Important information on upgrading to Sentry CA 3.7 from a previous version.
Originally Published: 2001-07-09
Last Modified: 2023-10-06
Article Number
Applies To
Keon Certificate Authority
TechNote 0206
Issue
This applies to existing Sentry CA 3.5 and 3.6 installations.
Resolution
1) When installing Sentry CA 3.7, the Common Name for the Root CA and the
Administrative CA must be different from the existing installation. This is
because the databases will be merged and two CAs within one installation
of Sentry CA may not have the same Common Name.
2) The database merge will combine the original ACL rules with the new ACL
rules. This generally means access to /ca/ will be open to certificates issued
by the original Administrative CA and the 3.7 Administrative CA. If desired, the
ACL rule can be changed to allow access only to the certificates issued by the
original Administrative CA. At this point, the 3.7 Administrative CA is no longer
used and can be suspended.
It is recommended to contact RSA Support for assistance in planning/deploying an upgraded CA installation.
Related Articles
How to upgrade to Sentry CA 3.6 from a previous version of Sentry CA. 3Number of Views Attribute Change Rule reverts to a previous version after making changes in RSA Identity Governance & Lifecycle 27Number of Views Z: Need to finish - 'Multiple users' showing in role history instead of person or persons who made changes in RSA Identity… 5Number of Views Activity Node Excludes Previous Approvers Without Exclusion Settings in RSA Governance & Lifecycle 6Number of Views log4j:WARN No appenders could be found for logger (trace.com.rsa.ims.security.crypto.config.CryptoConfiguration). Log4J;Wa… 47Number of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device Unable to login to RSA Authentication Manager Security Console as super admin Manual synchronization introduced in RSA Authentication Manager 8.2 Service Pack 1 patch 6 Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory How to verify NTP server synchronization is not working in RSA Authentication Manager 8.x
Don't see what you're looking for?