beautypg.com

HP Identity Driven Manager Software Series User Manual

Page 118

background image

3-64

Using Identity Driven Manager
Using the User Import Wizard

7.

Click

Next to continue to the

Extract Users and Groups

window.

Importing LDAP X509 User Certificates into a Keystore:

If you are using a JKS Keystore, the X509 User Certificate must be installed in
a keystore on the IDM server. You can get the X509 User Certificate from your
LDAP Administrator.

For example, if the X509 User Certificate is " myldapcert.cer"

and the alias is "mycert", use the following command to import the
certificate in a keystore in c:\idmuser\mykeystore on your IDM server:

C:\idmuser> keytool -import -file myldapcert.cer -alias

mycert -trustcacerts -keystore .\mykeystore

If you are using a PKCS12 keystore, ask your LDAP Administrator to provide
you PKCS12 certificate along with the key. Enter the PKCS certificate in the
Keystore field, and enter the PKCS12 key in the Password field.