The Data Center Security (DCS) Certificate Utility

book

Article ID: 170379

calendar_today

Updated On:

Products

Embedded Security Critical System Protection Critical System Protection Data Center Security Monitoring Edition Data Center Security Server Data Center Security Server Advanced

Issue/Introduction

You must use a Trusted Signed Certificate or regenerate the Self-Signed Certificates

Products supported
Symantec Data Center Security DCS 6.5
Symantec Data Center Security DCS 6.7
Symantec Data Center Security DCS 6.8
Symantec Embedded Security: Critical System Protection (SES:CSP) 6.5, 7.0 or Critical System Protection (CSP) 7.2.

Environment

DCS 6.5.x, 6.7.x, 6.8.x

SES:CSP 6.5, 7.0, 7.1

CSP 7.2

Resolution

The DCS Certificate Utility is used for:

  • Creation of the Certificate Signing Requests needed for the umcserver.ssl, sss.ssl, server-cert.ssl and agent-cert.ssl keystores needed to issue Trusted Signed Certificates.
  • Importing of the Trusted Signed Certificates to the DCS Keystores.
  • Recreation of the self-signed certificates

Attached is the Utility and the Readme file.

Note: If DCS was installed using the IP Address, you must update the <DCS Installation Directory>\umc\umc.properties UMC_Server_IP field with the FQDN that was used with the DCS Certificate Utility.

Example of some umc.properties parameters:

UMC_SERVER_IP = dcs-esx6.samad2k8.com
UMC_SERVER_PORT = 8443
UMC_SERVER_SCHEME = https
UMC_SERVER_SERVICE = umcservices
UMC_SERVER_SERVICE_TOKEN_VALIDATION_API = /rest/v1.0/auth/token/validate

Note: DCS 6.9 is not supported at this time for this version of the utility

Additional Information

Depending on Windows Server version, it OS will have either .net 3.0, .net 3.5, or .net 4.0

We have included the DCS_Cert_Utility_1.7.17.zip that has been complied for each of these three versions. 
File name in this KB - 1596713545094__DCS67CertUtility-1.7.17.zip
DCS_Cert_Utility_1.7.17_net30.zip
DCS_Cert_Utility_1.7.17_net35.zip
DCS_Cert_Utility_1.7.17_net40.zip

Generally speaking, your Windows Server will contain the following .net versions
Server 2008 - .net 3.0 or .net 3.5
Server 2012 and up - .net 4.0

Attachments

1596713545094__DCS67CertUtility-1.7.17.zip get_app
DCS_Cert_Utility_1-6-9-02.zip get_app
DCS Certificate Utility ReadMe.txt get_app