Replace an Expired Console Certificate
If you replace the original console certificate with a certificate issued by a third-party certificate authority (CA), you must make sure that this third-party certificate is replaced before it expires. When the console certificate expires, you cannot start the AM services after they are stopped.
If you stop AM services on a deployment with an expired certificate, perform the following procedure. and then start the services.
Procedure
Log on to the appliance with the User ID rsaadmin and the current operating system password:
- On a hardware appliance, the Amazon Web Services appliance or the Azure appliance, log on to the appliance using an SSH client.
On a VMware virtual appliance, log on to the appliance using an SSH client or the VMware vSphere client.
On a Hyper-V virtual appliance, log on to the appliance using an SSH client , the Hyper-V System Center Virtual Machine Manager, or the Hyper-V Manager.
Change the directory to utils. Type:
cd /opt/rsa/am/utils
and press ENTER.
Run the following command to change the console certificate from the third-party certificate to the original certificate. Type the following, and press ENTER:
./rsautil reset-server-cert -u oc_admin_UserID
-p oc_admin_password
where:
oc_admin_UserID is the user name for an Operations Console administrator
oc_admin_password is the Operations Console administrator’s password
For instructions, see Log On to the Appliance Operating System with SSH.
After you finish
Start the AM Services. For instructions, see "Manage RSA Authentication Manager Services Manually" in the Administrator's Guide.
Related Articles
Console Certificate 168Number of Views RSA Tokenization appliance default administrator certificate expired. ( Self sign cert) 33Number of Views Restore from Backup 336Number of Views Clean Up Unresolvable Users Manually 309Number of Views Configure Logging 183Number of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device Reporting on RSA Authentication Manager 8.x users with On-Demand Token, a fixed passcode or a hardware/software token assi… How to Download OTP Token Seed Files from myRSA Anomalix idGenius - SAML Relying Party Configuration - RSA Ready Implementation Guide RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide