Steps to create a self signed certificate

Steps to generate self signed certificate on Linux:

#openssl genrsa -des3 -out <key filename.key> 4096
#openssl req -new -key <key filename generated above> -out <csr file filename.csr>
#openssl x509 -req -days 3650 -in <csr file filename.csr> -signkey <key filename.key> -out <cert filename.crt>

the -des3 encrypt PEM output with ede cbc des using 168 bit key

more info:


TSL error when calling a WebService over ssl/https

In one of my projects recently, even after importing the correct ssl certificates in the keystore (cacerts and DemoTrust.jks) on the weblogic server, when accessing the webservice over https gave an error. [Security:090497]HANDSHAKE_FAILURE alert received from - Check both sides of the SSL configuration for mismatches in supported ciphers, supported protocol versions, trusted CAs, and hostname verification settings.

