Enable SSL
1.go to /IHS/bin run the command ./ikeyman
2.click on file->new select CMS from key database type
3.file name : ikeyring.kdb
4.location /IHS/bin --> OK
5.enter the password,comfirm password
6.check set expiration time and stash the password to a file -->OK
7.click on create from Menu
8.select to create self-signed certificate
9.key label: IHScertificate
Version :x509v3
Keysize :1024
commonName: hostname of the system, was1.techgene.com
organiztion:techgene
10.OK
11.exit ikey man
12. it will create total fourfiles ikeyring.kdb,ikeyring.sth,ikeyring.crl.ikeyring.rdb
13. mv all file from /IHS/bin to /IHS/SSl directory
14. back up httpd.conf file from /IHS/conf/httpd.conf as http_back.conf
15. open httpd.conf file add the following
LoadModule ibm_ssl_module modules/mod_ibm_ssl.so in the LoadModule section
add virtual hostinformation
Listen 443
ServerName 192.168.2.11
DocumentRoot "/IHS/htdocs/en_US"
SSLEnable
ErrorLog logs/https-error_log
Keyfile "/IHS/SSL/key.kdb"
SSLV2Timeout 100
SSLV3Timeout 1000
SSLDisable
16. restart the IHS
17. open the browser http://was1.techgene.com:2000
https://was1.techgene.com:443
accept the certificate.
No comments:
Post a Comment