ODSEE - How to Add A Certificate To The DSCC Agent (Doc ID 1951681.1)

Last updated on JUNE 21, 2017

Applies to:

Oracle Directory Server Enterprise Edition - Version 11.1.1.7.0 and later
Information in this document applies to any platform.

Goal

The DSCC agent uses certificates.

For example, when entering the following command, and hitting enter when prompted for the keystore password, the DSCC agent cert (alias name - dsccagentcert) is displayed -

$ keytool -list -v -keystore /home/oracle/DS111172/dsee7/var/dcc/agent/config/certs.jks
Enter keystore password:

*****************  WARNING WARNING WARNING  *****************
* The integrity of the information stored in your keystore  *
* has NOT been verified!  In order to verify its integrity, *
* you must provide your keystore password.                  *
*****************  WARNING WARNING WARNING  *****************

Keystore type: jks
Keystore provider: SUN

Your keystore contains 1 entry

Alias name: dsccagentcert
Creation date: Aug 25, 2016
Entry type: keyEntry
Certificate chain length: 1
Certificate[1]:
Owner: CN=odsee-lab6:3997
Issuer: CN=odsee-lab6:3997
Serial number: 45fd760b
Valid from: Thu Aug 25 13:05:55 EDT 2016 until: Sat Aug 25 13:05:55 EDT 2018
Certificate fingerprints:
         MD5:  E0:29:CD:FF:D1:91:95:DC:2F:42:C2:D4:19:E9:3E:58
         SHA1: EB:B3:3C:0B:85:FC:3E:C5:C9:11:63:DF:C8:BB:91:F5:D4:D9:A1:3B


*******************************************
*******************************************


This document lists the steps to add / renew a certificate for the DSCC agent, and if the DSCC agent certificate is affected when unregistering an instance from the DSCC.

Solution

Sign In with your My Oracle Support account

Don't have a My Oracle Support account? Click to get started

My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms