Working with Portecle to update / create a Java Keystore.



Similar documents
Installation valid SSL certificate

Junio SSL WebLogic Oracle. Guía de Instalación. Junio, SSL WebLogic Oracle Guía de Instalación CONFIDENCIAL Página 1 de 19

SSL Certificate Generation

CREATING, SIGNING, CHAINING, AND

SolarWinds Technical Reference

SSL Configuration on Weblogic Oracle FLEXCUBE Universal Banking Release [August] [2014]

Configuring SSL in OBIEE 11g

Wildcard Certificates

Installation Procedure SSL Certificates in IIS 7

ISY994 Series Network Security Configuration Guide Requires firmware version Requires Java 1.7+

CHAPTER 7 SSL CONFIGURATION AND TESTING

Step-by-Step guide for SSO from MS Sharepoint 2010 to SAP EP 7.0x

Marriott Enrollment Server for Web User Guide V1.4

Installing Logos SSL Certificates on Mobile Devices

BusinessLink Software Support

Instructions to connect to GRCC Remote Access using a Macintosh computer

etoken Enterprise For: SSL SSL with etoken

Installing Digital Certificates for Server Authentication SSL on. BEA WebLogic 8.1

Using Microsoft s CA Server with SonicWALL Devices

Creating and Managing Certificates for My webmethods Server. Version 8.2 and Later

Entrust Certificate Services. Java Code Signing. User Guide. Date of Issue: December Document issue: 2.0

Steps to import MCS SSL certificates on a Sametime Server. Securing LDAP connections to and from Sametime server using SSL

Code Signing Digital IDs GCC Certificate Installation Guide Rev 1.4

CA Nimsoft Unified Management Portal

Microsoft IIS 4 Guide to Installing Root Certificates, Generating CSR and Installing SSL Certificate

The IceWarp SSL Certificate Process

IceWarp SSL Certificate Process

Installing your certificate on your Windows PC

Enabling SSL and Client Certificates on the SAP J2EE Engine

Service Manager 9.32: Generating SSL Profiles for an F5 HWLB

PersonalSign Digital IDs GCC Certificate Installation Guide Rev. 1.2

Mac Client Installation Notes

How to Obtain an APNs Certificate for CA MDM

Installing your certificate on your Mac

Using etoken for SSL Web Authentication. SSL V3.0 Overview

Exchange Reporter Plus SSL Configuration Guide

ASA 8.x Manually Install 3rd Party Vendor Certificates for use with WebVPN Configuration Example

Lotus Domino Guide to Installing Root Certificates, Generating CSR and Installing SSL Certificate

e-cert (Server) User Guide For Microsoft IIS 7.0

CHECKLIST FOR THE MARKET SYSTEMS...

1. If there is a temporary SSL certificate in your /ServerRoot/ssl/certs/ directory, move or delete it. 2. Run the following command:

Shakambaree Technologies Pvt. Ltd.

Secure IIS Web Server with SSL

X.509 Certificate Generator User Manual

SSL Certificates and Bomgar

AutoInstall SSL FAQs for End Users

APNS Certificate generating and installation

Using etoken for Securing s Using Outlook and Outlook Express

IIS 6.0SSL Certificate Deployment Guide

EHHS Mozy Enterprise Computer Back- up Solution Installation Instructions

User Guide May Using Certificates in Outlook Express

Configuring Secure Socket Layer (SSL) for use with BPM 7.5.x

ECA IIS Instructions. January 2005

Upgrade of Business Systems Data Warehouse Reporting

Secure Part II Due Date: Sept 27 Points: 25 Points

Installation Guide. SafeNet Authentication Service

Install and configure SSH server

Secure Transfers. Contents. SSL-Based Services: HTTPS and FTPS 2. Generating A Certificate 2. Creating A Self-Signed Certificate 3

ADSelfService Plus: Guide to Install SSL Certificate. 1 P a g e

Configure Single Sign on Between Domino and WPS

SECURE USER GUIDE OUTLOOK 2000

LumInsight CMS Installation Guide

USING SSL/TLS WITH TERMINAL EMULATION

Universal Content Management Version 10gR3. Security Providers Component Administration Guide

SSL Configuration on WebSphere Oracle FLEXCUBE Universal Banking Release [September] [2013] Part No. E

Lab Homework 8E (Cont)

Gorilla CRM System Installation Instructions

SQL Server 2008 and SSL Secure Connection

Entrust Certificates Update For FedLine Access Solutions

Iowa Immunization Registry Information System (IRIS) Web Services Data Exchange Setup. Version 1.1 Last Updated: April 14, 2014

Verify Needed Root Certificates Exist in Java Trust Store for Datawire JavaAPI

Application Note AN1502

Registration and Renewal procedure for Dexia Certificate

Angel Dichev RIG, SAP Labs

RHEV 2.2: REST API INSTALLATION

isupplier PORTAL ACCESS SYSTEM REQUIREMENTS

Exchange ActiveSync (EAS)

webmethods Certificate Toolkit

1. Open the preferences screen by opening the Mail menu and selecting Preferences...

TechNote. Contents. Overview. Using a Windows Enterprise Root CA with DPI-SSL. Network Security

Customizing SSL in CA WCC r11.3 This document contains guidelines for customizing SSL access to CA Workload Control Center (CA WCC) r11.3.

