Difference between revisions of "hidden:Install new certificates on HPSS GridFTP servers"

From Lsdf
Line 1: Line 1:
 
HPSS GridFTP servers:archive-sftp-01/02.lsdf.kit.edu
 
HPSS GridFTP servers:archive-sftp-01/02.lsdf.kit.edu
   
  +
[root@archive-sftp-02 grid-security]# cd /etc/grid-security
  +
[root@archive-sftp-02 grid-security]# pwd
  +
/etc/grid-security
 
[root@archive-sftp-02 grid-security]# mv hostcert.pem
 
[root@archive-sftp-02 grid-security]# mv hostcert.pem
 
hostcert.pem.old.06.07.2016
 
hostcert.pem.old.06.07.2016
 
[root@archive-sftp-02 grid-security]# mv hostkey.pem
 
[root@archive-sftp-02 grid-security]# mv hostkey.pem
 
hostkey.pem.old.06.07.2016
 
hostkey.pem.old.06.07.2016
  +
[root@archive-sftp-02 grid-security]# umask 0066
 
[root@archive-sftp-02 grid-security]# openssl pkcs12 -clcerts -nokeys -in archive-sftp-02.lsdf.kit.edu.07.07.2102.p12 -out hostcert.pem
 
[root@archive-sftp-02 grid-security]# openssl pkcs12 -clcerts -nokeys -in archive-sftp-02.lsdf.kit.edu.07.07.2102.p12 -out hostcert.pem
 
Enter Import Password:
 
Enter Import Password:
Line 11: Line 15:
 
Enter Import Password:
 
Enter Import Password:
 
MAC verified OK
 
MAC verified OK
[root@archive-sftp-02 grid-security]#
+
[root@archive-sftp-02 grid-security]# ls -al
[root@archive-sftp-02 grid-security]# chmod 600 hostcert.pem
+
-rw------- 1 root root 1789 Jul 6 16:54 hostcert.pem
[root@archive-sftp-02 grid-security]# chmod 600 hostkey.pem
+
-rw------- 1 root root 1891 Jul 6 16:55 hostkey.pem
  +
[root@archive-sftp-02 grid-security]# umask 0022

Revision as of 14:29, 24 August 2016

HPSS GridFTP servers:archive-sftp-01/02.lsdf.kit.edu
[root@archive-sftp-02 grid-security]# cd /etc/grid-security
[root@archive-sftp-02 grid-security]# pwd
/etc/grid-security
[root@archive-sftp-02 grid-security]# mv hostcert.pem
hostcert.pem.old.06.07.2016
[root@archive-sftp-02 grid-security]# mv hostkey.pem
hostkey.pem.old.06.07.2016
[root@archive-sftp-02 grid-security]# umask 0066
[root@archive-sftp-02 grid-security]# openssl pkcs12 -clcerts -nokeys -in archive-sftp-02.lsdf.kit.edu.07.07.2102.p12 -out hostcert.pem
Enter Import Password:
MAC verified OK
[root@archive-sftp-02 grid-security]# openssl pkcs12 -nocerts -nodes -in archive-sftp-02.lsdf.kit.edu.07.07.2102.p12 -out hostkey.pem
Enter Import Password: 
MAC verified OK
[root@archive-sftp-02 grid-security]# ls -al
-rw-------   1 root   root    1789 Jul  6 16:54 hostcert.pem
-rw-------   1 root   root    1891 Jul  6 16:55 hostkey.pem
[root@archive-sftp-02 grid-security]# umask 0022