Configuring a Trust Store

You can configure a trust store by importing or by creating a keystore and uploading it.

You can only configure a trust store containing Microsoft SQL Server certificates by the Upload method.

Procedure

  1. Choose the method for configuring the trust store and follow the appropriate procedure.
    Method Procedure
    Import
    1. Click Configure SSL. The Configure SSL wizard displays certificates imported from the trusted server.
    2. In the Certificates list, check the checkboxes next to the certificates to trust and click Finish.
    3. In the SSL Client Provider area, choose one of the following:
      • Existing SSL Client Provider - Select an SSL Client Provider resource instance.
      • New SSL Client Provider
        1. In the SSL Client Provider Name field, type a name for the SSL Client Provider.
        2. In the Keystore Provider as Trust Store field, type the name of a Keystore Provider resource instance.
        3. In the Keystore Password field, type the password that protects the keystore.
    4. Click Done.
    Upload
    1. Create a keystore containing the certificates from the trusted server.
    2. In the SSL Client Provider field, click new. In the Name field, type a name.
    3. In the Keystore Provider as Trust Store field, click new. In the Name field, type a name.
    4. Click the Browse button, select the keystore you created in GUID-2503F3BE-29C6-4FE1-9F35-37358A58BBD0.html#GUID-2503F3BE-29C6-4FE1-9F35-37358A58BBD0__LI_2RY_JPL_DG, and click Open.
    5. In the Type drop-down list, select JKS.
    6. In the Password field, type the keystore password.
    7. Click Save for the Keystore Provider.
    8. Click Save for the SSL Client Provider.
    The SSL Client Provider field is configured.
  2. Click Test Connection to verify that the keystore enables an SSL connection.
  3. Click Save.