Creating a certificate store on IBM i
If you do not want to use the default certificate store, follow this procedure to create your own.
About this task
Create a new certificate store only if you do not want to use the IBM® i default certificate store.
To specify that the IBM i system certificate store is to be used, change the value of the queue manager's SSLKEYR attribute to *SYSTEM. This value indicates that the queue manager uses the system certificate store, and the queue manager is registered for use as an application with Digital Certificate Manager (DCM).
Procedure
- Access the DCM interface, as described in Accessing DCM
-
In the navigation panel, click Create New Certificate Store.
The Create New Certificate Store page is displayed in the task frame.
-
In the task frame, select Other System Certificate Store and click Continue.
The Create a Certificate in New Certificate Store page is displayed in the task frame.
-
Select No - Do not create a certificate in the certificate store and click Continue.
The Certificate Store Name and Password page is displayed in the task frame.
-
In the Certificate store path and filename field, type an IFS path and file name, for example
/QIBM/UserData/mqm/qmgrs/qm1/key.kdb
-
Type a password in the Password field and type it again in the Confirm Password field. Click Continue.
Make a note of the password (which is case sensitive) because you need it when you stash the repository key.
- To exit from DCM, close your browser window.