Step 10: Customizing User Data (Console); Step 11: Verifying Migration - Red Hat CERTIFICATE SYSTEM 7.2 - MIGRATION GUIDE Manual

Hide thumbs Also See for CERTIFICATE SYSTEM 7.2 - MIGRATION GUIDE:
Table of Contents

Advertisement

1.
Start the DRM Console.
pkiconsole https://server.example.com:10443/kra
2.
Select the DRM instance from the list of server, and log into the Console for that instance.
3.
In the Console, select the Configuration tab.
4.
Select the System Keys and Certificates option from the menu on the left.
5.
Select the Local Certificates tab on the right.
6.
Press the Add/Renew button to launch the Certificate Setup Wizard.
7.
Go through the wizard panels, and fill in the required information.
a.
In the Type of Operation panel, select the Request a certificate option (the default).
b.
In the Certificate Selection panel, select SSL Server Certificate from the pull-down menu. An SSL server cer-
tificate request is generated which can be submitted to another CA for approval.
c.
In the Key-Pair Information for the SSL Server Certificate panel, select Create new key pair since the re-
newed SSL server certificate requires changing the CN component of its DN. Fill in information in the other
fields on this panel as desired.
d.
The next panel is Subject Name for the SSL Certificate. For the CN component, enter serv-
er.example.com. Fill in information in the other fields on this panel as desired; it is strongly recommended
that the O and C components be filled in.
e.
Click through the remaining panels in the Certificate Setup Wizard and either fill in the options as desired or ac-
cept the defaults.
8.
Obtain the SSL server certificate request, and store it in a base-64 file.
9.
Submit the SSL server certificate request to a CA for approval.
10. When the SSL server certificate is approved, relaunch the Certificate Setup Wizard by pressing the Add/Renew but-
ton.
11. Go through the wizard again and supply the certificate information.
a.
In the Type of Operation panel, select the Install a certificate option.
b.
In the Certificate Selection panel, select SSL Server Certificate from the pull-down menu.
c.
Enter in the location information if required in the Location of Certificate panel.
d.
Click through the remaining panels in the Certificate Setup Wizard to install the renewed SSL server certificate
for the migrated DRM instance.
12. Close the Console windows.
13. Restart the 7.2 DRM instance.
/etc/init.d/rhpki-kra restart

2.10. Step 10: Customizing User Data (Console)

This example contains no user customizations.

2.11. Step 11: Verifying Migration

After migrating the Certificate Management System 6.1 (SP 4) DRM instance to the corresponding Certificate System 7.2
2.10. Step 10: Customizing User
Data (Console)
Certificate System Migration

Advertisement

Table of Contents
loading

Table of Contents