48.1 Checklist for Ensuring SSL Connections

To ensure secure connections among the identity applications, Identity Reporting, SSPR, and OSP, NetIQ recommends that you perform the steps in the following checklist:

Checklist Items

  1. Ensure that you have a keystore to store the authentication certificates. For more information, see Section 48.5, Creating a Keystore and Certificate Signing Request.

  1. (Conditional) In a test environment, use self-signed certificates. For more information, see Section 48.6, Enabling SSL with a Self-signed Certificate.

  1. (Conditional) In a production environment, import a signed certificate. For more information, see Section 48.7, Enabling SSL with a Signed Certificate.

  1. Ensure that you have configured the authentication server, identity applications, and Identity Reporting to support SSL communication. For more information, see Section 48.2, Updating the SSL Settings in the Configuration Utility.

  1. Generate client certificates and copy them to the client workstations. For more information, see Section 48.8, Ensuring Client Workstations Have Certificates.