Print

Generating a new EP Signing Certificate

About this task

You can generate a new EP Signing Certificate if required. However, it is not recommended to make this a frequent operation.

Generating a new EP Signing Certificate will force all Experience Portal servers to replace their current identity certificate with a new identity certificate signed by the new EP Signing Certificate. This will happen on the next restart of the Experience Portal servers’ services.

importantImportant:

After generating a new EP Signing Certificate, restart the Experience Portal servers. On the EPM web interface, go to System Management > EPM Manager or MPP Manager, and restart the servers in the following order:

  1. MPP servers

  2. Auxiliary EPM servers

  3. Primary EPM servers

noteNote:

Do not generate the EP Signing Certificate multiple times without restarting all the Experience Portal servers. This will potentially cause loss of communication between the Experience Portal servers. In case this happens, do the following to regain communication between the servers:

  • Reconnect all MPP servers with the EPM server

  • Reconnect the primary and auxiliary EPM servers

  • Restart the Primary EPM.

For more information, see Reconnecting an existing MPP server with the EPM server and Reconnecting the primary and auxiliary EPM servers.

Procedure

  1. Log on to the EPM web interface.
  2. On the EPM navigation pane, click Security > Certificates.
  3. Click the EP Signing Certificate tab.
  4. Click the Certificate tab.
  5. Click Generate to generate a new EP Signing Certificate.