Importing the IP routing Load Balancer public key to the WebSphere key stores

The public key from the Certificate Authority must be shared by the IP routing Load Balancer and the WebSphere® SIP Proxy server to allow TLS SIP connections.

About this task

Copy the ca-cert.pem certificate file from the IP routing Load Balancer to the WebSphere Deployment Manager file system, then import it into the CellDefaultTrustStore key store.

Procedure

  1. On the server where you installed the Certificate Authority, navigate to the directory where it is installed (for example, ca-bleached) and locate the ca-cert.pem file.
  2. Copy this file to the file system of your WebSphere Deployment Manager.
  3. On the WebSphere Deployment Manager Console, click Security > SSL certificates and key management > Key Stores and Certificates.
  4. Click CellDefaultTrustStore.
  5. Click Signer certificates.
  6. Click Add.
  7. Give the certificate a name that associates it with the Certificate Authority, such as CA-Signer-Cert.
  8. Select the ca-cert.pem file that you copied from the IP routing Load Balancer.
  9. Click OK.
  10. Click Save.