Technical data
14 Managing Security
14-76 Administration Guide
Controlling the Level of Certificate Validation
By default WebLogic Server will reject any certificates in a certificate chain that do 
not have the Basic Constraint extension defined as CA. However, you may be using 
certificates that do not meet this requirement or you may want to increase the level of 
security to conform to the 
IETF RFC 2459 standard. Use the following command-line 
argument to control the level of certificate validation performed by WebLogic Server:
-Dweblogic.security.SSL.enforceConstraints










