Blackberry PRD-10459-016 Administration Guide - Page 165

Add a certificate for the BlackBerry MDS Connection Service

Page 165 highlights

Administration Guide Permitting push applications to make trusted connections to a BlackBerry MDS Connection Service 2. On the Mobile Data Service tab, configure the key store information. Only one key store can exist. The file must be named webserver.keystore and it must be located at :\Program Files\Research In Motion\BlackBerry Enterprise Server\MDS\webserver. 3. Click Create Keystore File. 4. If prompted to overwrite a key store, click Yes. 5. Click OK. Add a certificate for the BlackBerry MDS Connection Service To permit server-side push applications to open trusted HTTPS connections to a BlackBerry® MDS Connection Service and push application data and application updates to BlackBerry devices, you must add a certificate for the BlackBerry MDS Connection Service to the webserver.keystore file. 1. On the computer that hosts the BlackBerry MDS Connection Service, navigate to :\Program Files\Java \\bin. 2. At the command prompt, perform one of the following tasks: Task Create a self-signed certificate for the BlackBerry MDS Connection Service and add it to the key store. Add a publicly signed certificate to the key store. Steps a. Type keytool -genkey -alias tomcat -keyalg RSA keystore webserver.keystore. b. Type the required information. c. To confirm the information that you typed, type Yes. a. Type keytool -import -trustcacerts -alias tomcat -file -keystore webserver.keystore. b. Type the key store password. c. When prompted, click Yes. 3. Copy the key store file to :\Program Files\Research In Motion\BlackBerry Enterprise Server\MDS \webserver. After you finish: Export the certificate for the BlackBerry MDS Connection Service to make it available to other applications. Export the BlackBerry MDS Connection Service certificate to make it available to push applications You must export the certificate for the BlackBerry® MDS Connection Service so that you can import it to the key store of a server-side push application. Before you begin: Add a self-signed or publicly signed certificate for the BlackBerry MDS Connection Service to the key store. 1. On the computer that hosts the BlackBerry MDS Connection Service, navigate to :\Program Files\Java \\bin. 163

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336
  • 337
  • 338
  • 339
  • 340
  • 341
  • 342
  • 343
  • 344
  • 345
  • 346
  • 347
  • 348
  • 349
  • 350
  • 351
  • 352
  • 353
  • 354
  • 355
  • 356
  • 357
  • 358
  • 359
  • 360
  • 361
  • 362
  • 363
  • 364
  • 365
  • 366
  • 367
  • 368
  • 369
  • 370
  • 371
  • 372
  • 373
  • 374
  • 375
  • 376
  • 377
  • 378
  • 379
  • 380
  • 381
  • 382
  • 383
  • 384
  • 385
  • 386
  • 387
  • 388
  • 389
  • 390
  • 391
  • 392
  • 393
  • 394
  • 395
  • 396
  • 397
  • 398
  • 399
  • 400
  • 401
  • 402
  • 403
  • 404
  • 405
  • 406
  • 407
  • 408
  • 409
  • 410
  • 411
  • 412
  • 413
  • 414
  • 415
  • 416
  • 417
  • 418
  • 419
  • 420
  • 421
  • 422
  • 423
  • 424
  • 425
  • 426
  • 427
  • 428
  • 429
  • 430
  • 431
  • 432

2.
On the
Mobile Data Service
tab, configure the key store information. Only one key store can exist. The file must
be named webserver.keystore and it must be located at
<drive>
:\Program Files\Research In Motion\BlackBerry
Enterprise Server\MDS\webserver.
3.
Click
Create Keystore File
.
4.
If prompted to overwrite a key store, click
Yes
.
5.
Click
OK
.
Add a certificate for the BlackBerry MDS Connection Service
To permit server-side push applications to open trusted HTTPS connections to a BlackBerry® MDS Connection Service
and push application data and application updates to BlackBerry devices, you must add a certificate for the BlackBerry
MDS Connection Service to the webserver.keystore file.
1.
On the computer that hosts the BlackBerry MDS Connection Service, navigate to
<drive>
:\Program Files\Java
\
<JRE_version>
\bin.
2.
At the command prompt, perform one of the following tasks:
Task
Steps
Create a self-signed certificate for the BlackBerry MDS
Connection Service and add it to the key store.
a.
Type
keytool -genkey -alias tomcat -keyalg RSA -
keystore webserver.keystore
.
b.
Type the required information.
c.
To confirm the information that you typed, type
Yes
.
Add a publicly signed certificate to the key store.
a.
Type
keytool -import -trustcacerts -alias tomcat -file
<trustedserver.cer>
-keystore webserver.keystore
.
b.
Type the key store password.
c.
When prompted, click
Yes
.
3.
Copy the key store file to
<drive>
:\Program Files\Research In Motion\BlackBerry Enterprise Server\MDS
\webserver.
After you finish:
Export the certificate for the BlackBerry MDS Connection Service to make it available to other
applications.
Export the BlackBerry MDS Connection Service certificate to make it
available to push applications
You must export the certificate for the BlackBerry® MDS Connection Service so that you can import it to the key store
of a server-side push application.
Before you begin:
Add a self-signed or publicly signed certificate for the BlackBerry MDS Connection Service to the
key store.
1.
On the computer that hosts the BlackBerry MDS Connection Service, navigate to
<drive>
:\Program Files\Java
\
<JRE_version>
\bin.
Administration Guide
Permitting push applications to make trusted connections to a BlackBerry MDS Connection Service
163