ActivCERT

Deploy to LightWave

A LightWave target tells ActivCERT where to install a certificate in LightWave Server or Client. Configure the certificate and required credential first. Open your service in CERTCOM, then add the target using your application's LightWave program location and certificate specification.

Prerequisites

  • Obtain the fully qualified LWSCOM or LWCCOM program file.

  • Identify the LightWave certificate specification.

  • Create a PKCS12 passphrase credential in ActivCERT.

  • Confirm that the LightWave filesystem is initialized and accessible to the ActivCERT process.

ActivCERT derives the LightWave filesystem location from the fully qualified PROGRAM-FILE and supplies that filesystem on every LWxCOM command.

Add LightWave Server and Client targets

Create the target for the LightWave product you use. The two examples show Server and Client configurations; each references the existing web-server certificate and p12-passphrase credential. Adding a target records its configuration without deploying the certificate:

ADD TARGET-LW lws-target, CERTIFICATE web-server, CERT-SPEC server.example.com, PROGRAM-FILE $DATA.LWS.LWSCOM, PASSPHRASE p12-passphrase, IMPORT-CHAIN ON, EXPORT-CHAIN ON
ADD TARGET-LW lwc-target, CERTIFICATE web-server, CERT-SPEC server.example.com, PROGRAM-FILE $DATA.LWC.LWCCOM, PASSPHRASE p12-passphrase, IMPORT-CHAIN ON, EXPORT-CHAIN ON

Use a program file located in the intended LightWave filesystem subvolume. The file name identifies whether ActivCERT runs LWSCOM or LWCCOM. To adopt an existing LightWave certificate and create its managed certificate and source target together, follow Adopt from LightWave.

Deploy and verify

Deploy the current certificate version to the selected LightWave target, wait for completion, and verify the installed result. Then inspect target status and recent deployment records. The example uses the Server target:

DEPLOY TARGET lws-target, WAIT
VERIFY TARGET lws-target, WAIT
STATUS TARGET lws-target, DETAIL
INFO DEPLOYMENT *, TARGET lws-target, RECENT 10

Use the same commands for the LightWave Client target. ROLLBACK TARGET restores the previous successful target version when one is available.