How To Create A Complete Wallet: Process Overview - Oracle Database B10772-01 Administrator's Manual

Database
Table of Contents

Advertisement

How To Create a Complete Wallet: Process Overview

How To Create a Complete Wallet: Process Overview
Wallets provide a necessary repository in which you can securely store your user
certificates and the
The following steps provide an overview of the complete wallet creation process:
1.
2.
3.
4.
5.
8-8 Oracle Database Advanced Security Administrator's Guide
trust
points you need to validate the certificates of your peers.
Use Oracle Wallet Manager to create a new wallet:
See
"Required Guidelines for Creating Wallet Passwords"
information about creating a wallet password
See
"Creating a New Wallet"
standard wallets (store credentials on your file system) and hardware
security module wallets.
Generate a certificate request. Note that when you create a new wallet with
Oracle Wallet Manager, the tool automatically prompts you to create a
certificate request. See
information about creating a certificate request.
Send the certificate request to the CA you want to use. You can copy and paste
the certificate request text into an e-mail message, or you can export the
certificate request to a file. See
page 8-25. Note that the certificate request becomes part of your wallet and
must remain there until you remove its associated certificate.
When the CA sends your signed user certificate and its associated
certificate, then you can import these certificates in the following order. (Note
that user certificates and trusted certificates in the PKCS #7 format can be
imported at the same time.)
First import the CA's trusted certificate into your wallet. See
Trusted Certificate"
new user certificate has been issued by one of the CAs whose trusted
certificate is already present in Oracle Wallet Manager by default.
After you have successfully imported the trusted certificate, then import the
user certificate that the CA sent to you into your wallet. See
User Certificate into the Wallet"
(Optional) Set the auto login feature for your wallet. See
page 8-19.
Typically, this feature, which enables PKI-based access to services without a
password, is required for most wallets. It is required for database server and
on page 8-10 for information about creating
"Adding a Certificate Request"
"Exporting a User Certificate Request"
on page 8-25 Note that this step may be optional if the
on page 8-22
on page 8-9 for
on page 8-21 for
on
trusted
"Importing a
"Importing the
"Using Auto Login"
on

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the Oracle Database B10772-01 and is the answer not in the manual?

This manual is also suitable for:

Database advanced security 10g release 1

Table of Contents