This task extends the list of trusted certificates in the Application Server registry domain.
Perform this task only if you use a third-party certificate and the root Certificate Authority (CA) certificate for the third party is not already in the Application Server truststore. Do not perform this task if you use only registry-issued certificates.
Download any root certificates that you want to support. Sites that provide root certificates include the following:
If necessary, use the unzip command to extract .cer files from the downloaded archive.
Some files have the suffix .der.
Copy the .cer files to the directory ServiceRegistry-base/install/cacerts.
Change to the directory ServiceRegistry-base/install.
Run the following command (all on one line):
Solaris: /usr/sfw/bin/ant -f build-install.xml install.cacerts
Linux: /opt/sun/bin/ant --noconfig -f build-install.xml install.cacerts
This command installs any certificates found in the directory ServiceRegistry-base/install/cacerts into the Application Server domain truststore.
You can use the list.cacerts target to make sure that the certificates have been installed correctly.
Follow the instructions in To Stop and Restart the Application Server Domain for the Registry.