IBM webMethods Hybrid Integration

IBM webMethods Hybrid Integration

Join this online group to communicate across IBM product users and experts by sharing advice and best practices with peers and staying up to date regarding product enhancements.


#TechXchangePresenter
 View Only
  • 1.  Parter Profile cert - SHA2

    Posted Fri March 10, 2017 05:26 AM

    Hi all,

    We have an urgent issue-

    We have an integration in which we are having the partner profile set up -

    Currently we already have the certificates added under the Partner Profile - Certificate- sign/Verify and Encryt/decrypt section. Existing cert is SHA1.

    Now, vendor has provided the SHA2 certificate. Please do let us know if we need to just delete the existing one and add the new cert under Partner Profile - Certificate- sign/Verify and Encryt/decrypt section

    or do we need to add somewhere else also like trust store etc.

    We do have the default trust store( I don’t know the password)


    #Integration-Server-and-ESB
    #webMethods


  • 2.  RE: Parter Profile cert - SHA2

    Posted Tue March 14, 2017 04:22 PM

    any WM version newer than 8.0 shouldn’t have issue handling SHA-2 cert. in addition to adding it to TN profile, you also need to make sure the new cert’s CA root and intermediate cert are trusted, so check if they are in the trust store or not.


    #Integration-Server-and-ESB
    #webMethods


  • 3.  RE: Parter Profile cert - SHA2

    Posted Wed March 15, 2017 09:54 AM

    Thanks Tong for the reply.

    So just wanted to check do we need to add the root and intermediate in default IS trust store or we need to create another trust store and add those certificates.

    If we need to add in Default Trust store - then do you know default password for the same.

    we created one trust store for enable HTTPS, can we add in the same trust store.

    Attaching the screen shot


    #webMethods
    #Integration-Server-and-ESB


  • 4.  RE: Parter Profile cert - SHA2

    Posted Wed March 15, 2017 12:30 PM

    your server’s default trust store is configured on page:
    Security > Certificates
    you need to those certs added in that one.


    #webMethods
    #Integration-Server-and-ESB