Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

If you have not installed KeyStore Explorer, download and install the application.

Dashboard and SQL Diagnostic Manager installed on the same server

  1. Launch the KeyStore Explorer application, as an Administrator.
  2. Open the keystore file used for the IDERA Dashboard. When prompted for a password, enter "password", and click OK.Image Added
  3. Right-click on the keypair, select Export, and choose Export Private Key.
    Image Added
  4. When the Unlock Entry for the Keypair prompts, enter "password", and click OK.
  5. On the Export Private Key Type window, select OpenSSL, and click OK.
  6. On the Export Private Key as OpenSSL from Keystore Entry window, deselect the Encrypt option, update the Export File field if needed, and click OK.Image Added
  7. Install OpenSSL, you can find the available options for this software OpenSSL. Once the installation is complete, launch the Command Prompt with elevated permissions.
  8. Change the directory to the bin folder where the OpenSSL was installed. For example, enter the following command to change the directory:

    Code Block
    languageactionscript3
    themeConfluence
    cd "C:\Program Files\OpenSSL-Win64\bin"
  9. Use the following command as an example to generate the PFX key using the private key and certificate that you previously created.
    openssl pkcs12 -export -out <file path to the new personal information exchange file>.pfx -inkey <file path path to the private key>.key -in <file path to the certificate>.cer

    Code Block
    languageactionscript3
    themeConfluence
    openssl pkcs -export -out "C:\Program Files\Idera\Dashboard\WebApplication\conf\keystore.pfx" -inkey "C:\Program Files\Idera\Dashboard\WebApplication\conf\localhostone.key" -in "C:\Program Files\Idera\Dashboard\WebApplication\conf\localhostone.cer"

    Once you execute the command, you need to Enter the Export password and the verification password:
    Image Added

    The PFX key has been created as a result of the command.

  10. Open the Microsoft Management Console (MMC) by selecting Run from the Start menu, enter mmc, and click OK.

    Image Added
    a. When the MMC window opens, click File from the menu toolbar, and select Add/Remove Snap-in...
    b. The Add or Remove Snap-ins window opens, Add Certificates, and click OK.
    c. In the Certificates snap-in window, select Computer Account, and select Next.
    d. In the Select Computer Window, make sure Local Computer is selected, and click Finish.
    e. Close the Add or Remove Snap-in window by clicking OK.
    Image Added

  11. Expand Certificates, right-click the Personal folder, select All Tasks, and click Import...
    Image Added

12. When the Certificate Import Wizard open, follow the instuctions to importa the PFX file that you previously created.

Image Added

13. Retrieve the thumprint of the imported PFX key.

a. Double-click the imported PFX key.

b. On the Certificate window, go to the Details tab.

c. Scroll-down and click Thumbprint. You need to copy the characters from the box.

Note

If the thumbprint has extra spaces between the hexadecimal numbers, remove them. For example, the thumbprint ""a9 09 50 2d d8 2a e4 14 33 e6 f8 38 86 b0 0d 42 77 a3 2a 7b" should be edited to ""a909502dd82ae41433e6f83886b00d4277a32a7b".

14. To find the GUID for SQL Diagnostic Manager, follow the instructions of thid guide: Product GUID of installed software with PowerShell.

15. After having the Thumbprint number, and the GUID. follow this last steps to binf the new PFX key by using the commands below:

a. Open CMD as an Administrator, execute the following command to delete existing bindings to the IDERA SQL Diagnostic Manager Rest Service:

Code Block
languageactionscript3
themeConfluence
netsh http delete ssl 0.0.0.0:5171

b. Bind the PFX key by using the following command in an elevated command prompt session:

Code Block
languageactionscript3
themeConfluence
netsh
http
add sslcert ipport=0.0.0.0:5171 certhash=thumbprint of the PFX Key (remove spaces between) appid={GUID} client certnegotiation=enable