Creating a truststore
Create a truststore that contains a list of certificates that your TLS profile trusts.
Before you begin
Review the TLS profiles overview to understand the concepts of TLS profiles, keystores, and truststores, and the purpose of the default profiles that are created at installation.
Your public keys must be in PEM or P12 formatted files.
Note: For information on generating TLS
certificates and keys, see Using OpenSSL to generate and format certificates.
One of the following roles is required to configure truststores:
- Administrator
- Owner
- Topology Administrator
- Custom role with the Settings: Manage permissions
About this task
Important: If you create your own TLS profiles, API Connect verifies
certificates when you upload them, but does not continuously monitor them for expiry. You are
responsible for monitoring and updating your certificates before they expire.