ibm-information-center/dist/eclipse/plugins/i5OS.ic.rzaiq_5.4.0.1/rzaiqcrtsystctfct.htm

60 lines
3.7 KiB
HTML

<?xml version="1.0" encoding="UTF-8"?>
<!DOCTYPE html
PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xml:lang="en-us">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
<meta name="security" content="public" />
<meta name="Robots" content="index,follow" />
<meta http-equiv="PICS-Label" content='(PICS-1.1 "http://www.icra.org/ratingsv02.html" l gen true r (cz 1 lz 1 nz 1 oz 1 vz 1) "http://www.rsac.org/ratingsv01.html" l gen true r (n 0 s 0 v 0 l 0) "http://www.classify.org/safesurf/" l gen true r (SS~~000 1))' />
<meta name="DC.Type" content="task" />
<meta name="DC.Title" content="Create a *SYSTEM certificate store on TheirCo's server" />
<meta name="DC.Relation" scheme="URI" content="rzaiqscenariossldetails.htm" />
<meta name="copyright" content="(C) Copyright IBM Corporation 2004, 2006" />
<meta name="DC.Rights.Owner" content="(C) Copyright IBM Corporation 2004, 2006" />
<meta name="DC.Format" content="XHTML" />
<meta name="DC.Identifier" content="rzaiqcrtsystctfct" />
<meta name="DC.Language" content="en-us" />
<!-- All rights reserved. Licensed Materials Property of IBM -->
<!-- US Government Users Restricted Rights -->
<!-- Use, duplication or disclosure restricted by -->
<!-- GSA ADP Schedule Contract with IBM Corp. -->
<link rel="stylesheet" type="text/css" href="./ibmdita.css" />
<link rel="stylesheet" type="text/css" href="./ic.css" />
<title>Create a *SYSTEM certificate store on TheirCo's server</title>
</head>
<body id="rzaiqcrtsystctfct"><a name="rzaiqcrtsystctfct"><!-- --></a>
<!-- Java sync-link --><script language="Javascript" src="../rzahg/synch.js" type="text/javascript"></script>
<h1 class="topictitle1">Create a *SYSTEM certificate store on TheirCo's server</h1>
<div><div class="section"><p>To participate in an SSL session, TheirCo's i5/OS™ File
Transfer Protocol (FTP) client must be able to recognize and accept the certificate
that MyCo's FTP server presents to establish the Secure Socket Layer (SSL)
session. To authenticate the server certificate, TheirCo's FTP client must
have a copy of the Certificate Authority (CA) certificate in the *SYSTEM certificate
store. The *SYSTEM certificate store contains a copy of most public CA certificates.
However, when MyCo's FTP server uses a certificate from a local CA, the TheirCo's
FTP client must obtain a copy of the local CA certificate and import it into
the *SYSTEM certificate store.</p>
<p>This scenario assumes that Digital Certificate
Manager (DCM) has not been previously used to create or manage certificates.
Consequently, TheirCo must first create the *SYSTEM certificate store by following
these steps:</p>
</div>
<ol><li><span>Start DCM.</span></li>
<li><span>In the Digital Certificate Manager (DCM) navigation frame, select <span class="uicontrol">Create
New Certificate Store</span> and select <span class="uicontrol">*SYSTEM</span> as
the certificate store to create and click <span class="uicontrol">Continue</span>.</span></li>
<li><span>Select <span class="uicontrol">No</span> to create a certificate as part
of creating the *SYSTEM certificate store and click <span class="uicontrol">Continue</span>.</span></li>
<li><span>Specify a password for the new certificate store and click <span class="uicontrol">Continue</span> to
display a confirmation page.</span></li>
<li><span>Click <span class="uicontrol">OK</span>.</span></li>
</ol>
</div>
<div>
<div class="familylinks">
<div class="parentlink"><strong>Parent topic:</strong> <a href="rzaiqscenariossldetails.htm" title="In order to secure File Transfer Protocol (FTP) with Secure Sockets Layer (SSL), you need to configure the server.">Configuration details</a></div>
</div>
</div>
</body>
</html>