Previous Topic: Re-encrypt the Proxy Engine Agent Shared Secret

Next Topic: Set the Federation Manager UI to FIPS_Only Mode

Re-encrypt the Policy Store and Key Store Data

Re-encrypt policy and key store data so that is uses a FIPS-compatible encryption algorithm.

To re-encrypt policy and key store data

  1. Open a command prompt window.
  2. Export the key data by entering the following command

    smkeyexport -dadmin_name -wadmin_password -oexport_file -l -v -t -cf

  3. Export the policy store data by entering the following command

    XPSExport export_file -xa –xs –xc -passphrase passphrase -v -e file_name -l log_file

  4. Import the key data into the new or existing key store by entering the following command:

    Note: You may be using the policy store as your key store.

    smkeyimport -iexport_file -dadmin_name -wadmin_password -l -v -t -cf

  5. Import the policy store data into the new or existing policy store by entering the following command:

    XPSImport –fo export_file -passphrase passphrase -vT -vI -vW -vE -vF -l log_path


Copyright © 2010 CA. All rights reserved. Email CA about this topic