Previous Topic: Coordinate Agent Key Management and Session Timeouts

Next Topic: Reset the Policy Store Encryption Key

Change Static Keys

Although it is not recommended, you can change the static key used by SiteMinder Web Agents to encrypt identity information for certain SiteMinder features.

A static key may also be used to maintain a single sign-on environment in an environment that requires multiple Policy Servers and multiple master key stores.

Important! Changing the static key will cause some SiteMinder features to lose the data they require to function properly. Features that establish and use an identity stored in a persistent cookie will no longer work. Changing the static key is not recommended, except in extreme situations such as security breaches. Authenticated users may be forced to login again before single sign-on will function across multiple SiteMinder installations.

To change the static key

  1. Log into the Policy Server User Interface.
  2. From the menu bar of the SiteMinder Administration window, select Tools, Manage Keys.

    The the SiteMinder Key Management dialog box opens.

  3. In the Agent Key tab, select the Use Static Key radio button.

    The SiteMinder Key Management dialog box changes to support static keys.

  4. Do one of the following:

    Depending on the option you selected, the Policy Server generates a new static key or uses the one you specified. The static key rolls over within three minutes.

  5. Do one of the following:

    Note: Click Cancel if you changed the static key, but you want to continue using dynamic Agent key rollover.

More information:

Static Keys

Multiple Policy Stores with Separate Key Stores

Coordinate Agent Key Management and Session Timeouts