Академический Документы
Профессиональный Документы
Культура Документы
The first step is to create a wallet and then a CSR (the request we need to submit to the
certification authority to generate our SSL certificate)
4. Export CSR, now that we have created the CSR, we need to export it to a file we can
send to the certification Authority. The following command will create a file server.csr
containing the CSR
5. Now, we will need to request a certification authority using the generated file for a SSL
certificate, they will send us the certificate as well as the root and intermediate certificates
required,
6. Once the cert authority creates the certificate, we will need to first import root certificate,
sometimes they will give it to us as part of the bundle, we need all 3 certificates in the SSL
chain.
7. Now import any other certificate in the chain, I got this one as part of the bundle they
sent me
9. We can validate that the certificates have been imported using the following command.
1. Edit the ssl.conf file under the configuration folder for the instance. Please check path
where the ssl is placed
vi $DOMAIN_HOME/config/fmwconfig/components/OHS/instances/ohs2/ssl.conf
Set the SSLWallet directive to the directory where we saved the wallet
SSLWallet <wallet_path>
2. Stop OHS
$DOMAIN_HOME/bin/stopComponent.sh ohs1
3. Start OHS
$DOMAIN_HOME/bin/stopComponent.sh ohs1
4. We can test the configuration on the default SSL port for OHS 4443 but please check the
virtual host for whether it is configured with 4443 or 443
https://hostname:4443