Configuring Keystore for Utimaco HSM

  1. Access IBM WebSphere Application server Admin console: http://<IPADDRESS:9043/ibm/console> using web browser

  2. Provide username and password to login.

  3. Click on Security -> SSL certificate and key management -> under Related Items section select Key stores and certificates.

tmpfa33_9z6.jpg

SSL certificate and key management page

  1. Click on New... button.

tmp4ept5_rb.jpg

Key stores and certificates page

  1. Provide the following details related to Utimaco HSM in the below fields:

    1. Name: Name of the keystore for example Utimaco

    2. Path: Path to library. For example /etc/utimaco/pkcs11.cfg for Linux and C:\\Program Files\\Utimaco\\pkcs11.cfg for Windows

    3. Password: Slot PIN

    4. Confirm Password : Enter Slot PIN again

    5. Type : Select Cryptographic Token Device (PKCS11)

    6. Read Only : Check this option

On Linux

tmp_7nrasq0.jpg

Creating keystore for Utimaco HSM on Linux

On Windows

tmp7xaewgj0.jpg

Creating keystore for Utimaco HSM on Windows

  1. Click on Apply and OK.

  2. Click on Save to save the changes when the message pops up.

tmppk41ft2m.jpg

Messages to save/review the changes