Symantec IGA

Expand all | Collapse all

User Certificates when upgrading from version 12.6.3 to 12.6.8 of the Connector Server

  • 1.  User Certificates when upgrading from version 12.6.3 to 12.6.8 of the Connector Server

    Posted Feb 16, 2017 04:33 PM

    Hello,

     

    I have a question about upgrading from version 12.6.3 to 12.6.8 of the Connector Server, when I upgraded Connector Server all my user certificates disappeared. How can I do back up and import it when I update the Connector Server? We have many user certificates...

     

    Best Regards,

    Fernando



  • 2.  Re: User Certificates when upgrading from version 12.6.3 to 12.6.8 of the Connector Server
    Best Answer

    Posted Feb 17, 2017 08:50 AM

    Please review the following link to the product documentation as I believe it will provide you with the info you need.

     

    CA Identity Suite Documentation 

     

    Add a Certificate for a Connector

    CA IAM Connector Server has its own keystore. You can add trusted certificates (either standalone certificates or keystores) to this keystore, using the Certificates tab.

    When you work with CA IAM Connector Server certificates, your changes apply only to the connector server that you are logged in to. The certificates for any peer connector servers remain unchanged.

    Follow these steps:

    1. Log in to CA IAM Connector Server.
    2. Click the Certificates tab.

      This tab lists all of the certificates in the CA IAM Connector Server keystore. To filter the list of certificates by their names, type in the Certificate Filter box.

    3. Click Add, then enter the details of the certificate:
      1. Select Certificate if the target is a standalone certificate file, or Key Store, if it is saved in a keystore.
      2. Browse to the certificate, select it, and click Add.
      3. Enter the alias. If you selected Key Store, this alias identifies the certificate in the keystore.
      4. If you selected Key Store, enter the keystore password.

    The certificate or keystore is added to the CA IAM Connector Server keystore, and the certificate is available for use by connectors.

    Note the following information:

    • To download a certificate, select it then click Download. You can download a certificate for either a private key or trusted certificate. You can then import this file another component, such as another instance of CA IAM Connector Server.
    • To delete a certificate from the CA IAM Connector Server keystore, select it then click Remove. You can remove any trusted certificate from the CA IAM Connector Server keystore. However, you cannot remote private key entries, because these keys are required by CA IAM Connector Server.
    • You cannot use the Certificates tab to manage private keys. Instead, update the Java keystore file and restart CA IAM Connector Server.