Organization administrators can update a custom DBVM SSL key and certificate to replace the key and certificate automatically generated by Data Director. You can update a DBVM key and certificate after the database is provisioned. For a vFabric Postgres database, you apply the SSL key and certificate to the DBVM, and to vFabric Postgres. For an Oracle database, you apply the key and certificate only to the DBVM.

Verify that you have a custom SSL key and certificate available.

1

Click Manage and Monitor in your organization, and select a database group.

2

Click the Databases tab.

3

Right-click a database and select Properties.

4

Click the SSL tab, and click the Import button.

A warning advises you that the database server restarts automatically after the new key assignment finishes.

5

Click OK.

6

Select a keystore type, and type a keystore password, a key alias, and a key password.

7

Click Browse and navigate to your custom keystore file.

8

Click Next and click the Custom Certificates tab.

The text box shows the certificate chain imported from the key store for the selected key.

9

Verify that the certificate chain is complete and in the correct sequence, including the root certificate authority (CA) and all intermediate CAs, with the root CA at the bottom of the certificate list.

If the certificate chain in the key store does not fulfill the requirements, use the Upload, Delete, down, and up buttons to customize the certificate chain. Only the DER encoded certificate is supported.

10

Click Finish to import the custom key and certificate.

Progress of the custom key and certificate configuration for the DBVM appears in the right panel.

The custom key and certificate pair is applied.