Symantec Access Management

 View Only

Tech Tip : CA Single Sign-On : We would like to know the location of the federation certificate store.

  • 1.  Tech Tip : CA Single Sign-On : We would like to know the location of the federation certificate store.

    Broadcom Employee
    Posted Oct 31, 2018 05:16 AM

    Question:


    I'm running a Policy Server and I'd like to know where the Federation
    Certificate Store is located.

     

    Answer:

     

    At first glance, from Policy Server 12.x, the certificates are located
    within the Policy Store in a specific section called CDS (Certificate
    Data Store). You can access them with the AdminUI and also get some
    details running XPSExplorer command.

     

    Synchronize Key Database Instances for r6.x

     

    "Previous versions of the Policy Server used a local smkeydatabase to
    store certificate data. Each Policy Server required its own
    smkeydatabase. For versions 12.5x and later, a centralized
    certificate data store (CDS) replaced the smkeydatabase."

     

    https://docops.ca.com/ca-single-sign-on/12-52-sp1/en/upgrading/migration-upgrade-from-r6-x/how-to-migrate-from-r6-x/synchronize-key-database-instances-for-r6-x

     

    KB : KB000118727