SAP Knowledge Base Article - Public

3169294 - Could not establish trust to the certificates in the keystore warning when importing a certificate from external system into Cloud Integration tenant

Symptom

Importing SSL certificate from external system into Cloud Integration Tenant gives warning: Could not establish trust to the certificates in the keystore. You may confirm that you trust the certificate '<certificate name>' by checking the fingerprint.

Environment

  • SAP Cloud Integration
  • SAP Integration Suite

Cause

Tenant is missing a required intermediate certificate

Resolution

1. Identify the issuer of the certificate and import the certificate for the issuer in cloud integration tenant trust store. No importing certificate will not give any warning.

E.g. When importing SuccessFactors certificate into cloud integration tenant:

certificate is issued to : *.successfactors.com

Issued by : DigiCert TLS RSA SHA256 2020 CA1

To import this certificate into cloud integration without warning, make sure to import a certificate in cloud integration such as:

it is issued to the original issuing authority, in this example - DigiCert TLS RSA SHA256 2020 CA1 and this can be issued by any CA supported by SAP.

Keywords

KBA , LOD-HCI-PI-OP-NM , Node Manager , Problem

Product

SAP SuccessFactors HXM Core 2111