This article explains how to configure SSL certificates for the Admin and Reporting services in FlexNet Manager for Engineering Applications using a certificate issued by a Certificate Authority (CA). These steps ensure secure HTTPS communication between servers.
- Prepare the environment
- Create a shared folder on the Admin Server:
mkdir E:\FLEXnet\certs - Share the folder as
Certsand provide write access to all users involved in this setup.
- Create a shared folder on the Admin Server:
- Generate encryption keys & self-signed certificates
Run the following steps on both the Admin and Reporting servers:- cd E:\FLEXnet\manager\{server_type}
- rm ".\release\platform\bin\keystore"
- .\jvm\bin\keytool.exe -keystore ".\release\platform\bin\keystore" -storepass "flexnet" -genkeypair -alias "tomcat" -keyalg RSA -validity 7300 -keypass "flexnet" -dname "CN={Server FQDN},OU=IT,O=test,L=test,S=test,C=test" -ext "SAN=dns:{Server DNS Alias}" -keysize 2048
Replace {server_type} with admin or reporting as appropriate.
Replace {Server FQDN} and {Server DNS Alias} with your server’s actual values.
- Generate Certificate Signing Requests (CSRs)
Run the following steps on both servers:- cd E:\FLEXnet\manager\{server_type}
- .\jvm\bin\keytool.exe -keystore ".\release\platform\bin\keystore" -certreq -keyalg RSA -alias tomcat -file "\\{Admin Server FQDN}\certs\{server_type}.csr"
If a SAN value is required, add: -ext SAN=dns:test.example.com
- Get certificates signed by a CA
Submit the.csrfiles to your Certificate Authority (CA). You should receive:
-
- Root CA certificate
- Intermediate CA certificate
- Signed Server Certificate
- Import CA-signed certificates
Run the following steps on both servers:- cd E:\FLEXnet\manager\{server_type}
- .\jvm\bin\keytool.exe -keystore ".\release\platform\bin\keystore" -import -trustcacerts -alias "root" -file "\\{Admin Server FQDN}\certs\{server_type}_root_signed.cer"
- .\jvm\bin\keytool.exe -keystore ".\release\platform\bin\keystore" -import -trustcacerts -alias "intermediate" -file "\\{Admin Server FQDN}\certs\{server_type}_intermediate_signed.cer"
- .\jvm\bin\keytool.exe -keystore ".\release\platform\bin\keystore" -import -trustcacerts -alias "tomcat" -file "\\{Admin Server FQDN}\certs\{server_type}_signed.cer"
- Export certificates
Run the following steps on both servers:- cd E:\FLEXnet\manager\{server_type}
- .\jvm\bin\keytool.exe -keystore ".\release\platform\bin\keystore" -storepass "flexnet" -alias "root" -exportcert -file "\\{Admin Server FQDN}\certs\{server_type})root.cer"
- .\jvm\bin\keytool.exe -keystore ".\release\platform\bin\keystore" -storepass "flexnet" -alias "intermediate" -exportcert -file "\\{Admin Server FQDN}\certs\{server_type}_intermediate.cer"
- .\jvm\bin\keytool.exe -keystore ".\release\platform\bin\keystore" -storepass "flexnet" -alias "tomcat" -exportcert -file "\\{Admin Server FQDN}\certs\{server_type}.cer"
- Import certificates into truststores
Run the following steps on both servers:- cd E:\FLEXnet\manager\{server_type}
- .\jvm\bin\keytool.exe -keystore ".\jvm\lib\security\cacerts" -storepass "changeit" -import -alias {peer_server} -file "\\{Admin Server FQDN}\certs\{peer_server}.cer" -trustcacerts -noprompt
- .\jvm\bin\keytool.exe -keystore ".\jvm\lib\security\cacerts" -storepass "changeit" -import -alias {peer_server}_root -file "\\{Admin Server FQDN}\certs\{peer_server}_root.cer" -trustcacerts -noprompt
- .\jvm\bin\keytool.exe -keystore ".\jvm\lib\security\cacerts" -storepass "changeit" -import -alias {peer_server}_intermediate -file "\\{Admin Server FQDN}\certs\{peer_server}_intermediate.cer" -trustcacerts -noprompt
Replace {peer_server} with admin on the Reporting Server and reporting on the Admin Server.
- Import Cognos root certificate (Optional: if Cognos is used)
Run this command on both servers:
.\jvm\bin\keytool.exe -keystore ".\jvm\lib\security\cacerts" -storepass "changeit" -import -alias cognos_root -file "\\{Admin Server FQDN}\certs\cognos_root.cer" -trustcacerts -noprompt
Hi, I am Reva - Ask me anything.
No new updates
Thanks for the feedback!
Your feedback has been saved.Rate this response:
Add Additional feedback ( Optional )
Are you sure you want to cancel
the case creation?
Are you sure you want to cancel the case creation?
Are you sure you want to close this case
| Products | Region | Phone Numbers |
|---|---|---|
| FlexNet Operations FlexNet Embedded FlexNet Publisher FlexNet Connect FlexNet Code Insight InstallAnywhere InstallShield |
North America * |
+1 630-332-2513 (toll) +1 877-279-2853 (toll-free in North America) |
| Europe * |
+44 1925 944367 (toll) +44 800 047 8642 (toll-free in Europe) |
|
| Japan * | +81 3-4540-5335 (select option 2) | |
| Australia * |
+61 3 9895 2177 +61 1800 560 603 (toll-free in Australia) |
|
|
Usage Intelligence (formerly
Revulytics) Compliance Intelligence |
Please use the Case Portal to submit your support ticket or reach out to your Revenera contact. | |
Case id: 00001065
Activity: Status change: 2 hours ago