How to secure TFA port (5000) with custom CA signed certs
Hello,
I have up to date TFA running in a two-node RAC:
[root@rachost1 ~]# tfactl print status
.---------------------------------------------------------------------------------------------------.
| Host | Status of TFA | PID | Port | Version | Build ID | Inventory Status |
+--------------+---------------+------+------+------------+----------------------+------------------+
| rachost1 | RUNNING | 3292 | 5000 | 20.1.3.0.0 | 20130020200429095054 | COMPLETE |
| rachost2 | RUNNING | 3303 | 5000 | 20.1.3.0.0 | 20130020200429095054 | COMPLETE |
'--------------+---------------+------+------+------------+----------------------+------------------'
Need to secure the TFA port 5000 with custom signed CA. The documentation:
19.7.3 Configuring CA-Signed Certificates
does not seem to be complete. I have prepared my own JKS: myserver.jks, myclient.jks, and ready to run the command: