No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

FusionStorage V100R006C20 Object Storage Service Security Maintenance 03

Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
Importing CA Certificates

Importing CA Certificates

Before FusionStorage builds Secure Sockets Layer (SSL) connections with server ends such as Identity and Access Management (IAM), Business Support System (BSS), or FusionStorage in another region, you must import CA certificates provided by service ends. This section explains how to import CA certificates and we suggest that the security certificate should be updated regularly.

Prerequisites

CA certificate files provided by service ends have been obtained.

Procedure

  1. Start PUTTY and enter the management IP address to log in as account omuser to the cluster. The default password is Omuser@storage.

    Run the su - root command to switch to user root. The default password is Root@storage.

  2. Import a CA certificate.

    Run the sh /opt/obs/scripts/poe/clientssl_action.sh import CA certificate path and name command and create an alias for the CA certificate as prompted. For example, if the certificate path and name are /home/omuser and ca.crt respectively, and the alias is testimport, the command is as follows:
    sh /opt/obs/scripts/poe/clientssl_action.sh import /home/omuser/ca.crt
    This node is cm master node.
    Please input aliasname:
    testimport
    CA certification import succeeded!
    

  3. For the object storage service, if versions of two regions (region A and region B) are different and the regions use certificates generated by the object storage service certificate tool provided with FusionStorage, you need to import the CA certificate of region A to region B and that of region B to region A.
Translation
Download
Updated: 2019-02-01

Document ID: EDOC1100016657

Views: 5195

Downloads: 5

Average rating:
This Document Applies to these Products
Related Documents
Related Version
Share
Previous Next