IBM Security Access Manager for Enterprise Single Sign-On, Version 8.2

Adding the directory server SSL certificate to WebSphere Application Server

If the directory server connection is SSL enabled, you must add the certificates from the directory server to WebSphere® Application Server. Retrieving the certificate ensures that you can establish a connection between the directory server and WebSphere Application Server. Ensure that the SSL connection is successful before you configure the IMS Server for directory servers.

Before you begin

About this task

This task applies only to directory servers with SSL enabled.

Procedure

  1. Log on to the WebSphere Application Server administrator console.
  2. In the navigation panel, click Security > SSL certificate and key management.
  3. Under Related Items, click Key stores and certificates.
  4. Open the truststore.
    For stand-alone deployments
    Click NodeDefaultTrustStore.
    For network deployments
    Click CellDefaultTrustStore.
  5. Under Additional Properties, click Signer Certificates.
  6. Click Retrieve from port.
  7. Specify the following fields:
    Host
    Type the host name, IP or fully qualified domain name of the directory server.
    Port
    Type the SSL port number for the directory server. The typical SSL port number is 636.
    Alias
    Type the certificate alias name to reference the signer in the configuration. For example: myldap1
  8. Click Retrieve signer information. Information about the SSL signer information is displayed.
  9. Click OK.
  10. In the Messages box, click Save.
  11. For network deployment, resynchronize the nodes.


Feedback