Super Contributor.
Super Contributor.

Replace ext server cert with new ext server cert issued by

Replace ext server cert with new ext server cert issued by same CA.

We use a eDir external CA and I need to redo the server certificates size 2048
Once I have created the certificates and run the zman sacert for each of the 4 primary servers in the zone, I need to refresh all the devices
in order for the newly imported Primary server certificates to be sent to all the workstations / devices as configuration data.

I then need to enforce the new certificates with novell-zenworks-configure -c SSL -Z
Do I only do this once all 5000 devices have been refreshed and If I enforce the certificates prior to all devices being refreshed, will those that have not
yet been refreshed still be able to communicate with the servers and receive the new certificate info.
I would hate to refresh and enforce the certificates and find I have lost comms with lots of devices.

We have a combination of ZCM 11.2 and ZCM 10.3.1 agents running. I want to sort all the certificates out before I update the majority of agents out there from ZCM 10.3.1 to 11.2

Labels (2)
1 Reply
Absent Member.
Absent Member.

Re: Replace ext server cert with new ext server cert issued by


It appears that in the past few days you have not received a response to your
posting. That concerns us, and has triggered this automated reply.

Has your problem been resolved? If not, you might try one of the following options:

- Visit http://www.novell.com/support and search the knowledgebase and/or check all
the other self support options and support programs available.
- You could also try posting your message again. Make sure it is posted in the
correct newsgroup. (http://forums.novell.com)

Be sure to read the forum FAQ about what to expect in the way of responses:

If this is a reply to a duplicate posting, please ignore and accept our apologies
and rest assured we will issue a stern reprimand to our posting bot.

Good luck!

Your Novell Forums Team

The opinions expressed above are the personal opinions of the authors, not of Micro Focus. By using this site, you accept the Terms of Use and Rules of Participation. Certain versions of content ("Material") accessible here may contain branding from Hewlett-Packard Company (now HP Inc.) and Hewlett Packard Enterprise Company. As of September 1, 2017, the Material is now offered by Micro Focus, a separately owned and operated company. Any reference to the HP and Hewlett Packard Enterprise/HPE marks is historical in nature, and the HP and Hewlett Packard Enterprise/HPE marks are the property of their respective owners.