Create the key file for your CA certificateĥ. > “C:\Program Files\OpenSSL-Win64\bin\openssl.exe”īe sure to wrap the command in double quotes (“”).Ĥ. Now launch the openssl.exe by running the command below. > set OPENSSL_CONF=C:\Program Files\OpenSSL-Win64\bin\openssl.cfgģ. > set RANDFILE= C:\Temp\Lansweeper\SSLCert\.rnd After completing the installation open an administrative command prompt.Ĭreate a directory to store the Certs in, I used “C:\Temp\Lansweeper\SSLCert”, then change to that directory and make a couple of set statements. Then Click Next and finish the installation.Ģ. Install the software into the default “C:\Program Files\OpenSSL-Win64” location. The light version was missing at least one file necessary to complete this task. Be sure to get the full version, not the light one. You can download the application from here. To create the self-signed SSL certificate first you need to install the OpenSSL application in your windows system. When application asks to restart VCloud, say yes.1. #> /opt/vmware/vcloud-director/bin/configure The replacement process is simple enough: close vdirector service, reconfigure it, and restart. Now we have keystore to replace the old one. #> /opt/vmware/vcloud-director/jre/bin/keytool -importkeystore -destkeystore certificates_year.ks -storetype JCEKS -srckeystore /root/keystore.p12 -srcstoretype pkcs12 -alias httpġ. #> /opt/vmware/vcloud-director/jre/bin/keytool -importkeystore -destkeystore certificates_year.ks -storetype JCEKS -srckeystore /root/ keyconsole.p12 -srcstoretype pkcs12 -alias consoleproxy In this case one alias for “http” and other for “consoleproxy”. Keystore is the file where Java keeps keys for the application and every key has its alias name. Next step is to import converted keys into keystore. When asked for password, fill something simple like 123456.ġ. Where “filename” is the name of the actual files. #> openssl pkcs12 -export -name http -in /root/filename.crt -inkey /root/filename.key -out /root/keyhttp.p12 #> openssl pkcs12 -export -name consoleproxy -in /root/filename.crt -inkey /root/filename.key -out /root/keyconsole.p12 For this we have to convert both keys to pkcs12 format files. One for Web Interface – called “http” and other for console - called “consoleproxy”.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |