OASIS Mailing List ArchivesView the OASIS mailing list archive below
or browse/search using MarkMail.

 


Help: OASIS Mailing Lists Help | MarkMail Help

samldemotech message

[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]


Subject: Re: keys and certs


Hi Rich,

The keys and certs worked for me. I needed them in jks format (for 
tomcat), but was able to convert the p12 files using KeyMan from IBM.

In case anyone else needs to do this, the procedure is:
1. Open the p12
2. Create a new keystore
3. Export the CA and Private Key certs from the p12 to the new keystore 
(uncheck the box that disables private key export)
4. If you need aliases in the jks file to be particular values (ie not 
randomly generated), then do the following
4a. Double-click on the certificate that you want to set the alias for 
(this will open a new window with details on the certificate)
4b. Click on the wrench icon in the details view (this will open a new 
window in which you can edit a label)
4c. Edit the label and click save
4d. Close the detail window
5. Save the new keystore as something.jks

-Greg

On Feb 2, 2005, at 10:16 PM, Rich Salz wrote:

> I haven't heard anything; does that mean everything worked for 
> everyone?
> Did the formats work, do folks need anything else?
> I'll maintain and tweak the scripts so it's easier in the future.
>
> 	/r$
> -- 
> Rich Salz                  Chief Security Architect
> DataPower Technology       http://www.datapower.com
> XS40 XML Security Gateway  http://www.datapower.com/products/xs40.html
> XML Security Overview      
> http://www.datapower.com/xmldev/xmlsecurity.html



[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]