11.In the same directory, edit the
serverCertNick.conf
file to contain the old certificate
nickname. For example:
Server-Cert cert-old_DRM_instance
2.2. Option 2: Security Databases to HSM Migration
1. Remove all the security databases in the Certificate System 7.3 which will receive migrated
data.
rm /var/lib/instance_ID/alias/cert8.db
rm /var/lib/instance_ID/alias/key3.db
NOTE
On Certificate Management System 6.0x, the certificate database is
cert7.db
,
not
cert8.db
.
2. Copy the certificate and key security databases from the 6.x server to the 7.3 server.
cp old_server_root/alias/cert-old_DRM_instance-cert8.db
/var/lib/instance_ID/alias/cert8.db
cp old_server_root/alias/cert-old_DRM_instance-key3.db
/var/lib/instance_ID/alias/key3.db
3. Open the Certificate System
/alias
directory.
cd /var/lib/instance_ID/alias/
4. Log in as
root
.
5. Set the file user and group to the Certificate System user and group.
# chown user:group cert8.db
# chown user:group key3.db
6. Log out as
root
, and log back into the system as the Certificate System user.
Chapter 5. Step 4: Migrating Security Databases
26