Previous Topic: One-Way SSLNext Topic: For Rule Configurations Activities


Two-Day SSL

To set up two-way SSL communication between CA Advanced Authentication and CA Risk Authentication Server for server management activities:

  1. Access CA Advanced Authentication in a Web browser window.
  2. Log in to CA Advanced Authentication as the MA.
  3. Activate the Services and Server Configurations tab.
  4. Ensure that the CA Risk Authentication tab is active.
  5. Under System Configuration, click the Trusted Certificate Authorities link to display the CA Risk Authentication Server Trusted Certificate Authorities page.
  6. Set the following information on the page:
  7. Click the Save button.
  8. Under Instance Configuration, click the Protocol Configuration link to display the Protocol Configuration page.
  9. Select the Server Instance for which you want to configure SSL communication.
  10. In the List of Protocols section, click the Server Management link.

    The page to configure the Server Management protocol appears.

  11. Configure the following fields:
  12. Click the Save button.
  13. Restart CA Risk Authentication Server:
  14. Under System Configuration, click the CA Risk Authentication Connectivity link to display the CA Risk Authentication Connectivity page.
  15. On the CA Risk Authentication Connectivity page:
  16. Click the Save button.
  17. Restart CA Risk Authentication Server:
  18. Restart CA Advanced Authentication.
  19. Verify that CA Risk Authentication Server is enabled for SSL communication by performing the following steps:
    1. Navigate to the following location:
    2. Open the arcotriskfortstartup.log file in a text editor.
    3. Check for the following line:
      Started listener for [Server Management] [7980] [SSL] [srvmgrwsprotocol]
      

      If you located this line, then two-way SSL was set successfully.

    4. Close the file.