Hitachi

JP1 Version 12 JP1/Automatic Job Management System 3 Configuration Guide


21.4.1 JP1/AJS3 system configuration and SSL communication setup procedure

To use SSL communication in a JP1/AJS3 system, server hosts require server certificates, and client hosts require root certificates. Therefore, the procedure for setting up SSL communication varies depending on the JP1/AJS3 system configuration.

For details about server and root certificates, see 2.3.6 Encryption of JP1/AJS3 communications with SSL in the JP1/Automatic Job Management System 3 System Design (Configuration) Guide.

Referring to the figure and table below, set up SSL communication by using a procedure appropriate for the configuration of your JP1/AJS3 system. Note that the numbers shown in the figure correspond to the item numbers in the table.

Figure 21‒2: System configurations and corresponding SSL communication setup procedures

[Figure]

No.

Description

Reference

1

This system configuration excludes the Web Console server. The system consists of JP1/AJS3 - Manager, JP1/AJS3 - Agent, and JP1/AJS3 - View.

21.4.2 SSL communication setup procedure (in a manager/agent configuration)

2

This system configuration has a Web Console server and a manager host as different hosts. Separate server certificates are obtained for these hosts.

21.4.3 SSL communication setup procedure (when different server certificates are used for manager host and Web Console server)

3

This system configuration has a Web Console server and a manager host as the same hosts.

This configuration is applied in cases, such as performing a new installation of JP1/AJS3, in which SSL communication is not set up for the whole system.

A server certificate is obtained for the Web Console server, and the same server certificate is also set on the manager host.

21.4.4 SSL communication setup procedure (when the server certificate for Web Console server is used for manager host)

4

This system configuration has a Web Console server and a manager host as the same hosts.

This configuration is applied in cases, such as performing a new installation of Web Console server in an existing JP1/AJS3 system, in which the server certificate for the manager host has already been obtained.

The server certificate obtained for the manager host is copied, and the copy is used for the Web Console server.

21.4.5 SSL communication setup procedure (when the server certificate for manager host is used for Web Console server)

5

This system configuration has a Web Console server and a manager host that are installed on a single server (machine) but given different host names. This configuration is applied when logical hosts are used or in other cases.

Separate server certificates must be obtained for the manager host and Web Console server.

21.4.3 SSL communication setup procedure (when different server certificates are used for manager host and Web Console server)

Supplementary note:

Every certificate has an expiration date. Manage the certificates by using an appropriate method, and renew them before they expire.