Server certificates added to /etc/pki/java/cacerts are removed after running update-ca-trust or system updates in RHEL

Solution Verified - Updated -

Issue

Certificates manually added to the /etc/pki/java/cacerts file using keytool disappear after running the update-ca-trust command or applying system updates (e.g., dnf update).

The user attempted to persist the certificates by placing the PEM file in /etc/pki/ca-trust/source/anchors/ and running update-ca-trust extract. While the Root and Intermediate CA certificates were successfully added to the system truststore, the Server certificate was not imported.

Environment

  • Red Hat Enterprise Linux (RHEL)
    • 8
    • 9

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.

Current Customers and Partners

Log in for full access

Log In

New to Red Hat?

Learn more about Red Hat subscriptions

Using a Red Hat product through a public cloud?

How to access this content