You must create Avaya Breeze® certificates keystore for validating tokens.
Procedure
Log in to the Cluster Control Manager (CCM) console as the customer user.
Switch to being the root user by entering the command su.
To run the Analytics Administration script, use the following command:
ccm release orca analytics
Select Deployment by pressing the corresponding number.
Select the Create Certificates for authentication and token validation option by entering the corresponding number.
The CCM console displays the following message:
Select which keystore you would like to configure.
Create keystore for Oceana Authentication.
Create Breeze Certs keystore to validate tokens.
In the Please select the type of certs you would like to create field, enter the number corresponding to the Create Breeze Certs keystore to validate tokens option.
To confirm that you saved the renamed identity-cert PEM files to CCM and in the directory that was used in the Create Certificate Signing Request (CSR) for Oceana Authentication option, enter y.
Entering n cancels the operation.
To store the certificates this procedure creates, enter the location of the path on CCM.
The default path is /home/cust/ssl.
At the prompt, enter the name of the Avaya Breeze® node 1 identity certificate.
For example, identity-cert-1.pem.
At the prompt, enter the name of the Avaya Breeze® node 2 identity certificate.
For example, identity-cert-2.pem.
At the prompt, enter the name of the Avaya Breeze® node 3 identity certificate.
For example, identity-cert-3.pem. If not applicable, leave blank.
Enter the password for the Avaya Oceana® Authentication cert keystore.
The CCM console displays the message that the certificate was added to the keystore.
Enter the full URL for the Avaya Oceana®Avaya Breeze® 1 TokenEndpoint.
Enter the full URL for the Avaya Oceana®Avaya Breeze® 2 TokenEndpoint.
For 100 agents footprint configuration, enter the full URL of the Avaya Oceana®Avaya Breeze® 3 TokenEndpoint, if applicable.
Enter the Avaya Oceana® clientKey. For example, MFyaFHFyRAKXXTiH9Ss6uA.
Wait for the CCM console to create the breeze-security secret and restart the orca-breeze-authentication pod.