Automatic SSL configuration for fault-tolerant agents

Configure WebSphere Application Server Liberty Base and fault-tolerant agents in SSL mode

You can now configure WebSphere Application Server Liberty Base and fault-tolerant agents in SSL mode and provide your certificates at installation time using the command-line installation and setting the sslkeysfolder and sslpassword parameters. This ensures encryption in motion for all data moving within your environment.

Note: You are strongly recommended to customize the default certificates straight after the installation process has completed to ensure your environment is secure.

For more information about installation parameters, see Server components installation - serverinst script, and Agent installation parameters - twsinst script.

HCL Workload Automation also generates certificates in GSKit format. To enable FIPS compliance, set the ssl fips enabled option to yes in the localopts file after the installation has completed and restart the product. As a result, options for GSKit are automatically used by HCL Workload Automation.

For more information about the localopts file, see Setting local options.