<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="https://community.appian.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>ADP SSL Certificate Usage in Integrations</title><link>https://community.appian.com/discussions/f/integrations/21467/adp-ssl-certificate-usage-in-integrations</link><description>I have a .pem and .key file provided by ADP. I have uploaded to the Admin Console under &amp;quot;Certificates&amp;quot; --&amp;gt; &amp;quot;Trusted Server Certificates&amp;quot;, when I add it to the &amp;quot;Client Certificates&amp;quot; I get a error for missing key file even though I&amp;#39;m not sure how to add</description><dc:language>en-US</dc:language><generator>Telligent Community 12</generator><item><title>RE: ADP SSL Certificate Usage in Integrations</title><link>https://community.appian.com/thread/110430?ContentTypeID=1</link><pubDate>Mon, 03 Apr 2023 14:10:48 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:a7282694-4370-49af-b78f-d124ce713381</guid><dc:creator>Stefan Helzle</dc:creator><description>&lt;p&gt;I can&amp;#39; tell, but when both certs point to the same server, there might be a conflict. As certificates are a platform matter, I highly recommend to set up governance processes to prevent such issues.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: ADP SSL Certificate Usage in Integrations</title><link>https://community.appian.com/thread/110419?ContentTypeID=1</link><pubDate>Mon, 03 Apr 2023 13:27:37 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:4d1fa651-4074-4446-8f79-619ce36508a3</guid><dc:creator>duyp0002</dc:creator><description>&lt;p&gt;Good morning Stefan,&lt;/p&gt;
&lt;p&gt;There are two certificates that are uploaded by 2 different project teams. When there are one cert, it&amp;#39;s working fine. When there are two certs, all of our API calls fail because of the 403 issue, Client Certificate.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;Do you know what might be the issue? The two certs include the url within the cert as well.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: ADP SSL Certificate Usage in Integrations</title><link>https://community.appian.com/thread/109316?ContentTypeID=1</link><pubDate>Tue, 14 Mar 2023 10:12:35 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:35223c93-bfd8-4bcd-916a-bc02791d628b</guid><dc:creator>Stefan Helzle</dc:creator><description>&lt;p&gt;The validation is done on client side only. You have to make sure to use a certificate that the client can validate.&lt;/p&gt;
&lt;p&gt;&lt;a href="https://en.wikipedia.org/wiki/Chain_of_trust"&gt;en.wikipedia.org/.../Chain_of_trust&lt;/a&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: ADP SSL Certificate Usage in Integrations</title><link>https://community.appian.com/thread/109315?ContentTypeID=1</link><pubDate>Tue, 14 Mar 2023 10:10:00 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:e0149c96-89cc-4186-9beb-b3a7a85f8f26</guid><dc:creator>natasav</dc:creator><description>&lt;p&gt;Hi,&lt;/p&gt;
&lt;p&gt;what we won&amp;#39;t, simple the certificate which is public to be validate on a first open of the file, so no activity should be done on a client reader same as if it was signed using adobe.&lt;/p&gt;
&lt;p&gt;We try to set up on tomcat by editing server.xml file and also import certificate using certlm console on a windows server but the result is the same.&lt;/p&gt;
&lt;p&gt;&lt;/p&gt;
&lt;p&gt;Any suggestion how to continue?&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: ADP SSL Certificate Usage in Integrations</title><link>https://community.appian.com/thread/109313?ContentTypeID=1</link><pubDate>Tue, 14 Mar 2023 09:49:58 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:c4020405-1c39-48a7-b6dd-7298605e53fa</guid><dc:creator>Stefan Helzle</dc:creator><description>&lt;p&gt;What does &amp;quot;client side&amp;quot; mean? The client tries to validate the chain of certificates. If the top most certificate is a trusted one, you are good.&amp;nbsp;That top most certificate must exist at the client. Either by a corporate setup if the company uses a private certificate chain, or a public one if you bought the certificate you use in Appian from a public provider.