Intel Remote Configuration Certificate Utility Frequently Asked Questions

How to Order and Install Odette Certificates. Odette CA Help File and User Manual

Remote Access VPN SSL VPN Access via Internet Explorer

By default, STRM provides an untrusted SSL certificate. You can replace the untrusted SSL certificate with a self-signed or trusted certificate.

How to Order and Install Odette Certificates. Odette CA Help File and User Manual

Guide to Obtaining Your Free WISeKey CertifyID Personal Digital Certificate on Aladdin etoken (Personal eid)

Transition from Pegasus Mail To Exchange/Outlook 2003

Configuring HTTPs Connection in SAP PI 7.10

How To Enable A Websphere To Communicate With Ssl On An Ipad From Aaya One X Portal On A Pc Or Macbook Or Ipad (For Acedo) On A Network With A Password Protected (

Setup Guide. network support pc repairs web design graphic design Internet services spam filtering hosting sales programming

WebLogic Server 6.1: How to configure SSL for PeopleSoft Application

Djigzo S/MIME setup guide

Configuring HTTPS support. Overview. Certificates

Installing an SSL Certificate Provided by a Certificate Authority (CA) on the BlueSecure Controller (BSC)

Batch Eligibility Long Term Care claims

JAMF Software Server Installation Guide for Linux. Version 8.6

Installing and Using the Zimbra Reporting Tool

Mechanics Bank Mobile Banking Mobile Finance Manager (MFM) Application Windows Mobile Phone Installation

Transcription:

Working with Portecle to update / create a Java Keystore. Backup your stoneware.keystore file before starting. Download Portecle from http://sourceforge.net/projects/portecle/ Unzip the files and double click on portecle.jar or type java jar portecle.jar To update an existing working keystore with a new SSL Certificate. Choose file Open Keystore, choose your stoneware.keystore file and enter in your password (same as RelayUser)

There should only be one key pair, represented by the double key icon. There may be other supporting certificates depending on your type of certificate. Right click on you re keypair, in this example it is called server and choose Generate Certificate Request. Enter your keystore password and save the file to your computer. This is the file that you send to your Certificate Authority company (godaddy, Verisign, Comodo, RapidSSL, etc ) Importing the certificate sent back to you from the CA Company. If your CA sent you one or more intermediate or root certificates then those will need to be imported. Click on Tools, and then Import Trusted Certificate. Select you re Intermediate / Root certificates that you were sent or told to download. If you get any errors then it may be easier to import the ssl certificates into Internet Explorer and then export them from Internet Explorer and then import them into the keystore. **note - If you are obtaining a certificate from DigiCert, you will need to make sure you have their proper Intermediate Certificate in IE. The easiest method for this is to use their Certificate Management Tool: https://www.digicert.com/util/ With this tool, you can easily import the correct Intermediate certificate, which is necessary to build the proper certificate chain. Take the certificate you were sent, open Internet Explorer and go to : Tool Internet Options Content Certificates Import Select the certificate you were sent from your CA. Once imported, find the certificate usually located under the Other People tab. Right click on it and choose Export, select Cryptographic Message Syntax Standard PKCS #7 option.

Select Include all certificates in the certification path if possible. Save this file so you can import it into Keystore. Back in the Portecle tool, right click on your keypair and choose Import CA Reply. Select the P7B file that you just exported from Internet Explorer. You may get a message that says: Click OK, Verify the information about the SSL Certificate and click OK. Click Yes when it asks if you want to accept the CA Reply. You should see a message that the CA Reply Import Successful. Click File, Save to save your changes. You are now done; you can take the newly updated keystore and copy it to all of your stoneware servers. To create a brand new Keystore. Load Portecle Choose File, New Keystore Choose JKS Click Tools, Generate Keypair Choose SHA256withRSA for the Key Algorithm (or whatever your CA vendor requests it to be) See the picture below for examples of what to fill in for the certificate. This information is based off of your specific company information.

Click OK and it will ask for an Alias, it will use the Common Name by default. This name is fine. Click OK. Enter a Password for the Keypair. This password MUST be the same as the relayuser account for the portal.

Once done you will see your new Keypair listed. Choose File, Save Keystore and re enter the password. Again, this must match the RelayUser and the password used for the Keypair. The keystore now has a working Self Signed certificate. This certificate will work but browsers will not trust it and each user will be prompted each time they come to the portal. Self Signed certificates are usually used during initial setup and for testing. Once you are ready to go into production, this should be upgraded to a real trusted certificate. The process for doing this is located at the top of this document.