In this section: |
This section describes how to configure trust store management.
Download the client certificate (sfdc-client.cert) from the Salesforce Web site.
Download the intermediate certificate (for example, symantecclass3ca.cer) and the root certificate (for example, symantecintermediateca.cer) according to the client certificate.
Use the following command to import the root certificate:
D:\ certificate>keytool -import -alias symantec_root_ca -file symantecclass3ca.cer -keystore truststore.jks -storepass iwaysoft
Use the following command to import the intermediate certificate:
D:\ certificate>keytool -import -alias symantec_intermediate_ca -file symantecintermediateca.cer -keystore truststore.jks -storepass iwaysoft
Before you import the client certificate, verify that the alias is compliant to the certificate.alias key, which is defined in the Salesforce adapter configuration file (LocalStrings.properties). The default is salesforce.
Use the following command to import the client certificate:
D:\certificate>keytool -import -alias salesforce -file sfdc-client.cert -keystore truststore.jks -storepass iwaysoft
Depending on your environment, the following error may be generated during the import process:
keytool error: java.lang.Exception: Input not an X.509 certificate.
As a workaround, you must transform the client certificate format to a Base64 encoded binary format.
Note: Before you continue, make sure that the root certificate is installed.
Perform the following steps:
The Open dialog box is displayed.
The Internet Options dialog box opens.
The Certificates dialog box opens.
D:\certificate>keytool -import -alias salesforce -file sfdc-client.cert -keystore truststore.jks -storepass iwaysoft
WebFOCUS |