Configure HTTPS transport for your application server's Web container
Perform these steps in the WebSphere administrative console:
Start the administrative console.
If you are using the key file that is provided with the product (Version 5.0.1 and later) to configure SSL for the Web server plug-in, skip to step Configure an HTTPS transport.
Perform the following steps to create an SSL repertoire:
- In the left pane, expand Security
- Click SSL
- In the right hand pane, click New
- Specify the following configuration settings:
- Alias: (the name of your SSL repertoire, for example mySSLSettings)
- Key File Name: USER_INSTALL_ROOT/etc/appServerKeys.jks
- Key File Password: Enter your password
- Key File Format: Select JKS
- Trust File Name: USER_INSTALL_ROOT/etc/appServerKeys.jks
Typically, you would create a separate trust file for your signer certificates. However, a previous step added the certificate for the CA that signed the plug-in's certificate to appServerKeys.jks, we use appServerKeys.jks here, also.
- Trust File Password: Enter your password
- Trust File Format: Select JKS
- Client Authentication: selected
Click OK
- In the left pane, expand Servers
- Click Application Servers
- Int the right hand pane, click your application server name
- Click the Configuration tab
- Click Web Container
- Click HTTP transports
- Click New
- Specify the following configuration settings:
- Host: *
- Port: Enter the port number to use for your Web container's SSL port
- SSL Enabled: select Enable SSL
- SSL: If you are using the key file that is provided with the product (as of Version 5.0.1) to configure SSL for the Web server plug-in, select the DefaultSettings SSL repertoire. Otherwise, select mySSLSettings.
Click OK
Save your changes.
Restart your application server.
Start the administrative console.
In the left hand pane of the administrative console, expand Environment and click Update Web Server Plugin.
Click OK.
If you previously made manual changes to the Web server plugin configuration file (USER_INSTALL_ROOT/config/cell/plugin-cfg.xml), you may need to manually reapply those changes before restarting the Web server.
Restart the Web server to immediately pick up changes to the Web server plugin configuration file.