2010-12-12 68 views
2

歡迎。SSL和Oracle HTTP服務器(OHS)

對於Linux x86,有centos 5.5,oracle 11g release 1,Oracle Application Server 10g第3版(10.1.3.2.0)。

通過owm和openssl創建一個錢包...終於準備好使用錢包了。

更感興趣的是什麼設置改變配置OHS使其工作?

改變方式的ssl.conf取代默認的路徑設置到下一個文件夾,其中位於錢包 啓動opmnctl - 在我看到錯誤日誌不起作用

[週四16年12月9日: 22:45 2010] [錯誤]服務器virt11gr1:443:無法打開加密的 錢包文件:/ opt/app/oracle/product/11.1.0/ohs/ohs/conf/ssl.wlt/mywallet when opm n是usingPlease啓用它作爲SSO錢包

在opmn.xml中也發現錢包串規定的道路有? - 將無法啓動...( 傢伙,告訴我,我錯了

回答

1

通過OWM打開你的錢包,並設置複選框自動登錄

2

如果我們通過ORAPKI使用,則:

# Create root wallet (for example, CA wallet) 
./orapki wallet create -wallet ./root -auto_login_only 

# Add a self-signed certificate (CA certificate) to the root wallet 
./orapki wallet add -wallet ./root -dn 'CN=your-host.com,C=IN' -keysize 1024 -self_signed -validity 3650 -auto_login_only 

# Export self-signed certificate from the wallet 
./orapki wallet export -wallet ./root -dn 'CN=your-host.com,C=IN' -cert ./root/b64certificate.txt 

# Create a user wallet (for example, a customer wallet) 
./orapki wallet create -wallet ./user -auto_login_only 

# Add a certificate request 
./orapki wallet add -wallet ./user -dn 'CN=your-host.com,C=IN' -keysize 1024 -auto_login_only 

# Export the certificate request 
./orapki wallet export -wallet ./user -dn 'CN=your-host.com,C=IN' -request ./user/creq.txt 

# Create a certificate (issued by CA) 
./orapki cert create -wallet ./root -request ./user/creq.txt -cert ./user/cert.txt -validity 3650 

# Add a trusted certificate (CA certificate) to the wallet 
./orapki wallet add -wallet ./user -trusted_cert -cert ./root/b64certificate.txt -auto_login_only 

# Add a user certificate 
./orapki wallet add -wallet ./user -user_cert -cert ./user/cert.txt -auto_login_only 

# Display contents of wallet 
./orapki wallet display -wallet ./root