Server certificate management
Certificates used for communication between the servers (AutoStore, DWS, Equitrac, and Output Manager) must meet the following requirements:
-
Be valid as of the current date. Expired certificates need to be replaced.
-
Have a subject or alternative subject name that matches the address entered in DRS.
If the network environment requires servers to communicate using IP addresses, and there is not one on the certificate, modify the hosts file on DWS to use the subject common name on the certificate. See the web server documentation for instructions.
-
If the certificate is self-signed, DRS must be configured to allow self-signed certificates. If you do not want to use self-signed certificates, it must be from a certificate authority listed in the Java keystore (typically C:\Program Files\Nuance\Shared Services\DWS\JDK\jre\lib\security\cacerts).
-
Match the previously pinned certificate.
These certificates are listed in DWS on the Security tab. You can review the certificates and delete and re-pin them as needed.
Follow these instructions for installing and viewing the certificates.
Server certificates for Equitrac and Output Manager
Follow these steps to install server certificates for Equitrac and Output Manager.
Server certificate for AutoStore
Install the AutoStore server certificate by doing the following:
- Select .
- In the Company field, enter the same server name that was entered in DRS.
- Enter a password.
- Restart the AutoStore service.