User guide

Setting SSL for Certificate/Key Management Environments Configured with the SMEE Commands
9-3
Setting SSL for Certificate/Key Management
Environments Configured with the SMEE Commands
On the Interstage HTTP Server, to use SSL for a certificate/key management environment configured with
the SMEE commands, follow the procedure below to set an SSL environment:
1. Create a certificate/key management environment.
For details, refer to Creating a Certificate/Key Management Environment in Environment in Chapter 8,
Setting and Use of the Certificate/Key Management Environment Using the SMEE Command.
2. Create a secret key and acquire a certificate.
For details, refer to Creating a Secret Key and Acquiring a Certificate in Chapter 8, Setting and Use of
the Certificate/Key Management Environment Using the SMEE Command.
3. Register the certificate and CRL.
For details, refer to Registering the Certificate and CRL in Environment in Chapter 8, Setting and Use
of the Certificate/Key Management Environment Using the SMEE Command.
4. Register the user PIN.
5. Set the Interstage HTTP Server environment definition file.
6. Register CA certificate on the Web browser.
For details, refer to Operating the Client Certificate in Environment in Chapter 8, Setting and Use of
the Certificate/Key Management Environment Using the SMEE Command.
Note
When performing client authentication in the Solaris OE and Linux system, a user other than the
super-user authority needs to execute Steps 1 to 3. (The user other than the super-user authority set the
process of Web Server for consideration on security.)
In addition, specify the user or group in the Interstage HTTP Server environment definition file in Step 5.
The following sections explain steps 4 and 5 for the Interstage HTTP Server.
Registering the User PIN
Register the user PIN in the user PIN management file.
By specifying the user PIN and user PIN management file in the ihsregistupin command, the user PIN is
registered in the user PIN management file after encrypting it.
The following shows an example of registration.