Setting up an X-Road Security Server
Security Server Installation, Registration and Configuration
Hardware requirements
Operating System Requirements
Network Configuration
FQDN Requirements
Environment
Tier
FQDN Template
Installing X-Road
Provision the xroad POSIX user
xroad POSIX userFollow the installation guide
Certificate generation


Registration
Required configuration for registration
1. Outgoing IP Address of the Security Server
2. FQDN of the Security Server
3. Member's Kennitala / SSN
Registration contact
Example email for registering a Security Server to Central.

Post-registration steps
Disable message payload logging
Software Token PIN
Configure Auto-Login PIN entry functionality
Test auto-login PIN entry functionality
Ensure if all services are up and running
Enable health check endpoint
Initial Configuration
Configuration Anchors




Owner Member

Software Token PIN

CSR certificates



Final steps
Configure Timestamping Services



Configure SIGN and AUTH Keys
SIGN Key






The AUTH key





Import Certificates
Import the AUTH Certificate


Activate auth signed certificate
Import the SIGN Certificate






Confirm communication between two security servers
Removal of Security Server
Ubuntu
RHEL
Last updated
Was this helpful?