- Log into the appliance as strongkey user.
- Start a shell window.
- Log into skfs DB as skfsdbuser user.
shell> mariadb -u skfsdbuser -p skfs
- Import DB that was copied over from the old SKFS.
mysql> source /usr/local/strongkey/dbdumps/skfsdbdump-replacement-$(date +%Y-%m-%d).db
- Exit out of Mysql.
- Using a text editor, edit the configuration properties of the SKFS node; if the specified file is empty add these properties:
shell> vi /usr/local/strongkey/appliance/etc/appliance-configuration.properties
appliance.cfg.property.serverid=<ID> (set value to serverID to the same as the old Node)
appliance.cfg.property.replicate=true (should be set to true)
- If any custom configurations have been added to the old skfs, copy over configuration files from old Node to New Node under same directory:
/usr/local/strongkey/skce/etc/skce-configuration.properties
/usr/local/strongkey/skfs/etc/skfs-configuration.properties
- All SKFS instances should use the same JWT and SAML keystores. Therefore, copy the JWT and SAML keys from the old server to replace the keys on this server. These keys can be found in the /usr/local/strongkey/skfs/keystores directory:
shell>scp -r <oldserver.domain-name>:/usr/local/strongkey/skfs/keystores /usr/local/strongkey/skfs
- Restart payara
shell> sudo systemctl restart payara
- Test functionality using the ping web service or the sample skfsadminclient tool:
shell> java -jar skfsclient/skfsadminclient.jar P https://<newserver.domain-name>:8181 1 REST PASSWORD fidoadminuser Abcd1234!
- Log out of SKFS.