Wednesday, July 14, 2010

Security Warnings

1> If you see similar warning messages in the managed server logs, filling the file system

####<Mar 2, 2010 11:02:05 AM GMT> <Info> <Log Management> <ngmhp021.uk.capitalone.com> <ArtemisBackupServer> <ExecuteThread: '24' for queue: 'weblogic.kernel.Default'> <<WLS Kernel>> <> <BEA-170018> <The log file has been rotated to weblogic.log00666. Log messages will continue to be logged in /var/sitelogs/managedservers/ArtmiServerCluster/ArtmiBackupServer/weblogic.log.>
####<Mar 2, 2010 11:02:05 AM GMT> <Warning> <Security> <ngmhp021.uk.capitalone.com> <ArtemisBackupServer> <ExecuteThread: '24' for queue: 'weblogic.kernel.Default'> <<WLS Kernel>> <> <BEA-090476> <Invalid/unknown SSL header was received from peer nnthp025.uk.mybank.com - 10.161.11.43 during SSL handshake.>
####<Mar 2, 2010 11:02:35 AM GMT> <Warning> <Security> <ngmhp021.uk.capitalone.com> <ArtemisBackupServer> <ExecuteThread: '24' for queue: 'weblogic.kernel.Default'> <<WLS Kernel>> <> <BEA-090476> <Invalid/unknown SSL header was received from peer nnthp025.uk.mybank.com - 10.161.11.43 during SSL handshake.>
####<Mar 2, 2010 11:03:05 AM GMT> <Warning> <Security> <ngmhp021.uk.capitalone.com> <ArtemisBackupServer> <ExecuteThread: '24' for queue: 'weblogic.kernel.Default'> <<WLS Kernel>> <> <BEA-090476> <Invalid/unknown SSL header was received from peer nnthp025.uk.mybank.com - 10.161.11.43 during SSL handshake.>
####<Mar 2, 2010 11:03:35 AM GMT> <Warning> <Security> <ngmhp021.uk.capitalone.com> <ArtemisBackupServer> <ExecuteThread: '24' for queue: 'weblogic.kernel.Default'> <<WLS Kernel>> <> <BEA-090476> <Invalid/unknown SSL header was received from peer nnthp025.uk.mybank.com - 10.161.11.43 during SSL handshake.>
####<Mar 2, 2010 11:04:05 AM GMT> <Warning> <Security> <ngmhp021.uk.capitalone.com> <ArtemisBackupServer> <ExecuteThread: '24' for queue: 'weblogic.kernel.Default'> <<WLS Kernel>> <> <BEA-090476> <Invalid/unknown SSL header was received from peer nnthp025.uk.mybank.com - 10.161.11.43 during SSL handshake.>
####<Mar 2, 2010 11:04:35 AM GMT> <Warning> <Security> <ngmhp021.uk.capitalone.com> <ArtemisBackupServer> <ExecuteThread: '24' for queue: 'weblogic.kernel.Default'> <<WLS Kernel>> <> <BEA-090476> <Invalid/unknown SSL header was received from peer nnthp025.uk.mybank.com - 10.161.11.43 during SSL handshake.>
####<Mar 2, 2010 11:05:05 AM GMT> <Warning> <Security> <ngmhp021.uk.capitalone.com> <ArtemisBackupServer> <ExecuteThread: '24' for queue: 'weblogic.kernel.Default'> <<WLS Kernel>> <> <BEA-090476> <Invalid/unknown SSL header was received from peer nnthp025.uk.mybank.com - 10.161.11.43 during SSL handshake.>
####<Mar 2, 2010 11:05:36 AM GMT> <Warning> <Security> <ngmhp021.uk.capitalone.com> <ArtemisBackupServer> <ExecuteThread: '24' for queue: 'weblogic.kernel.Default'> <<WLS Kernel>> <> <BEA-090476> <Invalid/unknown SSL header was received from peer nnthp025.uk.mybank.com - 10.161.11.43 during SSL handshake.>
####<Mar 2, 2010 11:06:06 AM GMT> <Warning> <Security> <ngmhp021.uk.capitalone.com> <ArtemisBackupServer> <ExecuteThread: '24' for queue: 'weblogic.kernel.Default'> <<WLS Kernel>> <> <BEA-090476> <Invalid/unknown SSL header was received from peer nnthp025.uk.mybank.com - 10.161.11.43 during SSL handshake.>
####<Mar 2, 2010 11:06:36 AM GMT> <Warning> <Security> <ngmhp021.uk.capitalone.com> <ArtemisBackupServer> <ExecuteThread: '24' for queue: 'weblogic.kernel.Default'> <<WLS Kernel>> <> <BEA-090476> <Invalid/unknown SSL header was received from peer nnthp025.uk.mybank.com - 10.161.11.43 during SSL handshake.>
####<Mar 2, 2010 11:07:06 AM GMT> <Warning> <Security> <ngmhp021.uk.capitalone.com> <ArtemisBackupServer> <ExecuteThread: '24' for queue: 'weblogic.kernel.Default'> <<WLS Kernel>> <> <BEA-090476> <Invalid/unknown SSL header was received from peer nnthp025.uk.mybank.com - 10.161.11.43 during SSL handshake.>
####<Mar 2, 2010 11:07:36 AM GMT> <Warning> <Security> <ngmhp021.uk.capitalone.com> <ArtemisBackupServer> <ExecuteThread: '24' for queue: 'weblogic.kernel.Default'> <<WLS Kernel>> <> <BEA-090476> <Invalid/unknown SSL header was received from peer nnthp025.uk.mybank.com - 10.161.11.43 during SSL handshake.>

The solution could be restarting the whole domain strictly in this order .

1>Stop the Managed Servers processess through the admin console.

2> kill all node managers of the respective managed servers.

3> Shutdown the admin server

4> Start the Admin server.

5>Start the node managers of all the managed instances

6> Start all the managed servers using admin console.

The issue occurs as per my understanding, if the certificate at the admin server is renewed or changes, then all the managed servers report this error unless rebooted to pick up the new certificate thereby resolving the handshake error.

No comments:

Post a Comment