Enabling SSL connection for Context Store replication from DC1 to DC2

Last Updated : Feb 13, 2023 |

About this task

Use this procedure to enable Context Store replication from DC1 to the geo-redundant Context Store in DC2.

Note:

Context Store replication functions only when DC1 has the security certificate.

Procedure

  1. Download the Root CA certificate to a location from where you can import it to Avaya Oceana® Cluster 1 nodes in DC2.
  2. Create a new identity certificate or keystore certificate file signed by your Root CA for the Avaya Oceana® Cluster 1 FQDN and Avaya Breeze® platform nodes in DC2.
  3. Log on as a root user and copy the Root CA certificate and generated keystore file to all Avaya Oceana® Cluster 1 nodes in DC2.

    If you use Avaya Aura® System Manager as a CA function, you can retrieve the Root CA certificate as a .pem file from the primary System Manager in DC1.

    On the System Manager host, verify that the file ownerships are set to wsuser:susers and the permissions are set to 775, similar to the other files in the Gigaspaces security folder.

    If you use a third-party CA, consult the CA documentation and procedures for methods to retrieve the CA certificate.