ALERT: Some images may not load properly within the Knowledge Base Article. If you see a broken image, please right-click and select 'Open image in a new tab'. We apologize for this inconvenience.

Renewal of expired internal certificates on all GWs/PDPs - Solution Commands Flow

book

Article ID: 238602

calendar_today

Updated On:

Products

Web Isolation

Issue/Introduction

Renewal of expired internal certificates on all GWs/PDPs - Solution Commands Flow.

Environment

Release: 1.14.50

Resolution

registerEndpoint('certificatesRenewalEndpoint', require('../Flow/CertificatesRenewal/CertificatesRenewalEndpoint.js'), 'unique');

container.register('certificatesRenewalBusinessLayer', require('../Flow/CertificatesRenewal/CertificatesRenewalBusinessLayer.js'), 'unique');

node certificateScript.js --service get-management-certificates --path-to-dir ~/filesForCertificateRenewal/inputOutputDirectories/managementCertificatesBackup

node certificateScript.js --service generate-ca-and-client --path-to-dir ~/filesForCertificateRenewal/inputOutputDirectories/managementDatabaseCertificates

node  certificateScript.js --service sign-csr --input-file pdp.csr --path-to-dir ~/filesForCertificateRenewal/inputOutputDirectories/$PDP_DIR

openssl x509 -enddate -noout -in ca_certificate.pem

openssl x509 -enddate -noout -in pdp_cert.pem

cp /var/fireglass/async_services_storage/async_services.csr ~/filesForCertificateRenewal/inputOutputDirectories/management

node certificateScript.js --service sign-csr --input-file async_services.csr --path-to-dir ~/filesForCertificateRenewal/inputOutputDirectories/management

node  certificateScript.js --service sign-csr --input-file async_services.csr --path-to-dir ~/filesForCertificateRenewal/inputOutputDirectories/$GW_DIR

node  certificateScript.js --service sign-csr --input-file pdp.csr --path-to-dir ~/filesForCertificateRenewal/inputOutputDirectories/$PDP_DIR

cd/tmp