3 Replies Latest reply on Aug 25, 2017 12:52 PM by BUNTY RAY

    Admin Console Login & CLI Fails Post Enabling SSL on Admin Console

    BUNTY RAY Newbie

      This is the error I get when I invoke CLI

       

      $JBOSS_HOMEl/bin/jboss-cli.sh --connect controller=0.0.0.0:10093 --user=xxx--password=xxx@123

       

      2017-08-24 21:13:31,915 INFO  [stdout] (management I/O-2) Using SSLEngineImpl.

      2017-08-24 21:13:31,981 INFO  [stdout] (management I/O-2) Allow unsafe renegotiation: false

      2017-08-24 21:13:31,983 INFO  [stdout] (management I/O-2) Allow legacy hello messages: true

      2017-08-24 21:13:31,983 INFO  [stdout] (management I/O-2) Is initial handshake: true

      2017-08-24 21:13:31,983 INFO  [stdout] (management I/O-2) Is secure renegotiation: false

      2017-08-24 21:13:31,984 INFO  [stdout] (management I/O-2) Ignoring unsupported cipher suite: TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256 for TLSv1

      2017-08-24 21:13:31,984 INFO  [stdout] (management I/O-2) Ignoring unsupported cipher suite: TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256 for TLSv1

      2017-08-24 21:13:31,984 INFO  [stdout] (management I/O-2) Ignoring unsupported cipher suite: TLS_RSA_WITH_AES_128_CBC_SHA256 for TLSv1

      2017-08-24 21:13:31,985 INFO  [stdout] (management I/O-2) Ignoring unsupported cipher suite: TLS_ECDH_ECDSA_WITH_AES_128_CBC_SHA256 for TLSv1

      2017-08-24 21:13:31,985 INFO  [stdout] (management I/O-2) Ignoring unsupported cipher suite: TLS_ECDH_RSA_WITH_AES_128_CBC_SHA256 for TLSv1

      2017-08-24 21:13:31,985 INFO  [stdout] (management I/O-2) Ignoring unsupported cipher suite: TLS_DHE_RSA_WITH_AES_128_CBC_SHA256 for TLSv1

      2017-08-24 21:13:31,985 INFO  [stdout] (management I/O-2) Ignoring unsupported cipher suite: TLS_DHE_DSS_WITH_AES_128_CBC_SHA256 for TLSv1

      2017-08-24 21:13:31,987 INFO  [stdout] (management I/O-2) Ignoring unsupported cipher suite: TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256 for TLSv1.1

      2017-08-24 21:13:31,988 INFO  [stdout] (management I/O-2) Ignoring unsupported cipher suite: TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256 for TLSv1.1

      2017-08-24 21:13:31,988 INFO  [stdout] (management I/O-2) Ignoring unsupported cipher suite: TLS_RSA_WITH_AES_128_CBC_SHA256 for TLSv1.1

      2017-08-24 21:13:31,988 INFO  [stdout] (management I/O-2) Ignoring unsupported cipher suite: TLS_ECDH_ECDSA_WITH_AES_128_CBC_SHA256 for TLSv1.1

      2017-08-24 21:13:31,988 INFO  [stdout] (management I/O-2) Ignoring unsupported cipher suite: TLS_ECDH_RSA_WITH_AES_128_CBC_SHA256 for TLSv1.1

      2017-08-24 21:13:31,989 INFO  [stdout] (management I/O-2) Ignoring unsupported cipher suite: TLS_DHE_RSA_WITH_AES_128_CBC_SHA256 for TLSv1.1

      2017-08-24 21:13:31,989 INFO  [stdout] (management I/O-2) Ignoring unsupported cipher suite: TLS_DHE_DSS_WITH_AES_128_CBC_SHA256 for TLSv1.1

      2017-08-24 21:13:31,990 INFO  [stdout] (management I/O-2) management I/O-2, fatal error: 80: problem unwrapping net record

      2017-08-24 21:13:32,004 INFO  [stdout] (management I/O-2) javax.net.ssl.SSLException: Unrecognized SSL message, plaintext connection?

      2017-08-24 21:13:32,005 INFO  [stdout] (management I/O-2) management I/O-2, SEND TLSv1.2 ALERT:  fatal, description = internal_error

      2017-08-24 21:13:32,005 INFO  [stdout] (management I/O-2) management I/O-2, WRITE: TLSv1.2 Alert, length = 2

      2017-08-24 21:13:32,006 INFO  [stdout] (management I/O-2) management I/O-2, called closeInbound()

      2017-08-24 21:13:32,006 INFO  [stdout] (management I/O-2) management I/O-2, fatal: engine already closed.  Rethrowing javax.net.ssl.SSLException: Inbound closed before receiving peer's close_notify: possible truncation attack?

      2017-08-24 21:13:32,006 INFO  [stdout] (management I/O-2) management I/O-2, called closeOutbound()

      2017-08-24 21:13:32,006 INFO  [stdout] (management I/O-2) management I/O-2, closeOutboundInternal()

       

      Message was edited by: BUNTY RAY