Obtaining and installing an Active Directory server private certificate on a client system - Documentation for TrueSight Middleware and Transaction Monitor 8.1
In order for the product to authenticate connections to the domain controllers, the TrueSight Middleware and Transaction Monitor (TMTM) administrator might need Active Directory server private certificates from a certificate authority (CA). The need for a CA certificate is based on configuration settings specified in the securityconfig tool and maintained in the services.cfg file. Administrators can import private certificates during installation or they can manually import them, which is the process described in this procedure.
TMTM can use two SSL security keystores; one for the TMTM Application Service in secure mode, the other when configuring Active Directory. These are different keystores and should not be confused.
Your company can use a pool of domain controllers or an enterprise domain controller.
- If you use an enterprise domain controller, use the enterprise server CA certificate in this procedure.
- If you use a pool of domain controllers, use the server certificates from each domain controller in turn in this procedure. The domain controller that hosts Certificate Services in the Enterprise Root CA role might or might not be the same domain controller that TMTM is being configured to use for authentication.