Managed PKI for SSL Support - Installation Instructions for IBM HTTP Server - VeriSign UK Ltd.
VeriSign, Inc.® United Kingdom Home | Worldwide Sites | Site Map
You Are Here: United Kingdom Home > Support > Managed PKI for SSL Support > Installation Instructions for IBM HTTP Server

Managed PKI for SSL Support

Installation Instructions for IBM HTTP Server

This document provides instructions for installing SSL Certificates. If you are unable to use these instructions for your server, VeriSign recommends that you contact your software vendor or an organization that supports IBM HTTP Server.

Premium and Intranet Edition SSL Certificates

If you are installing a Managed PKI for SSL Premium Edition or a Managed PKI for SSL Intranet Certificate, you will need to first install the intermediate CA (‘intermediate.crt’) provided by your administrator.

  1. Start the key management utility (iKeyman)
  2. Open the key database file that was used to create the certificate request.
  3. Enter the password, and then click on OK.
  4. Select Signer Certificates and then click on Add.
  5. Click on Data type, and select a data type such as Base64-encoded ASCII data. This data type must match the data type of the importing certificate.
  6. Click on Data type and select the data type of the new digital certificate, such as Base64-encoded ASCII data. Select the data type that matches the CA-signed certificate. If the CA sends the certificate as part of an email, you may need to cut and paste the certificate into a separate file.
  7. Enter a file name and location for the CA root digital certificate or click on Browse to select a file name and location.
  8. Click on OK.
  9. Enter a label for the importing certificate.
  10. Click on OK. The Signer Certificates field displays the label of the signer certificate you added.

Managed PKI for SSL Administrators: how to find your Intermediate CA.

Install an SSL Certificate

When your Managed PKI for SSL Administrator has approved your request you will receive an email from VeriSign that contains your certificate. If the certificate is an attachment (Cert.cer), you can use the file. If the certificate is in the body of the email, copy and paste it into a text file (such as OriginalCert.txt) using Vi or Notepad. Do not use Microsoft Word or other word processing programs that may add characters. Confirm that there are no extra lines or spaces in the file.

  1. Save the certificate text file with a .cert extension or .arm extension.
  2. Open the .kdb file using the IKEYMAN utility.
  3. In the middle of the IKEYMAN GUI you will see a section called Key database content.
  4. Click on the down arrow to the right to display a list of three choices.
  5. Select Personal Certificates.
  6. From the Personal Certificates section, click on the Receive button.
  7. Data Type = leave the default of Base64-encoded ASCII data
  8. Browse to the directory that contains the .cert or .arm file.
  9. Highlight the file and click Open.
  10. Click on OK on this dialogue box

Support

For more information, go to the IBM Information Center.


Contact VeriSign Legal Notices Privacy Repository © 2003 - 2008 VeriSign UK Limited. All rights reserved.
6/29/08 10:00 PM