OpenManage Enterprise:CyberArk 连接错误
摘要: OpenManage Enterprise 无法连接到 CyberArk Central 凭据提供程序 (CCP)。
本文适用于
本文不适用于
本文并非针对某种特定的产品。
本文并非包含所有产品版本。
症状
将 OpenManage Enterprise (OME) 配置为使用 CyberArk 集成时,测试连接返回以下错误消息。
应用程序日志显示以下证书路径错误。
[WARN ] 2024-09-19 21:11:46.053 [ajp-nio-0:0:0:0:0:0:0:1-8009-exec-12] CertificateHelper - validateCertChain - Unknown revocation status [WARN ] 2024-09-19 21:11:46.261 [ajp-nio-0:0:0:0:0:0:0:1-8009-exec-12] CertificateHelper - validateServerAndClientEku: Client & Server authentication EKU present in leaf certificate. [ERROR] 2024-09-19 21:13:46.232 [ajp-nio-0:0:0:0:0:0:0:1-8009-exec-8] CyberarkManagerImpl - verifyConnectionToCyberark: exception occurred while verifying the connection to cyberark. Message: I/O error on GET request for "https://pvwa.sumers.local:443/AIMWebservice/api/Accounts": PKIX path building failed: sun.security.provider.certpath.SunCertPathBuilderException: unable to find valid certification path to requested target; nested exception is javax.net.ssl.SSLHandshakeException: PKIX path building failed: sun.security.provider.certpath.SunCertPathBuilderException: unable to find valid certification path to requested target
原因
出现此问题的原因是,在为 HTTPS 连接创建 SSL 上下文时,来自上传到 OpenManage Enterprise for CyberArk 的证书的 CA 证书未加载到信任存储中。
解决方案
此问题已在即将发布的 OpenManage Enterprise 4.3 版本中得到解决。
受影响的产品
Dell OpenManage Enterprise, Dell EMC OpenManage Enterprise文章属性
文章编号: 000231597
文章类型: Solution
上次修改时间: 21 5月 2026
版本: 5
从其他戴尔用户那里查找问题的答案
支持服务
检查您的设备是否在支持服务涵盖的范围内。