Technical Tip: Certificate path error when polling Airwatch
Description
"Failure: An unknown error occurred. javax.net.ssl.SSLHandshakeException: sun.security.validator.ValidatorException: PKIX path building failed:
sun.security.provider.certpath.SunCertPathBuilderException: unable to find valid certification path to requested target"
This suggests communication failed because the SSL certificate used by Airwatch could not be validated due to an incomplete or incorrect certificate path.
Scope
Version: 8.x and above.
Solution
Ensure that the entire SSL certificate path, including any intermediate certificates, are imported to the FortiNAC's keystore. Refer to section "Importing Airwatch SSL Certificates to FortiNAC" in the Airwatch Integration guide.
When attempting to poll Airwatch MDM in the Administration UI under MDM Services (8.x) or Service Connectors (9.x), a message similar to the following appears:
sun.security.provider.certpath.SunCertPathBuilderException: unable to find valid certification path to requested target"
This suggests communication failed because the SSL certificate used by Airwatch could not be validated due to an incomplete or incorrect certificate path.
Scope
Version: 8.x and above.
Solution
Ensure that the entire SSL certificate path, including any intermediate certificates, are imported to the FortiNAC's keystore. Refer to section "Importing Airwatch SSL Certificates to FortiNAC" in the Airwatch Integration guide.
Related Articles
