Reestablishing server-to-server communication when you are missing cert.kbd or cert.sth files

When you are restoring a server, and the cert.kbd or cert.sth files are missing, the server generates new files that contain a new server certificate and private key. If your deployment includes more than one server, you must configure target servers in the deployment to receive the new server certificate so that the target servers and the server that is being restored can communicate with each other.

Before you begin

Complete the steps for Re-creating the server instance.

Procedure

On the target servers, issue the following command:
update server server_name sessionsecurity=transitional forcesync=yes
where server_name is the server that is being restored.

Target servers are now configured to accept a new verification key and server certificate from the server that is being restored when the server that is being restored attempts to log on to the target servers.

For more information about securing communication by using SSL, see Configuring storage agents, servers, clients, and the Operations Center to connect to the server by using SSL.

What to do next

Re-creating the device configuration file