EducationSoftwareStrategy.com
StrategyCommunity

Knowledge Base

Product

Community

Knowledge Base

TopicsBrowse ArticlesDeveloper Zone

Product

Download SoftwareProduct DocumentationSecurity Hub

Education

Tutorial VideosSolution GalleryEducation courses

Community

GuidelinesGrandmastersEvents
x_social-icon_white.svglinkedin_social-icon_white.svg
Strategy logoCommunity

© Strategy Inc. All Rights Reserved.

LegalTerms of UsePrivacy Policy
  1. Home
  2. Topics

KB487045: "PKIX path building failed: sun.security.provider.certpath.SunCertPathBuilderException: unable to find valid certification path to requested target" error appearing when logging in to MicroStrategy Library ONE June 2024 and September 2024.


Katarzyna Olszewska

Senior Cloud Support Engineer III • MicroStrategy


This knowledge base article describes recommended steps when encountering "PKIX path building failed: sun.security.provider.certpath.SunCertPathBuilderException: unable to find valid certification path to requested target" error while logging in to MicroStrategyLibrary application.

Symptom

When users try to log in to Library application, they face following error: "PKIX path building failed: sun.security.provider.certpath.SunCertPathBuilderException: unable to find valid certification path to requested target".

ka0PW0000003r4bYAA_0EMPW00000DkwBB.jpeg

Intelligence Server is connected properly in the Strategy Library Admin page.
 

Cause

By default, REST API port 34962 is necessary for connectivity between Library server and Intelligence Server machine – in this case we face an issue due to a protocol mismatch. The reason for that is because Intelligence Server has TLS enabled, but Library application does not use it. At the same time, REST API port expects for the communication to happen over a secure channel since it is set on the I-Server side, which results in an error. 
 

Solution

There are two ways to overcome this issue: 
•    If TLS is not needed, disable TLS on I-Server, in the server definition (Tomcat server restart is necessary as well after applying the change on the Intelligence Server side).
•    If TLS is required- configure Library to use TLS when communicating with I-Server. 
 


Comment

0 comments

Details

Knowledge Article

Published:

November 27, 2024

Last Updated:

November 27, 2024