Skip to content

Create a web-aware trust store for the Tiny Editors Services

This task outlines the process for creating a web-aware trust store for the Tiny Editors Services.

  1. Log in to the web interface of the WebSphere Application Server Console.

    The default address is: https://host_name:9043/ibm/console

  2. Expand Security and click the SSL certificate and key management link.

    SSL certificate and key management link

  3. Click Key stores and certificates link.

    Key stores and certificates link

  4. Click New.

    New trust store button

  5. Create a trust store.

    1. Enter a Name for the Tiny Editors Services trust store.

    2. Enter the Path to the WebSphere JVM trust store.

      For example:

      /opt/IBM/WebSphere/AppServer/java/jre/lib/security/cacerts
      
    3. Enter the password for the WebSphere JVM trust store into the Password and Confirm password fields.

      Tip: The default password for the WebSphere JVM trust store is changeit .

    4. Set the Type to JKS .

    5. Click OK.

    Create trust store

  6. Click the Save link.

    Save trust store

  7. Export in-house root certificates for use with the Tiny Editors Services trust store.

    1. Click the CellDefaultTrustStore link.

      Open CellDefaultTrustStore

    2. Click the Signer certificates link.

      Open Signer certificates

    3. Select the checkbox for a required certificate and click Extract.

      Select a certificate for extraction

    4. Specify a file name for the certificate and click OK.

      Certificate extraction options

      Successfully extracted

    5. If additional certificates are required, repeat steps 7.c and 7.d, otherwise click the Key stores and certificates breadcrumb link.

      Key stores and certificates breadcrumb link

  8. Import in-house root certificates.

    1. Click the link of the Tiny Editor Services Trust Store.

      List of trust and key store links.

    2. Click the Signer certificates link.

      Trust store details with Signer Certificates link highlighted.

    3. Click Add.

      List of root certificates with Add button highlighted.

    4. Enter a memorable Alias and enter File name of a previously exported certificate. Click OK.

      Certificate import details.

      List of root certificates with the new one at the top.

    5. If additional certificates require importing, repeat steps 8.c and 8.d.

Parent topic:Configuring the SSL certificates for the Tiny Editors Services