Application Servers

An application server is a software framework that provides both facilities to create applications and a server environment to run them. Most application server frameworks contain a comprehensive service layer model, acting as a set of components accessible to the software developer through an API defined by the platform itself. For Web applications, these components are usually performed in the same running environment as their web server(s), and their main job is to support the construction of dynamic pages. However, many application servers target much more than just Web page generation: they implement services like clustering, fail-over, and load-balancing.

Share tech news, updates, or what's on your mind.

Sign up to Post

Convert websphere application server default chained Certificates from 1024 to 2048 keysize or higher size and also you can change signatureAlgorithm .

Please make sure Websphere Application Server fixpack 7.0.0.23 or Above. The following steps applicable only on Websphere Application server fixpack 7.0.0.23 or Above


During installation of Websphere Application Server v7.0 it comes default keystore and root CA has default 1024 bit key size. With this approach, you upgrade the root CA key size to a 2048 bit root certificate and it will increase level of security for vulnerabilities

Please see the following steps.

NOTE: This document assumes that you are using a default SSL configuration and Default SSL keystores.

1) Run backupConfig on the Deployment Manager.
backupConfig command

You can use backupconfig -nostop
-nostop
    Tells the backupConfig command not to stop the servers before backing up the configuration

C:\WebSpherev7.0.0.23\profiles\Dmgr01\bin>wsadmin

The following  command update key size and algorithm

$AdminTask convertCertForSecurityStandard {-fipsLevel FIPS140-2 -signatureAlgorithm SHA256withRSA -keySize 2048 }

The following command update key size

$AdminTask convertCertForSecurityStandard {-fipsLevel FIPS140-2 -keySize 2048 }

The following command save the above configuration changes.

$AdminConfig save

The above Command will update and replace all default certificate that comes in websphere application …
0
 
LVL 41

Expert Comment

by:HonorGod
Comment Utility
Technically, one can not "convert" a certificate (not even the expiration date).  Only a new certificate can be generated, or requested from a Certificate Authority (CA).
0
 
LVL 8

Author Comment

by:AdminRAM
Comment Utility
convert option will generated new cert and replace automatically and it will still remain WAS default certificate which will be monitor by certificate expiration monitor tool in WAS.
0
Learn how to optimize MySQL for your business need
LVL 3
Learn how to optimize MySQL for your business need

With the increasing importance of apps & networks in both business & personal interconnections, perfor. has become one of the key metrics of successful communication. This ebook is a hands-on business-case-driven guide to understanding MySQL query parameter tuning & database perf

Application Servers

An application server is a software framework that provides both facilities to create applications and a server environment to run them. Most application server frameworks contain a comprehensive service layer model, acting as a set of components accessible to the software developer through an API defined by the platform itself. For Web applications, these components are usually performed in the same running environment as their web server(s), and their main job is to support the construction of dynamic pages. However, many application servers target much more than just Web page generation: they implement services like clustering, fail-over, and load-balancing.

Top Experts In
Application Servers
<
Monthly
>