Install a Thawte SSL123 Certificate on BEA Weblogic 8.1

Solution ID:    SO4139
Version:    4.0
Published:    12/13/2007
Updated:    03/13/2012

Problem

Install certificate
Install certificate on BEA Weblogic

Solution

To install a Thawte SSL123 Certificate on BEA Weblogic 8.1, follow the instructions below:
 
 
Step1. Download your Thawte certificate
 
1. You will receive an email when your certificate is issued.
 
2. Download your certificate as per the instruction on the following solution: SO13187
 
3. Select the 'PKCS#7' format option and click Pick Up certificate

4. Copy and Paste your Thawte certificate to Notepad and save as a certificate.crt
 
 
Step2.  Install your Thawte certificate
 
 
Import the Thawte certificate into the keystore you created using the following command:
 
 
keytool -import -alias [keyEntry_friendly_name] -file certificate.crt -keystore [keystore_friendly_name]
 
 
Step3. Configure the Identity and Trust keystores for WebLogic Server
 
 
1. Expand the Servers node.
 
 
2. Select the name of the server for which you want to configure keystores. 

3. Select the button 'Keystores and SSL tab' to configure the keystore for the domain.
 
 
4. By default, WebLogic ships with demo certificates for testing purposes. Click the 'Change' link in the upper-right portion of the configuration items. This will display the drop-down list of options for configuration.
 
 
5. Choose 'Custom Identity and Java Standard Trust' from the list.
 
 
6. Specify the identity keystore information.
 
 
[Custom identity]
 
Custom Identity key store file Name: c:\where\my\keystore\is\located\mykeystore.keystore (The fully qualified path to your keystore)
 
Custom Identity key Store Type: jks (Generally, this attribute is jks)
 
Custom Identity key Store Pass Phrase: keystore_password (The password defined when creating the keystore)
 
Confirm Customer Identity key Store Pass Phrase: Keystore_password (The password defined when creating the keystore)
 
[Java Standard Trust]
 
Java standard Trust Key Store Pass Phrase: changeit (unless your system admin changed it the password for the cacerts keystore is "changeit")
 
Confirm Java Standard Trust Key Store Pass Phrase: changeit (unless your system admin changed it the password for the cacerts keystore is "changeit")
 
Click 'continue'
 
[Review SSL Private Key Settings]
 
Private key Alias: keyEntry_friendly_name (the alias is the friendly name for your keyEntry (private key), if you do not remember it please run the following command on your keystore to confirm the alias: keytool -list -keystore [keystore_friendly_name] -v)
 
Passphrase: keyEntry_password (specify the keyEntry (private key) password. The password for the private key may differ from the one for the keystore)
 
Confirm Passphrase: keyEntry_password (specify the keyEntry (private key) password. The password for the private key may differ from the one for the keystore)
 
 
7. Click 'continue'
 
 
8. Click Finish.
 
 
9. Reboot WebLogic Server.

Note: The padlock icon on your browser will be displayed in the locked position if your certificates are installed correctly and the server is properly configured for SSL. You can also use our installation checker on the following solution: SO9555

Legacy ID

vs34192

Disclaimer:

Thawte has made efforts to ensure the accuracy and completeness of the information in this document. However, Thawte makes no warranties of any kind (whether express, implied or statutory) with respect to the information contained herein. Thawte assumes no liability to any party for any loss or damage (whether direct or indirect) caused by any errors, omissions, or statements of any kind contained in this document. Further, Thawte assumes no liability arising from the application or use of the product or service described herein and specifically disclaims any representation that the products or services described herein do not infringe upon any existing or future intellectual property rights. Nothing herein grants the reader any license to make, use, or sell equipment or products constructed in accordance with this document. Finally, all rights and privileges related to any intellectual property right described herein are vested in the patent, trademark, or service mark owner, and no other person may exercise such rights without express permission, authority, or license secured from the patent, trademark, or service mark owner. Thawte reserves the right to make changes to any information herein without further notice.  

Knowledge Center


Search Tips