Configure SSL in the LDAP server. The procedure varies with the LDAP server being used. Consult the documentation for your server for details. If you are using the i5/OS Directory Service, see the Directory Services documentation in the iSeries Information Center:
Update your WebSphere Application Server - Express trust store file. The trust store file is the repository for the WebSphere server's trust base. Because it needs to authenticate the LDAP server during SSL initialization, the trust store file must provide information about the LDAP server.
To validate the LDAP server's certificate, your server needs the public key of the CA that issued the LDAP server's certificate. This key is found in that CA's certificate, so you need to add the CA certificate to your trust store file on the server.
To add the additional certificate to the trust store file, do the following:
Note: Procedures vary depending on the release of DCM you have installed on your iSeries system. The release of DCM that is used in this topic is V5R1M0.
Start iKeyman on your workstation. For more information, see The iKeyman utility.
Click OK.
Save your changes.
Stop and restart the application server, then start the administrative console. You are prompted to login to the LDAP registry.
Tips
If your SSL connection does not work, try the following: