By: Andrej Simon user 04 Jun 2022 at 4:37 p.m. CDT

Greatings, I have installed Gluu server. I have found out, that OpenDJ has got the self signed certificate: certtool --certificate-info --infile /opt/gluu-server/etc/certs/opendj.crt X.509 Certificate Information: Version: 3 Serial Number (hex): 403690ea Issuer: CN=localhost,O=OpenDJ RSA Self-Signed Certificate <===== Validity: Not Before: Sat Jun 04 08:55:43 UTC 2022 Not After: Fri May 30 08:55:43 UTC 2042 Subject: CN=localhost,O=OpenDJ RSA Self-Signed Certificate <===== Subject Public Key Algorithm: RSA ... Apparently the CA was also the self signed certificate. If yes, where can I find it? The OpenDJ is created for the "CN=localhsot". But why? I have assumed, it shoud be the FQDN of my host? Regards, Andrej

By Mohib Zico staff 04 Jun 2022 at 10:13 p.m. CDT

Yes, that's fine. OpenDJ is using localhost because it's listening only localhost due to security issue. Changing OpenDJ cert is not recommended at all but even if you do that, there are lot of articles available in internet.

By Michael Schwartz Account Admin 05 Jun 2022 at 12:08 p.m. CDT

And it's in `/etc/certs`

By Andrej Simon user 05 Jun 2022 at 3:20 p.m. CDT

