...
Click: Create new keystore
View file | ||||||
---|---|---|---|---|---|---|
|
...
Select PKCS#12, and click OK
...
Right click and select Generate key pair
...
Leave on default (RSA) and click OK
...
Change validity end to the desired end date and Click add extensions
...
Click use standard template, select CA, than OK
...
Click the green + and add extension Subject Alternative Name, click OK
...
10. Add all DNS names/ addresses that are used to connect to the INVR host system and click OK
...
11.Set certificate settings, as desired (the printscreen is a example)
View file | ||||||
---|---|---|---|---|---|---|
|
...
12. Click OK until the dialogue is closed, when asked for “Enter Alias”, tomcat must be filled. click OK
...
When asked for the password, at default this must be changeit (*can be different if desired)
...
13. Right click on just created keypair and select: Generate CSR
...
14. Set the location where the file is saved and click OK
...
Signing process of the certificate CSR file and creating .keystore file.
...
Let the customer sign the CSR in case the customer provides the certificates, or sign the CSR on the iProtect main server:
Login to the maintenance page of the iProtect main server
Click: iProtect > Certificate > Configuration
At Upload CSR: Upload the CSR file. a check will be performed and when OK the certificate will be signed, a download button will appear
Click the download button, the signed certificate and the public root certificate will be downloaded in a *.zip file
Install the certificate on the Windows INVR server:
Extract the iprotect-signed-csr.zip file
Import the “signed-csr.crt” file by right clicking the certificate and selecting: Import CA Reply > From File
View file name Invalid file id - UNKNOWN_MEDIA_ID page Imagina LED sign (Move to another space) space PEM5Import all root and intermediate certificates to complete the chain, by right clicking the certificate and selecting: Import Edit Certificate Chain > Append Certificate
View file name Invalid file id - UNKNOWN_MEDIA_ID page Imagina LED sign (Move to another space) space PEM5Check certificate, by right clicking the certificate and selecting: View Details > Certificate Chain Details
If all is OK, save this certificate as .keystore in the INVR home folder. Default location: c:\iNVR\home\.keystore (replace the default .keystore file)
Restart the INVR service
Start services.msc
Restart the INVR process, by right clicking the service and than click “restart”
View file name Invalid file id - UNKNOWN_MEDIA_ID page Imagina LED sign (Move to another space) space PEM5
*If the password for the certificate is other than changeit, than this should be adjusted in the file: C:\iNVR\home\atlas\iprotect\catalina_base\conf\server.xml
...