Updating the ws-federation certificate
You can review and update the ws-federation
certificate as required. You must re-import this certificate every ten years.
-
On a command prompt, run
keytool -list -v -keystore .ssokeystore
to view the validity dates of the ws-federation certificate. -
To update the certificate, create a new certificate for Infor OS or Infor Local
Technology Runtime as STS.
- From a command line in LSF, run
ssoconfig -c
and specify the ssoconfig password. - From the main menu of ssoconfig, select Manage WS Federation Settings.
- Select Manage WS Federation Certificate.
- Select Export WS Federation Certificate.
- Specify the file path where the certificate is to be stored and ensure the file name ends
with a .cer extension. For example,
c:\certs\sts.cer.Note: This file serves as a backup.
- Select Delete WS Federation Certificate.
- Select Create certificate for WS Federation. This action creates the new certificate and saves it in the repository.
- To export the new certificate, repeat steps d and e.
- Move this certificate to your Infor OS or Infor Local Technology Runtime as an STS system, the location where Infor OS or Infor Local Technology Runtime is hosted. Use your preferred tool to do this.
- From a command line in LSF, run
-
Update the Lawson SP Connection with the new certificate.
- Using the STSAdminUI on the Infor OS or Infor Local Technology Runtime server, select STS Panel > SP Connection.
- Open the correct Lawson Portal connection using the pencil icon.
- Select the file folder and navigate to the updated certificate you saved from the previous step.
- Click the save icon. No server restart is required after making this update.