Red Hat CERTIFICATE SYSTEM 6.0 - MIGRATION GUIDE Manual page 37

Table of Contents

Advertisement

b. Set the
LD_LIBRARY_PATH
LD_LIBRARY_PATH=old_server_root/bin/cert/lib
export LD_LIBRARY_PATH
c. Use the Certificate Management System 6.x
name.
old_server_root/bin/cert/tools/certutil -U -d .
d. Use the Certificate Management System 6.x
the security databases and save the base-64 output to a file.
old_server_root/bin/cert/tools/certutil -L
-n "old_HSM_slot_name:caSigningCert cert-old_DRM_instance"
-d . -h old_HSM_token_name -a > caSigningCert.b64
e. Copy the key information from the 6.x server to the 7.3 server.
cp old_server_root/alias/caSigningCert.b64
/var/lib/instance_ID/alias/caSigningCert.b64
4. Open the Certificate System
cd /var/lib/instance_ID/alias/
5. Log in as
.
root
6. Set the file user and group to the Certificate System user and group.
# chown user:group ServerCert.p12
# chown user:group kraStorageCert.p12
# chown user:group kraTransportCert.p12
# chown user:group caSigningCert.b64
7. Log out as
, and log back into the system as the Certificate System user.
root
8. Set the file permissions.
chmod 00600 ServerCert.p12
environment variable to search the Certificate System libraries.
certutil
certutil
directory.
/alias
tool to identify the old HSM slot
tool to extract the public key from
Migration
31

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the CERTIFICATE SYSTEM 6.0 - MIGRATION GUIDE and is the answer not in the manual?

Questions and answers

Table of Contents