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: ADP SSL Certificate Usage in Integrations</title><link>https://community.appian.com/thread/109308?ContentTypeID=1</link><pubDate>Tue, 14 Mar 2023 09:16:33 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:cb928362-9b99-45a4-b96a-02a1c749c629</guid><dc:creator>muhammedk</dc:creator><description>&lt;p&gt;Regarding the &amp;quot;Trusted Server Certificates&amp;quot; issue, we are using &amp;quot;Sign PDF Document&amp;quot; plug-in for signing PDF document with corporate certificate (pfx). &lt;br /&gt;Is there a way to make the certificate trusted, without doing anything on client side (Adobe Reader)?&lt;br /&gt;&lt;img src="/resized-image/__size/320x240/__key/communityserver-discussions-components-files/18/pastedimage1678785394163v1.png" alt=" " /&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: ADP SSL Certificate Usage in Integrations</title><link>https://community.appian.com/thread/83852?ContentTypeID=1</link><pubDate>Tue, 20 Jul 2021 14:19:05 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:540e4693-fbb3-44dc-95f8-b78a2b3af6fc</guid><dc:creator>Stefan Helzle</dc:creator><description>&lt;p&gt;&lt;a href="https://docs.appian.com/suite/help/21.2/connected_system_authentication.html"&gt;https://docs.appian.com/suite/help/21.2/connected_system_authentication.html&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;&lt;a href="https://docs.appian.com/suite/help/21.2/Appian_Administration_Console.html#client-certificates"&gt;https://docs.appian.com/suite/help/21.2/Appian_Administration_Console.html#client-certificates&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;I think the client cert needs to be a combined file.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: ADP SSL Certificate Usage in Integrations</title><link>https://community.appian.com/thread/83847?ContentTypeID=1</link><pubDate>Tue, 20 Jul 2021 14:09:34 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:5a43a985-f15c-420b-b6eb-041ce42088b3</guid><dc:creator>here2learn</dc:creator><description>&lt;p&gt;I do not, this is the first one I&amp;#39;ve used. With Appian is not as straightforward as there is no documentation for this case use.&amp;nbsp;I&amp;#39;ve set it up with Postman but there are examples for its usage so it was much easier.&lt;/p&gt;
&lt;p&gt;#1: I believe the certificate is used to authenticate the client to the server. I&amp;#39;m assuming ADP would use this methodology. Why do I get the missing key error? Am I suppose to use openSSL to create a combo file such as a .csr or a .pfx (which I have already but when I upload it does not take it and wants specifically a .pem file)? I do have a .key file as well, but I don&amp;#39;t see an option to add it along with the .pem file.&lt;/p&gt;
&lt;p&gt;#2: Understood.&lt;/p&gt;
&lt;p&gt;#3: I figured it would be an Appian function that would be called in the initial setup when it was called, but makes sense.&lt;/p&gt;
&lt;p&gt;#4: The token that the Token Request Endpoint returns in order to use for every API call, but I see what you mean now.&lt;/p&gt;
&lt;p&gt;Thank you for the quick response&amp;nbsp;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: ADP SSL Certificate Usage in Integrations</title><link>https://community.appian.com/thread/83841?ContentTypeID=1</link><pubDate>Tue, 20 Jul 2021 13:43:21 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:d55d47e6-6bbd-46b4-bdfe-008e190afead</guid><dc:creator>Stefan Helzle</dc:creator><description>&lt;p&gt;Do you have any experience using SSL certificates?&lt;/p&gt;
&lt;p&gt;1) Depends on whether you use the certificate to authenticate the client to the server. If this is the case then it must go to &amp;quot;Client Certificates&amp;quot;. The message body is created in the integration.&lt;/p&gt;
&lt;p&gt;2) Yes&lt;/p&gt;
&lt;p&gt;3) This is done automatically by matching the url in the certificate to the server you call.&lt;/p&gt;
&lt;p&gt;4) Which token? You would add it in the integration as a query parameter, a header or in the body.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item></channel></rss>