Cisco Cisco Prime Optical 9.6 Developer's Guide

Page of 818
Cisco Prime Optical 9.6.3 GateWay/CORBA Programmer Reference Guide 
OL-28047-01
 
 
739
 
What is the name of your City or Locality? 
  [Unknown]: 
What is the name of your State or Province? 
  [Unknown]: 
What is the two-letter country code for this unit? 
  [Unknown]: 
Is CN=ascii client, OU=Unknown, O=cisco, L=Unknown, ST=Unknown, 
C=Unknown correct? 
[no]:  y 
Step 2 
Verify that the generated keystore and key have the following attributes: 
Keystore name: ascii_client_ks 
Alias: ascii_client 
Keystore password: ascii_client_ks_pass 
Key password: ascii_client_ks_pass  
Validity: 25000 days 
Step 3 
Enter the following command to generate a client-side certificate that will be issued 
to the server: 
keytool -export -keystore ascii_client_ks -alias ascii_client -
storepass ascii_client_ks_pass -file ascii_client_cert 
Certificate stored in file <ascii_client_cert> 
Step 4 
Verify that the certificate is stored in the ascii_client_cert file. 
6.13.3  Adding the Client-Side Certificate to the Server-Side Keystore 
Step 1 
Enter the following command to add the client-side certificate to the server-side 
keystore. (Use FTP or a similar tool to deliver the ascii_client_cert file to the server. 
The server-side keystore is located in the /opt/CiscoTransportManagerServer/cfg 
directory on the server.) 
keytool -import -keystore gwcorba_service_ks -alias ascii_client -
storepass gwcorba_service_ks_pass -file ascii_client_cert 
The command output resembles the following example: 
Owner: CN=ascii client, OU=Unknown, O=cisco, L=Unknown, ST=Unknown, 
C=Unknown 
Issuer: CN=ascii client, OU=Unknown, O=cisco, L=Unknown, ST=Unknown, 
C=Unknown 
Serial number: serial-number 
Valid from: Sat Mar 18 17:18:44 GMT+05:30 2008 until: Fri Jul 23 
10:50:28 GMT+05:30 2038 
Certificate fingerprints: