
Security 125
•Scenario 2
—
Replace the self-signed certificate with a signed certificate
issued by a Certification Authority (CA)
A certificate signed by a CA is more likely to be trusted by the Web
browsers. To sign your certificate by a CA, do the following:
– Generate a Certificate Signing Request (CSR) and submit to the CA.
– Import a certificate for your CA.
– Import the Certificate Reply from the CA.
•Scenario 3
—
Import a new Trust Certificate
Some devices (for example, chassis, or the exposed management interface
through WS-MAN) or web service providers may provide a certificate for
Power Center validation during the communication establishment. If you
validate the certificate, and Power Center fails to verify it by building a
trust path from the trust certificate in the keystore file, the
communication will fail. In this scenario, you may need to import a new
trust certificate to make sure a trust path can be built to verify the
certificate.
For more information on how to manage certificates, see Keytool Help.
OpenManagePowerCenter_User_Guide.book Page 125 Friday, March 2, 2012 10:33 AM
Comentarios a estos manuales