Previous Topic: Multiple Policy Stores with Separate Key Stores

Next Topic: Configure Agent Key Generation

Reset the Policy Store Encryption Key

To reset the policy store Encryption Key

  1. Export your existing policy store content in clear text.
  2. Run smldapsetup remove to clear the policy store content and SOA Security Manager schema.
  3. Run "smreg -key new_encryption_key" to reset the Encryption Key.
  4. Reboot the machine.
  5. Load the Policy Server Management Console and retype the Admin password for the Directory Server.
  6. Open a command prompt.
  7. Run "smldapsetup ldgen -fany_filename_to_store_new_schema -v".
    The LDAP instance is correctly identified.
  8. Run "smldapsetup ldmod -fprevious_filename -v"
    LDAP is modified with the schema file.
  9. Run "smreg -su SOA Security Manager_admin_password" to reset SOA Security Manager Administrator password.
  10. Run "smobjimport -ismpolicy.smdif file -dsiteminder -wpassword -v" to import SOA Security Manager policy store base contents to LDAP.
  11. Run "smobjimport -ithe_original_exported_policy_export_file.smdif> -dsiteminder -wpassword -v" to restore the original content of policy store.

Important! If you are running a SOA Security Manager utility or executable on Windows Server 2008, be sure to open the command–line window with Administrator permissions, even if you are logged into the system as an Administrator. For more information, see the release notes for your SOA Security Manager component.


Copyright © 2009 CA. All rights reserved. Email CA about this topic