question

jb_train avatar image
0 Likes"
jb_train asked

Certificate Change Testing

Hi, I recently received the "Action Required: Certificate Authority change to Sectigo" email.

I have followed the instructions to test my web app in the sandbox, however I receive an authentication error saying my APPNAME is invalid.

According to a KB article linked to from the email, if there is a problem then I should receive the following error

"The PKIX path validation failed exception"

Does anyone know if the authentication error indicates at least success regarding the certificate change?

Thanks

John

certificate authority change from digicert to sectigo
· 1
10 |600

Up to 2 attachments (including images) can be used with a maximum of 512.0 KiB each and 1.0 MiB total.

michab2003 avatar image michab2003 commented ·

there is no need to make real requests to verify a HTTPS connection:

curl --cert-status -v https://api.sandbox.ebay.com
---> SSL certificate verify ok

if your server is not able to check this, then u need to take action.

0 Likes 0 ·

1 Answer

·
jb_train avatar image
0 Likes"
jb_train answered

Thanks for that :-)

Using cert-status I get this message ...

"curl: option --cert-status: is unknown"

After a bit of digging around I ended up using this command

curl -vvI https://api.sandbox.ebay.com

Again I am not 100% certain if the response is correct - here's part of the message which I believe indicates all is well?

"Initializing NSS with certpath: sql:/etc/pki/nssdb

* CAfile: /etc/pki/tls/certs/ca-bundle.crt

CApath: none

* SSL connection using TLS_RSA_WITH_AES_128_GCM_SHA256

* Server certificate:

* subject: CN=open.api.sandbox.ebay.com,O="eBay, Inc.",L=San Jose,ST=California,C=US

* start date: Oct 02 00:00:00 2021 GMT

* expire date: Oct 02 23:59:59 2022 GMT

* common name: open.api.sandbox.ebay.com

* issuer: CN=Sectigo RSA Organization Validation Secure Server CA,O=Sectigo Limited,L=Salford,ST=Greater Manchester,C=GB"

Cheers

John

· 2
10 |600

Up to 2 attachments (including images) can be used with a maximum of 512.0 KiB each and 1.0 MiB total.

michab2003 avatar image michab2003 commented ·
if your server would be unable to establish a ssl connection we should see errors here so for me it looks okay
0 Likes 0 ·
jb_train avatar image jb_train michab2003 commented ·
Hi Michab, thanks for all your help.


Cheers

John

0 Likes 0 ·

Write an Answer

Hint: Notify or tag a user in this post by typing @username.

Up to 2 attachments (including images) can be used with a maximum of 512.0 KiB each and 1.0 MiB total.