename the&lt;/P&gt;&lt;P&gt;catalina.2021-02-01.log.xml to catalina.2021-02-01.log, because I can't upload .log-files, for whatever reason.&lt;/P&gt;&lt;P&gt;Best regards...Karl-Josef&lt;/P&gt;</description>
      <pubDate>Sat, 16 Nov 2024 00:43:06 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Installing-and-Upgrading/Tomcat-Caused-by-java-lang-IllegalArgumentException-jsse-alias/m-p/2404832#M10688</guid>
      <dc:creator>Karl-Josef_Blaser</dc:creator>
      <dc:date>2024-11-16T00:43:06Z</dc:date>
    </item>
    <item>
      <title>Re: Tomcat - Caused by: java.lang.IllegalArgumentException: jsse.alias_no_key_entry</title>
      <link>https://community.qlik.com/t5/Installing-and-Upgrading/Tomcat-Caused-by-java-lang-IllegalArgumentException-jsse-alias/m-p/2404833#M10689</link>
      <description>&lt;P&gt;Hello @Karl-Josef Blaser​,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;1) Please refer to the below KB article for How to configure Talend Services to use SSL;&lt;/P&gt;&lt;P&gt;&lt;A href="https://community.talend.com/s/article/How-to-configure-Talend-Services-to-use-SSL-UM3Wt" alt="https://community.talend.com/s/article/How-to-configure-Talend-Services-to-use-SSL-UM3Wt" target="_blank"&gt;https://community.talend.com/s/article/How-to-configure-Talend-Services-to-use-SSL-UM3Wt&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;2) The Keystore password is changed but the password for the private key of the certificate is not changed to reflect the password that is changed for the Keystore. The Keystore password and the private key password have to be the same and cannot be different.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;3) Check the certificate alias in the Keystore.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;keytool -list -v -keystore &amp;lt;keystore_name&amp;gt; -storepass &amp;lt;current_keystore_password&amp;gt;&lt;/P&gt;&lt;P&gt;[ Example ] :&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Alias name: guccisupport&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;4) Change the password for the key store.&lt;/P&gt;&lt;P&gt;keytool -v -storepasswd -new &amp;lt;new_keystore_password&amp;gt; -keystore &amp;lt;keystore_name&amp;gt; -storepass &amp;lt;current(old)_keystore_password&amp;gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;5) Check the alias from step 1 and use the same alias here to change the password of the private key of the certificate. Use the same new password that is used for the Keystore for the private key as well.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;keytool -v -keypasswd -alias &amp;lt;alias_from_step1&amp;gt; -new &amp;lt;new_keypassword_same_as_new_keystore_password&amp;gt; -keystore &amp;lt;keystore_name&amp;gt; -storepass &amp;lt;new_keystore_password_changed_in_step2&amp;gt; -keypass &amp;lt;old_keystore_password_used_in_storepass_attribute_in_step2&amp;gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Note: keytool utility exists in &amp;lt;INFA_HOME&amp;gt;\java\bin and &amp;lt;INFA_HOME&amp;gt;\java\jre\bin&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Pls get back to Community, if necessary.&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Vaishnavi&lt;/P&gt;</description>
      <pubDate>Mon, 01 Feb 2021 17:13:03 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Installing-and-Upgrading/Tomcat-Caused-by-java-lang-IllegalArgumentException-jsse-alias/m-p/2404833#M10689</guid>
      <dc:creator>prg</dc:creator>
      <dc:date>2021-02-01T17:13:03Z</dc:date>
    </item>
    <item>
      <title>Re: Tomcat - Caused by: java.lang.IllegalArgumentException: jsse.alias_no_key_entry</title>
      <link>https://community.qlik.com/t5/Installing-and-Upgrading/Tomcat-Caused-by-java-lang-IllegalArgumentException-jsse-alias/m-p/2404834#M10690</link>
      <description>&lt;P&gt;Hi Vaishnavi,&lt;/P&gt;&lt;P&gt;many thanks for your response.&lt;/P&gt;&lt;P&gt;I've this connector:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;lt;Connector port="8443" protocol="org.apache.coyote.http11.Http11NioProtocol"&lt;/P&gt;&lt;P&gt;			&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;maxThreads="150"&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;SSLEnabled="true"&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;scheme="https"&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;secure="true"&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;clientAuth="false"&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;sslProtocol="TLS"&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;sslEnabledProtocols="TLSv1.2,TLSv1.3"&lt;/P&gt;&lt;P&gt;			&lt;/P&gt;&lt;P&gt;	keystoreFile="C:\Talend\7.3.1\tac\apache-tomcat\conf\server-name.jks"&amp;nbsp;keystorePass="PASSWORT"&lt;/P&gt;&lt;P&gt;	truststoreFile="C:\Talend\7.3.1\tac\apache-tomcat\conf\talend-truststore.jks" truststorePass="PASSWORT"&lt;/P&gt;&lt;P&gt;	/&amp;gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The problem was the keystore. For signed certifikates, the certifcate key and the certifikate must be exported in PKCS12 format.&lt;/P&gt;&lt;P&gt;At command prompt:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;openssl pkcs12 -export -in C:\Talend\7.3.1\tac\apache-tomcat\conf\server-name.crt -inkey d:\Talend\Zertifikate\server-name.key -out d:\Talend\Zertifikate\server-name.pkcs12 -name tac -passout pass:PASSWORT&lt;/P&gt;&lt;P&gt;The password, that was used for signing the certificate must be entered.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The pkcs12 (server-name.pkcs12) key must be imported to the keystore file:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;keytool -importkeystore -deststorepass PASSWORT -destkeystore C:\Talend\7.3.1\tac\apache-tomcat\conf\server-name.jks -deststoretype jks -srckeystore D:\Talend\Zertifikate\server-name.pkcs12 -srcstoretype PKCS12 -alias tac&lt;/P&gt;&lt;P&gt;The password that was previously used in the export must then be entered.&lt;/P&gt;&lt;P&gt;Yes, this is where your point 2 meets.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;At the truststore the server-name.crt (signed certificate) and the certificates for the certification chain, if the server has no internet access, must be imported.&lt;/P&gt;&lt;P&gt;The connector could be startet successfully with these keystores.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Best regards...Karl-Josef&lt;/P&gt;</description>
      <pubDate>Thu, 04 Feb 2021 08:20:31 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Installing-and-Upgrading/Tomcat-Caused-by-java-lang-IllegalArgumentException-jsse-alias/m-p/2404834#M10690</guid>
      <dc:creator>Karl-Josef_Blaser</dc:creator>
      <dc:date>2021-02-04T08:20:31Z</dc:date>
    </item>
  </channel>
</rss>

