Install your Certificates in IBM HTTP
Global Support Centre > SSL Certificates > IBM HTTP > Install Certificates
PART 1: Install the GlobalSign Root CA
- Download the appropriate GlobalSign Root CA from below and save as ‘globalsign_root.txt’.
- DomainSSL & OrganisationSSL: GlobalSign Root CA
- ExtendedSSL: GlobalSign Root CA – R2
- Start the key management utility (iKeyman).
- Open the key database file that was used to create the certificate request.
- Enter the password, and then click OK.
- Select Signer Certificates and then click Add.
- Click Data type, and select a data type, such as Base64-encoded ASCII data. This data type must match the data type of the importing certificate.
- Browse and select ‘globalsign_root.txt’.
- Click OK.
- Enter a label for the importing certificate.
- Click OK.
The Signer Certificates field displays the label of the signer certificate you added.
PART 2: Install the GlobalSign Intermediate(s)
- Download the appropriate GlobalSign Root Validation CA (Intermediate) from below and save as ‘globalsign_intermediate.txt’.
- DomainSSL: Domain Validation Root CA
- OrganisationSSL: Organisation Validation Root CA
- ExtendedSSL: Extended Validation Root CA and Cross Certificate
- Start the key management utility (iKeyman).
- Open the key database file that was used to create the certificate request.
- Enter the password, and then click OK.
- Select Signer Certificates and then click Add.
- Click Data type, and select a data type, such as Base64-encoded ASCII data. This data type must match the data type of the importing certificate.
- Browse and select ‘globalsign_intermediate.txt’.
- Click OK.
- Enter a label for the importing certificate. Click OK.
Note: for ExtendedSSL copy both the intermediate and cross certificate into the same file.
The Signer Certificates field displays the label of the signer certificate you added.
PART 3: Install the SSL Certificate
- Copy your SSL Certificate into a text editor and save as yourdomain.cert.
- Open the IBM Key Management utility (IKEYMAN).
- In the centre of the IKEYMAN displayyou will seea section called Key Database content.
- Click on the dwon arrow to the right to display a list of three choices.
- Select Personal Certificates.
- From the Personal Certificates section, click the Receive button.
- Leave ‘Data Type’ set to default (Base64-encoded ASCII data).
- Browse and select “yourdomain.cert”.
- Click OK on this dialog box
Finally, restart your server

