In the CLI of the quorum server software, run the export tls_cert command to export the device information. The qs_certreq.csr file is generated in the /opt/quorum_server/export_import directory on the quorum server.
admin:/>export tls_cert Command executed successfully.
chown quorumsvr:quorumsvr qs_certreq.csr
In this example, quorumsvr is the default installation user of the quorum server software. Change it to the actual user and user group you use to install the quorum server software.
0. SHA256RSA
1. SHA256ECDSA
admin:/>generate tls_cert csr=qs_certreq.csr cert_name=qs_certreq.crt Command executed successfully.
chown quorumsvr:quorumsvr *.csr
In this example, quorumsvr is the default installation user of the quorum server software. Change it to the actual user and user group you use to install the quorum server software.
0. SHA256RSA
1. SHA256ECDSA
admin:/>generate tls_cert_multi [SUCCEED]generate cert for csr file:[qs_certreq.csr] succeed! [SUCCEED]generate cert for csr file:[qs_certreq_1.csr] succeed! [SUCCEED]generate cert for csr file:[qs_certreq_2.csr] succeed! ------all 3 csr files<succeed 3 files and failed 0 files>------ Command executed successfully.
ll /opt/quorum_server/export_import total 28 -rw-r--r--. 1 quorumsvr quorumsvr 1927 Jun 3 09:03 cps_ca.crt -rw-r--r--. 1 quorumsvr quorumsvr 1476 Jun 3 09:03 qs_certreq_2.crt -r--------. 1 quorumsvr quorumsvr 976 Jun 3 09:00 qs_certreq_2.csr -rw-r--r--. 1 quorumsvr quorumsvr 1476 Jun 3 09:03 qs_certreq_1.crt -r--------. 1 quorumsvr quorumsvr 976 Jun 3 09:00 qs_certreq_1.csr -rw-r--r--. 1 quorumsvr quorumsvr 1476 Jun 3 09:03 qs_certreq.crt -r--------. 1 quorumsvr quorumsvr 976 Jun 3 08:55 qs_certreq.csr
After the certificates are generated, copy the digital certificate of the quorum server (for example, qs_cert.crt) and the CA certificate (for example, cps_ca.crt) to the /opt/quorum_server/export_import directory.
In the CLI of the quorum server software, run the import tls_cert cert_name=hm_third_cert ca=cps_ca.crt cert=qs_cert.crt [private_key=privateKeyFileName] class=hm command to import the certificate to the quorum server software.
admin:/>import tls_cert cert_name=hm_third_cert ca=cps_ca.crt cert=qs_cert.crt class=hm Command executed successfully.
When importing a HyperMetro certificate, you must set cert_name to hm_third_cert and class to hm.