System administrators can import a custom Management Server SSL key and certificate to replace the key and certificate automatically generated by Data Director.

Verify that you have a custom SSL key and certificate available.

1

Click System Settings.

2

Expand Other Settings and click Security.

3

Right-click Management Server and select Import.

A warning advises you that the Management Server cannot access databases until you restart the server. After you restart the management server, the Edit Certificate option appears when you right-click on it.

4

Click OK.

5

Select a keystore type, and type a keystore password, a key alias, and a key password.

6

Click Browse and navigate to your custom keystore file.

7

Click Next, and click the Custom Certificates tab.

The text box shows the certificate chain automatically imported from the key store for the selected key.

8

Verify that the certificate chain is in the correct sequence, including the root certificate authority (CA) and all intermediate CAs if there are any, with the root CA at the bottom of the certificate list.

If the certificate chain in the key store does not fulfill the requirements, use the Upload, Delete, down, and up buttons to customize the certificate chain. Only the DER encoded certificate is supported.

9

Click Finish to import the custom key and certificate.

Progress of the custom certificate configuration for the management server, and of tasks that distribute the Management Server root CA to the DBVMs, appears in the right panel.

10

When the update processes finish, restart the Management Server virtual machine to apply the updated key and certificate.

The custom key and certificate is applied.