Extracting signer certificate from all the nodes

To extract signer certificate from all the nodes, perform the following steps.

Procedure

  1. Log in to the WebSphere Administrative Console of one node.
  2. Follow these steps to extract signer certificate from the truststore in node:
    1. In the console navigation pane, click Security > SSL certificate and key management.
    2. In the Related Items area, click Key stores and certificates.
    3. In the table, select NodeDefaultTrustStore.
    4. In the Additional Properties area, click Signer certificates.
    5. In the table, select the root checkbox and click Extract.
    6. In the File name field, enter a certificate file name, for example, /root/certificate_hostname.arm.
    7. From the Data Type list, select Base64-encoded ASCII data and click OK.
    8. Copy the extracted signer certificate to the server that IBM® HTTP Server is running.
  3. Repeat steps 1 and 2 for all the nodes in the cluster.