SAP Knowledge Base Article - Preview

3783727 - SSL error ‘Failed to verify peer certificate. Peer not trusted’ when creating remote source

Symptom

  • An error occurs while creating a HANA remote connection to Datasphere.
  • The error says: "SAP DBTech JDBC: [403]: internal error: Cannot get remote source objects: [SAP AG][LIBODBCHDB SO][HDBODBC] Communication link failure; -10709 Connection failed (RTE:[300015] SSL certificate validation failed: SSL error [536872221]: Unknown error, General error: 0x2000051d | SAPCRYPTOLIB | SSL_connect SSL API error Failed to verify peer certificate. Peer not trusted. 0xa0600203 | SSL_ | tls13_handshake Peer not trusted 0xa0600203 | SSL_ | tls13_msg_decode Peer not trusted 0xa0600203 | SSL_ | ssl_verify_peer_certificates Peer not trusted 0xa0600203 | SSL_ | ssl_cert_checker_verify"
  • In the enabled DB side SSL debug trace, the following can be seen:
    ERROR: The chain of certificates is incomplete or untrusted, missing certificate of ... "Zscaler" 
    PKI validation:               FAILED: Validation of dependents - Issuer Certificate (ERROR: Issuer - No Certificates Found) 
    Issuer:                            ERROR: Issuer - Only Invalid Certificates Found
    Issuer Result:                 FAILED 


Read more...

Environment

SAP HANA, platform edition

Product

SAP HANA, platform edition 2.0

Keywords

Zscaler, missing certificate, no certificates found, SSL error, SSL handshake, incomplete or untrusted, Failed to verify peer certificate, Peer not trusted , KBA , HAN-DB-SDA , SAP HANA Smart Data Access , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.