Create the root key and the key file used by the first Server
1. Create a domino Certificate database on the server
2. Open the cerchloroform. nsf database, and click1. Create Certificate Authority Key Ring & Certificate, Fill in the relevant information, such:
3. Copy the vgoliveroochloroform. Kyr generated in the notes \ data directory to the data directory of the server.
4. Open the cerchloroform. nsf database, and click2. Configure Certificate Authority Profile, Fill in the relevant information, and clickSave & closeSuch:
5. Open the cerchloroform. nsf database, and click3. Create server key ring & Certificate, Fill in the relevant information, and clickCreate server key ringSuch:
6. The vgolive-server-root.kyr and vgolive-server-root.sth generated under the notes \ data directory will be copied to the data directory of the server
Enable Domino SSL and Domino https
Open the address book of the server, open the server document for enabling SSL and https, and edit it. For example:
Note: If this server only enables httpsTCP/IP Port StatusSetDisableOrRedirect to SSL;
SetSSL port statusSetEnableIf you only use the certificate to log on under the HTTPS protocolName and passwordSetNoOtherwiseCustomer verification wordsSetNoIf anonymous users are allowed to use httpsAnonymousSetYes
After setting, clickSave and closeButton.
Use in the domino backgroundLoad HTTPOrTell HTTP restartRestart HTTP. InputShow tasksTo verify whether HTTPS is often started, such:
Verify whether HTTPS is enabled in IE and whether the certificate is correct:
Open IE and enterHttps://root.vgolive.com/, The following screen is displayed:
click continue to browse this website . The following message is displayed:
As set above, anonymous access is not allowed.
note: you can install the created root certificate to IE, for example: