Cisco Cisco Prime Optical 9.6 Guide Du Développeur
Cisco Prime Optical 9.6.3 GateWay/CORBA Programmer Reference Guide
OL-28047-01
739
What is the name of your City or Locality?
[Unknown]:
What is the name of your State or Province?
[Unknown]:
What is the two-letter country code for this unit?
[Unknown]:
Is CN=ascii client, OU=Unknown, O=cisco, L=Unknown, ST=Unknown,
C=Unknown correct?
C=Unknown correct?
[no]: y
Step 2
Verify that the generated keystore and key have the following attributes:
Keystore name: ascii_client_ks
Alias: ascii_client
Keystore password: ascii_client_ks_pass
Key password: ascii_client_ks_pass
Validity: 25000 days
Step 3
Enter the following command to generate a client-side certificate that will be issued
to the server:
keytool -export -keystore ascii_client_ks -alias ascii_client -
storepass ascii_client_ks_pass -file ascii_client_cert
storepass ascii_client_ks_pass -file ascii_client_cert
Certificate stored in file <ascii_client_cert>
Step 4
Verify that the certificate is stored in the ascii_client_cert file.
6.13.3 Adding the Client-Side Certificate to the Server-Side Keystore
Step 1
Enter the following command to add the client-side certificate to the server-side
keystore. (Use FTP or a similar tool to deliver the ascii_client_cert file to the server.
The server-side keystore is located in the /opt/CiscoTransportManagerServer/cfg
directory on the server.)
keytool -import -keystore gwcorba_service_ks -alias ascii_client -
storepass gwcorba_service_ks_pass -file ascii_client_cert
storepass gwcorba_service_ks_pass -file ascii_client_cert
The command output resembles the following example:
Owner: CN=ascii client, OU=Unknown, O=cisco, L=Unknown, ST=Unknown,
C=Unknown
C=Unknown
Issuer: CN=ascii client, OU=Unknown, O=cisco, L=Unknown, ST=Unknown,
C=Unknown
C=Unknown
Serial number: serial-number
Valid from: Sat Mar 18 17:18:44 GMT+05:30 2008 until: Fri Jul 23
10:50:28 GMT+05:30 2038
10:50:28 GMT+05:30 2038
Certificate fingerprints: