Author |
Message
|
vutkuri |
Posted: Thu Aug 16, 2007 2:39 pm Post subject: ssl channel problem |
|
|
Apprentice
Joined: 19 Feb 2007 Posts: 35
|
I am using MQ5.3 on Solaris, I have lost password for key database file, my certificate is expiring next week how can I resolve this problem.
I am using third party CA certificate.
Thank You |
|
Back to top |
|
 |
Mr Butcher |
Posted: Thu Aug 16, 2007 11:52 pm Post subject: |
|
|
 Padawan
Joined: 23 May 2005 Posts: 1716
|
1. ask you colleagues (of course you shared your production-sensitive knowledge or wrote it down in a safe place for emergency).
2. visit a psychologist, maybe you are able to remember the password in a hypnosis session.
if 1 and 2 does not help, create new key database and certificates _________________ Regards, Butcher |
|
Back to top |
|
 |
vutkuri |
Posted: Fri Aug 17, 2007 7:15 am Post subject: |
|
|
Apprentice
Joined: 19 Feb 2007 Posts: 35
|
I have joined the company recently the person who created the database had left company and he didn't tell the password anybody.
I have created new database file in different location, could you please guide me what shoul I do next?
Thank You |
|
Back to top |
|
 |
jefflowrey |
Posted: Fri Aug 17, 2007 2:42 pm Post subject: |
|
|
Grand Poobah
Joined: 16 Oct 2002 Posts: 19981
|
Get a new certificate.
Install it in the new database.
Keep the password for the new database somewhere safe. _________________ I am *not* the model of the modern major general. |
|
Back to top |
|
 |
vutkuri |
Posted: Wed Aug 22, 2007 7:01 am Post subject: |
|
|
Apprentice
Joined: 19 Feb 2007 Posts: 35
|
Thanks for your reply
I have created new key database file and moved these to ssl directory, I have deleted old files. Now the channels are running fine but I haven't restarted the qmgr, how would I know that the new certificate is being used.
Thanks |
|
Back to top |
|
 |
mqsidude |
Posted: Wed Aug 22, 2007 7:43 am Post subject: |
|
|
 Centurion
Joined: 22 Jan 2004 Posts: 148
|
Looks like you just created a new repository but not imported the certificates into it.
What are your Queue Manager SSL key repository properties set to?
What are your Channel SSL properties set to?
Are you able to establish a connection between this SSL enabled channel (may be your assumption!) and non-SSL channel?
Did you check the WMQ Security manual on how to verify a SSL connection? |
|
Back to top |
|
 |
|