Skip to main content
Kofax

SafeCom DS 90*10: Konica Minolta devices are showing error during configure: device does not appear to have SSL enabled.

Problem:

With Device Server 90*10 some Konica Minolta devices are showing the error "unable to configure device because : device does not appear to have SSL enabled".

However the same device are working on Device Server 90*09 with the same Security/SSL settings.

Cause:

This issue is related to the Java.Security change in Device Server 90*10.

In the device server logic trace following error is seen:

ConfigureDeviceJob (3634), emitter=dk.safecom.products.deviceserver.devicesupport.konicaminolta.internal.di.KonicaMinoltaConfigurationInterface, message=SSL appears to be brokencom.sun.xml.internal.ws.client.ClientTransportException: HTTP transport error: javax.net.ssl.SSLHandshakeException: java.security.cert.CertificateException: Certificates does not conform to algorithm constraints

<h1>Resolution:</h1>

<p>An exception needs to be added into the java.security file to allow the MD5/RSA algorithm</p><p> Following steps needs to be performed:</p><p>

1. Stop the device server service</p><p> 2. Navigate to C:\Program Files (x86)\SafeCom\SafeCom Device Server\bin\jre\lib\security</p><p> 3. Open the java.security file in notepad or a similar application.</p><p> The following lines:</p><p> jdk.certpath.disabledAlgorithms=MD2, MD5, RSA keySize < 1024</p><p> jdk.tls.disabledAlgorithms=SSLv3, RC4, MD5withRSA, DH keySize < 768</p><p> Need to be changed to: (this will depend on the certificate used on the device)</p><p> jdk.certpath.disabledAlgorithms=MD2&#160;&#160;keySize < 1024</p><p> jdk.tls.disabledAlgorithms=SSLv3, RC4, DH keySize < 768</p><p> Alternatively:&#160;comment out the the lines above&#160;to allow any certificates in Java.</p><p> 4. Save the edited java.secrutiy file</p><p> 5. Reboot the server after making this change, as restarting the device server service alone&#160;may not be sufficient.</p> </body></html>