Certs to replace expired set now available

129 views
Skip to first unread message

Tina

unread,
Feb 7, 2013, 6:57:08 PM2/7/13
to ozoneplatfo...@googlegroups.com
It has come to our attention that the default certificates that ship with OWF
and associated products have expired as of February 3rd.  To remedy this, we
have made a new set of certificates available, which will not expire until
February, 2016.  The new certificates are available at the following URL:

https://s3.amazonaws.com/org.ozoneplatform/OWF/Ozone-certs-2013.zip

This zip file contains new versions of the following files:
        ca.crt - A self-signed certificate authority certificate
        keystore.jks - A Java keystore containing ca.crt as well as a server
certificate and associated private key, signed by ca.crt, and bound to
localhost
        testAdmin1.p12, testUser1.p12 - User certificates and private keys signed by
ca.crt

To use the new certificates, copy keystore.jks into the apache-
tomcat-7.0.21/certs directory of the OWF bundle, overwriting the old version
of keystore.jks.  Then, import ca.crt into your web browser as a root
certificate, and import testAdmin1.p12 and testUser1.p12 as user certificates.  

As an alternative to using these new certificates, you may also generate your
own certificates, as described in section 3.5.5 of the OWF Configuration Guide.  

As always, these certificates are for development purposes only and should be
replaced with certificates signed by a proper Certficate Authority in production
use.
Reply all
Reply to author
Forward
0 new messages