Skip to content

Conversation

@SylvainJuge
Copy link
Member

@SylvainJuge SylvainJuge commented Jul 11, 2025

Fixes #493

Mostly a copy of the equivalent feature in classic agent.

tested manually with:

  • dummy keystore (included in PR) without any root CA in it
  • configure keystore on test application with javax.net.ssl.keyStore and javax.net.ssl.keyStorePassword JVM settings + add agent + start application
  • see lots of SSL related exceptions with SunCertPathBuilderException: unable to find valid certification path to requested target
  • set ELASTIC_OTEL_VERIFY_SERVER_CERT environment variable to false
  • restart the app and see that no more SSL related exception is throws, data should arrive at expected endpoint.

@SylvainJuge SylvainJuge marked this pull request as ready for review July 16, 2025 16:29
@SylvainJuge SylvainJuge requested a review from a team as a code owner July 16, 2025 16:29
@SylvainJuge SylvainJuge requested a review from a team as a code owner July 16, 2025 16:38
@SylvainJuge SylvainJuge self-assigned this Jul 16, 2025
bmorelli25
bmorelli25 previously approved these changes Jul 17, 2025
@SylvainJuge SylvainJuge merged commit a3d9768 into elastic:main Jul 17, 2025
16 checks passed
@SylvainJuge SylvainJuge deleted the skip-certificate branch July 17, 2025 11:39
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

[Config] Add option to skip server cert verification

3 participants