Update Domain Structure in Oracle Web Console to use HSM for SSL

  1. Open the Administration Console using the link http://hostname:7001/console. Navigate to Domain Structure > Environment.

  2. Click Servers.

  3. Click AdminServer as shown in the figure.

tmpk7bcffox.jpg

Updating AdminServer

  1. Select the SSL Listen Port Enabled checkbox and click Save.

tmpkonusaoi.jpg

Enabling SSL configuration

  1. Open the Keystores tab and then complete the following steps:

    1. Click on the Change button.

    2. From the drop-down menu, select Custom Identity and Custom Trust and click Save.

tmpm5r5_q50.jpg

Updating the keystore configuration

c. In the Custom Identity Keystore field, enter CryptoServer.

d. In the Custom Identity Keystore Type field, enter CryptoServer.

e. In the Custom Identity Keystore Passphrase and Confirm Custom Identity Keystore Passphrase fields, enter the password for the HSM.

f. In the Custom Trust Keystore field, enter CryptoServer.

g. In the Custom Trust Keystore Type field, enter CryptoServer.

h. In the Custom Trust Keystore Passphrase and Confirm Custom Trust Keystore Passphrase fields, enter the password for the HSM and click Save, as shown below.

tmpk2umts_v.jpg

Updating the keystore configuration

  1. Open the SSL tab.

    1. In the Private Key Alias field, enter the name of the SSL key generated on the HSM (e.g., weblogiceckey.

    2. In the Private Key Passphrase field, leave the field empty and click on Save.

tmpve8_n6f7.jpg

Updating SSL private key

  1. Restart the WebLogic server by clicking on Environment > Servers. Click on AdminServer, then click on control tab, and lastly click on restart the SSL.

tmpgrxzbdz_.jpg

Restarting SSL

  1. After restarting the WebLogic server, access the Administration console over https using https://hostname:7002/console.

tmpajgty30y.jpg

WebLogic service status over https

This completes the integration of Oracle WebLogic Server with Utimaco SecurityServer.