Parameter
-keypass
-keystore
-storepass
-storetype
-provider
6 Take the CSR created in
encoded public certificate. The CA also needs to send you the public certificate that it used to
create the certificate and the public certificates for any CAs in the chain.
7 Load the public certificate of the CA into the keystore by entering the following command:
"c:\Program Files\Java\jdk1.5.0_14\jre\bin\java" -Dprotect=module
-DignorePassphrase=true sun.security.tools.KeyTool -import -alias
publicca –file certca.cer -keystore Amstore.jks -storetype
nCipher.sworld -provider com.ncipher.provider.km.nCipherKM
Enter your values for the following parameters:
Parameter
-Dprotect=module
-DignorePassphrase=true
sun.security.tools.KeyTool
-import
-alias
-file
-keystore
-storetype
-provider
The tool prompts you for the keystore password and asks whether you want to trust the
certificate.
Description
The password for the key. In this sample
configuration, the password is
A name for the keystore. In this sample
configuration, the name is
The password for the keystore. In this sample
configuration, the password is
The type of keystore. For nCipher, this must be
set to
The name of the providerClass and
providerName.
Step 5
to a certificate authority. The CA needs to send you a DER-
Description
Required if you want the keystore to be module
protected.
Required if you want the keystore to be module
protected.
The name of the keytool command
The parameter that makes this an import
request.
A name that helps you identify that this is the
public certificate from the CA. In this sample
configuration, the name is
The name of the CA certificate file. In this
sample configuration, the name is
A name for the keystore. In this sample
configuration, the name is
The type of keystore. For nCipher, this must be
set to
The name of the providerClass and
providerName.
mypwd
AMstore.jks
mypwd
.
nCipher.sworld
publicca
AMstore.jks
nCipher.sworld
.
Configuring an Identity Server
.
.
.
.
.
certca.cer
.
49
Need help?
Do you have a question about the ACCESS MANAGER 3.1 SP2 - IDENTITY SERVER GUIDE 2010 and is the answer not in the manual?
Questions and answers