Skip to main content
Skip table of contents

Certificate Management

Contents

Keys section displays the list of keys (Public and Private) of the server's trust store, and allows to add or remove keys to the Server trust store.

Click the Keys 

 icon on the left side of the Administration screen to manage certificates.

Public Key Store Configuration

Adding Partner's Public Key

from Keystore

  1. Click the Down 
    arrow in the Add 
    icon and click Add Partner Public Key to add the Public Key Store Configuration section.



  2. In the Public Key Store Configuration section, provide the following:
    1. Add key From: Select "KeyStore".
    2. Load File: Click the Select file button and add the Public Keystore file stored in the system.
    3. Alias Name: Select the name that populates in the drop-down after adding the Keystore file.
    4. New Alias Name: Provide a new alias name.
  3. Click the Save

     icon. After successful saving, details appear in the Public-Private keys section. 

    To remove a key from the list, click the Delete 

     icon.

Adding Partner's Public Key

From Certificates

Perform the same actions as in the above section, but select "Certificate" from the Add Key From drop-down.


Private Key Store Configuration

Adding Host-Key Pair

  1. Click the Down 
     arrow in the Add 
     icon and click Add Partner Public Key to add the Public Key Store Configuration section.



  2. In the Public Key Store Configuration section, provide the following:
    1. Load Keystore File: Click the Select file button and add the Private Keystore file stored in the system.
    2. Alias Name: Select the name that populates in the drop-down after adding the Keystore file.
    3. New Alias Name: Provide a new alias name.
    4. Key Client Password: Password to authenticate the key.
  3. Click the Save 

     icon. After successful saving, details appear in the Public-Private keys section.

Setting TrustStore reload-time in Jetty Server Profile configuration

For new certificates to be reloaded into the server, Trust store reload time needs to be set.

Jetty server running in the gateway server will be reloaded with new certificates within this interval.

To set the Trust Store reload time, perform the following actions:

  1. Open eStudio and open the Profile Management perspective.
  2. Open APIGateway Server profile.
  3. Go to APIGateway > Fiorano > APIGateway > Jetty > PeerAPIManagementJetty.
  4. Set the TrustStoreReload time to the required time interval.

    By default, the Truststore Reload time is set to 0 due to which the Trust store does not load.

 

JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.