Regenerating OEM 12c SSL certificates with Higher Keystrength and Signature Algorithm (Doc ID 1611578.1)

Last updated on OCTOBER 20, 2016

Applies to:

Enterprise Manager Base Platform - Version 12.1.0.2.0 and later
Information in this document applies to any platform.

Goal

OEM 12c(OMS and Agent) is by default configured with SSL certificates of keystrength 1024 bits and signature algorithm SHA512withRSA.
Perform the steps below to regenerate the default OEM certificates with keystrength of 2048 bits.The suppprted keystrength values with OEM 12c are 512,1024,2048 and 4096. The steps below will generate new certificates with signature algorithm SHA512withRSA.

1.This document is not applicable if OEM OMS or Agents are configured with Third party trusted certificates. Refer to <Note 1399293.1> for Third Party Certificates.
2.The steps in this document can also be used if the root certificate of OEM is expired and need to be renewed 

 

Solution

Sign In with your My Oracle Support account

Don't have a My Oracle Support account? Click to get started

My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms