Connector Guides › Connectors Guide › Connecting to Endpoints › OS/400 Connector › OS/400 Installation › How to Secure Your Information (Optional) › Configure the Java Connector Server
Configure the Java Connector Server
If you are using a certificate from one of the following CAs, you do not need to perform this step:
- IBM World Registry
- Integrion Financial Network
- RSA Data Security, Inc.
- Thawte Consulting
- VeriSign, Inc.
If, you are using a certificate from a different CA, you must configure the Java Connector Server. If you use the same certificate for each OS/400 system, you will perform these steps only once.
To configure the Java Connector Server
- Stop the JCS service.
- Copy the CA certificate from your certificate authority to the directory where the connector client certificate keystore is located. Refer to the server_jcs.properties for the setting of connectorManager.connectorClientCertStore to determine the location of the connector client certificate keystore. The default value is set to ../conf/ssl.keystore.
- Open a DOS screen and change the DOS prompt to the directory where the connector client certificate keystore is located. For example,
cd C:\Program Files\CA\Identity Manager\Connector Server\conf\
- Issue the following command to import the CA certificate into the CA certificate store for Java:
..\..\bin\keytool -import -alias "eTrust Admin CA Certificate" -file
certificate_name.cer -keystore ssl.keystore
- Enter the default password secret (if it has not been changed) at the "Enter a keystore password" prompt.
Note: You can use bin\ ldaps_password.bat utility to change the keystore's password. Refer to the JCS Implementation Guide for the usage of the utility.
- Enter yes at the "Trust this certificate" prompt.
- Restart the JCS service.