Receiving a Requested Certificate

After the certificate authority has created a certificate, you must save this certificate to a file that is accessible by the gskkyman utility. Typically, this means you have to save the CA certificate as an HFS file.

See the following copy of a certificate:
-----BEGIN CERTIFICATE-----                                     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                                
-----END CERTIFICATE-----

Procedure

  1. Enter the key manager program gskkyman and select the key database that you want to use.
  2. From the Key database menu, you can select option 4 to Receive a certificate issued for your request. You are then prompted for information about the certificate.
  3. Enter the name of the file where you created the certificate.
    If you do not enter a file name, the system uses the default file name cert.arm.
    Enter certificate file name or press ENTER for "cert.arm":
  4. Respond to the prompt as to whether to set the key as the default in your key database.
    Do you want to set the key as the default in your key database? (1=yes, 0=no):

    If you select yes, this certificate becomes the default certificate for this key database. You can then specify the GLOBAL SSL_DNLABEL parameter as NULL and the platform server uses the default certificate for the key database.

    The following message is displayed indicating that the key manager is processing the request.

    Please wait while certificate is stored...

Result

When the request is completed, the following message is displayed. You can continue processing by entering 0, or terminate by entering 1.

Your request has completed successfully, exit gskkyman? (1=yes, 0=no):

At this point, you have successfully applied the certificate.