<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: OCI DWH and Cognos Reporting in Active IQ Unified Manager Discussions</title>
    <link>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/OCI-DWH-and-Cognos-Reporting/m-p/114070#M20227</link>
    <description>&lt;P&gt;The provided steps are not in the current documentation.&amp;nbsp; I have submitted the information provided to have in productized in our documentation.&amp;nbsp;&amp;nbsp; For clarity purposes, did you determine what the problem was?&lt;/P&gt;</description>
    <pubDate>Wed, 23 Dec 2015 14:55:40 GMT</pubDate>
    <dc:creator>dbourque</dc:creator>
    <dc:date>2015-12-23T14:55:40Z</dc:date>
    <item>
      <title>OCI DWH and Cognos Reporting</title>
      <link>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/OCI-DWH-and-Cognos-Reporting/m-p/114035#M20220</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;SPAN class="long_text"&gt;&lt;SPAN&gt;Does anyone have experience with the exchange of certificates on Cognos Server ?&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="long_text"&gt;&lt;SPAN&gt;We like to import our own Certificates.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="long_text"&gt;&lt;SPAN&gt;I try this&amp;nbsp;&lt;SPAN class="short_text"&gt;as described in the Cognos documentation ,&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="long_text"&gt;&lt;SPAN&gt;&lt;SPAN class="short_text"&gt;create signrequest / encryptrequest....&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="long_text"&gt;&lt;SPAN&gt;&lt;SPAN class="short_text"&gt;create cert in our CA&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="long_text"&gt;&lt;SPAN&gt;&lt;SPAN class="short_text"&gt;import cert&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="long_text"&gt;&lt;SPAN&gt;&lt;SPAN class="short_text"&gt;config cognos to Use third party CA,&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="long_text"&gt;&lt;SPAN&gt;&lt;SPAN class="short_text"&gt;but the Report Server show always the selfsigned Cert from the Basic Installation.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="long_text"&gt;&lt;SPAN&gt;&lt;SPAN class="short_text"&gt;Thanks Michael&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 04 Jun 2025 22:27:05 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/OCI-DWH-and-Cognos-Reporting/m-p/114035#M20220</guid>
      <dc:creator>sstrznwra</dc:creator>
      <dc:date>2025-06-04T22:27:05Z</dc:date>
    </item>
    <item>
      <title>Re: OCI DWH and Cognos Reporting</title>
      <link>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/OCI-DWH-and-Cognos-Reporting/m-p/114037#M20221</link>
      <description>&lt;P&gt;Michael,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The following previously answered thread may help you.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The jboss we ship is SSL enabled with a self signed cert out of the box. On OCI 7.0.x, we no longer ship Apache, and instead use Jboss to front-end the Cognos components. Theoretically, this procedure should work to replace the self signed SSL certs on each OCI operational server as well as DWH.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The Jboss certs/keys are stored in the java keystore. The password is changeit.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;..\SANscreen\jboss\server\onaro\cert&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Contains the keystore – backup this file, and at any point, you can safely revert to your original keystore by reverting to your backup, and restarting the “SANscreen Server” service, along with all acquisition units.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Oracle ships a keytool with Java. It should be in your ..\java\bin folder&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;##############&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;First, understand what is in the keystore by doing a verbose list&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;keytool -list -v -keystore "c:\Program Files\SANscreen\jboss\server\onaro\cert\server.keystore"&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Alias name: ABC&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We may need to purge certain keys:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;keytool&amp;nbsp; -delete -alias localhost -keystore "c:\Program Files\SANscreen\jboss\server\onaro\cert\server.keystore"&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Then, generate new key&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;keytool -genkey -alias localhost -keyalg RSA -keysize 2048 -keystore "c:\Program Files\SANscreen\jboss\server\onaro\cert\server.keystore"&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;What is key is that when you are asked for "What is your first and last name?" you respond with the FQDN you expect to use&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;After a variety of questions about organization and structure, you will be prompted:&lt;/P&gt;&lt;P&gt;Is CN=localhost, OU=Waltham, O=NetApp, L=Waltham, ST=MA, C=US correct?&lt;/P&gt;&lt;P&gt;[no]&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Only type in yes when the Common Name (CN) value is accurately displaying the FQDN&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Enter key password for &amp;lt;localhost&amp;gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; (RETURN if same as keystore password):&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;keytool -certreq -alias localhost&amp;nbsp; -keystore "c:\Program Files\SANscreen\jboss\server\onaro\cert\server.keystore" -file c:\localhost.csr&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The c:\localhost.csr file is the certificate request. Submit it to your CA. Once it is approved, you want the cert returned to you in DER format. This may may or may not be a .der extension. Microsoft CA services defaults to a .cer extension.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;keytool -importcert&amp;nbsp; -alias localhost -file c:\localhost2.cer -keystore "c:\Program Files\SANscreen\jboss\server\onaro\cert\server.keystore"&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You will be prompted for the keystore password, and you should receive:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Certificate reply was installed in keystore&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;At this point, if you restart the “SANscreen Server” service, you should find that it is using the CA signed certs. Your web browser should no longer throw certificate errors because the signer of the certs is not trusted&lt;/P&gt;</description>
      <pubDate>Tue, 22 Dec 2015 13:17:52 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/OCI-DWH-and-Cognos-Reporting/m-p/114037#M20221</guid>
      <dc:creator>dbourque</dc:creator>
      <dc:date>2015-12-22T13:17:52Z</dc:date>
    </item>
    <item>
      <title>Re: OCI DWH and Cognos Reporting</title>
      <link>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/OCI-DWH-and-Cognos-Reporting/m-p/114061#M20226</link>
      <description>&lt;P&gt;dbbourque,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks very much , it was very helpfull.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Can I find this in OCI Documentation ?&lt;/P&gt;</description>
      <pubDate>Wed, 23 Dec 2015 10:46:49 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/OCI-DWH-and-Cognos-Reporting/m-p/114061#M20226</guid>
      <dc:creator>sstrznwra</dc:creator>
      <dc:date>2015-12-23T10:46:49Z</dc:date>
    </item>
    <item>
      <title>Re: OCI DWH and Cognos Reporting</title>
      <link>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/OCI-DWH-and-Cognos-Reporting/m-p/114070#M20227</link>
      <description>&lt;P&gt;The provided steps are not in the current documentation.&amp;nbsp; I have submitted the information provided to have in productized in our documentation.&amp;nbsp;&amp;nbsp; For clarity purposes, did you determine what the problem was?&lt;/P&gt;</description>
      <pubDate>Wed, 23 Dec 2015 14:55:40 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/OCI-DWH-and-Cognos-Reporting/m-p/114070#M20227</guid>
      <dc:creator>dbourque</dc:creator>
      <dc:date>2015-12-23T14:55:40Z</dc:date>
    </item>
    <item>
      <title>Re: OCI DWH and Cognos Reporting</title>
      <link>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/OCI-DWH-and-Cognos-Reporting/m-p/114155#M20234</link>
      <description>&lt;P&gt;hi,&lt;/P&gt;&lt;P&gt;the problem was that we create and import the cert´s directly on the cognos server and not on the front end ( jboss )&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thanks&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 29 Dec 2015 14:50:51 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/OCI-DWH-and-Cognos-Reporting/m-p/114155#M20234</guid>
      <dc:creator>sstrznwra</dc:creator>
      <dc:date>2015-12-29T14:50:51Z</dc:date>
    </item>
  </channel>
</rss>

