This password must be the same as the password you enter for the key in task 6 of this step. This password is used to control access to the keystore. These instructions assume that you will use the -alias and -keystore values recommended here you will have to adjust the commands accordingly if you use different values.Įnter a keystore password (referred to in this document as the CSA server keystore password). You can use different values for -alias, -validity, -keysize and -keystore. \ jboss-as\standalone\configuration\keystore_csaID.p12 keyalg rsa -keysize 2048 -storetype PKCS12 " \bin\keytool" -genkey -alias csa_fips -validity 365 Open a command prompt and change directories to %CSA_HOME%. Step 1: Create a CSA server keystore that Supports PKCS #12 Note In the following examples, %CSA_HOME% is the directory in whichĬSA is installed (for example, C:\Program Files\ HPE\CSA), the keytool utility is included with the JRE (you may choose to use a different utility), and a JRE has been installed for CSA in. Import the certificates for other applications as trusted certificates.Import the VMware vCenter certificate as a trusted certificate.Import the Operations Orchestration certificate as a trusted certificate.Create CSA's certificate, create a truststore that supports PKCS #12, and import certificate(s).Create the CSA server keystore that supports PKCS #12.This section describes the process you should follow to obtain, install, and configure a certificate that supports PKCS #12 for use by CSA. You must create a new keystore and truststore for CSA for PKCS #12. To comply with FIPS 140-2, the keystore and truststore (that store the keys and certificates used and other applications) must support PKCS #12: Personal Information Exchange Syntax Standard (PKCS #12). Administer > FIPS Configuration > Configure CSA > Create a New Keystore and Truststore for Secure Communication Create a New Keystore and Truststore for Secure Communication
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |