Cloudera AI Project MigrationPDF version

Troubleshooting: Using custom SSL certificates to connect to Cloudera AI Workbenches

The migration script internally uses cdswctl which relies on system-wide configured certificates to establish connection with source and target workbenches. It must be ensured that SSL certificates belonging to both source and target workbenches (if applicable) shall be set properly.

Set up for Linux (Ubuntu/Debian)

  1. Copy your CA to the directory /usr/local/share/ca-certificates/. Ensure that the CA file is in .crt format.
  2. Run the command: sudo cp foo.crt /usr/local/share/ca-certificates/foo.crt
  3. Update the CA store: sudo update-ca-certificates.

Set up for MacOS

  1. Navigate to Finder > Applications > Utilities > Keychain Access.
  2. Select System in the left-hand column.
  3. Open File > Import Items and import the certificate files into the system keychain.
  4. The certificate shall now appear with a red 'X'. That means it is entrusted. To provide trust, double-click the certificate. Under Trust, change the setting at the top when using this certificate to Always Trust.