Configure TLS for the applications

Configure TLS for the Common Services Java™ components. Existing certificates are used to secure the communication with these components. You also need to update the TLS configuration alias properties. You do not need to do this task when you are deploying only FTM base.

When the Gateway Server, Business Rules Server, Business Rules Manager, and Transaction Server components are enabled for TLS, the components that initiate connections to these servers require a TLS configuration alias in their Liberty server configuration. The TLS configuration alias property for each component is stored in the FTM database. Since TLS is enabled by default, the sample reference implementations that are provided in the data setup utility (DSU) import workbooks are configured to reference the Liberty TLS configuration alias defaultSSLConfig.

You can change the TLS configuration references by using one of the following methods.
  • Use the Control Center properties pages for the various components to change the TLS configuration alias.
  • Use the data setup utility to import the TLS configuration alias data into the CORE_PROPERTIES table.
The following table shows properties that you can use to change the TLS configuration alias. It shows which user interface properties page to use and the data setup utility property key to use. These properties are for all deployments.
Component The property on the user interface The property key to use for the data setup utility worksheet definition
Approvals Use the Approvals properties page to set the Business Rules SSL Configuration Name property. apv.rules.br.ssl.config.
Business Rules Use the Business Rules validation rules properties page Business Rules SSL Configuration Name property. izw.properties.general.br.ssl.config.
Gateway engine Use the Gateway general properties page to set the Business Rules SSL Configuration Name property. izx.properties.general.br.ssl.config.
Common Services Use the Payment Feature Services properties page to set the RMI SSL Configuration Name property. iyb.properties.rmi.sslconfig
Common Services Use the Payment Feature Services properties page to set the (Business Rules Web Services) Business Rules SSL Configuration Name property. iyb.rules.br.ssl.config.
The properties in the following table can be used to change the TLS configuration alias for the Check components.
Component The property on the user interface The property key to use for the data setup utility worksheet definition
Amount Keying Use the Amount Keying properties page to set the SSL Config Alias property. cky.pds.ssl.config.
AutoAdjust Use the AutoAdjust general properties page to set the Business Rules SSL Configuration Name property. autoadjust.properties.general.br.ssl.config.
Payment Repair Use the Payment Repair properties page to set the SSL Configuration Alias property. izq.pds.ssl.config.
Transaction Correction and Reconciliation Use the TCR general properties page to set the Business Rules SSL Configuration Name property. izk.properties.general.br.ssl.config.