<?xml version="1.0" encoding="UTF-8"?><!-- generator="wordpress/2.3.2" -->
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	>
<channel>
	<title>Comments on: How to Access Oracle GridControl 10.2 Agents via HTTPS/Port 443</title>
	<link>http://www.pythian.com/blogs/709/how-to-access-oracle-gridcontrol-102-agents-via-https-port-443</link>
	<description>News and views from Pythian DBAs</description>
	<pubDate>Tue, 14 Oct 2008 03:37:31 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.3.2</generator>
		<item>
		<title>By: Grégory</title>
		<link>http://www.pythian.com/blogs/709/how-to-access-oracle-gridcontrol-102-agents-via-https-port-443#comment-138544</link>
		<dc:creator>Grégory</dc:creator>
		<pubDate>Sat, 08 Dec 2007 02:30:46 +0000</pubDate>
		<guid>http://www.pythian.com/blogs/709/how-to-access-oracle-gridcontrol-102-agents-via-https-port-443#comment-138544</guid>
		<description>Marco,

1) Your congrats :
Thanks. Yes, I'm glad I've found this one ! 0:-) 

2) Your question :
On the Server Side, the SSL key comes with OHS not the OMS that run behind it. If you want to setup a new certificate, you'll have to set it at this level... This is what you'd like to do to setup a certificate from a valid certificate authority. The problem of the agent stopping could come from it using HTTP as a primary protocol or something I don't know about ! 
On the agent side, this is another story as the SSL key is actually downloaded from the OMS when you secure the agent with "emctl secure agent". In that case, I don't know if the key is regenerated every time you run the command.

So to answer your question, none of "emctl lock oms" and "emctl secure oms ..." should generate the SSL certificate. 

-Grégory

PS: I can be wrong (Probability : 50%)</description>
		<content:encoded><![CDATA[<p>Marco,</p>
<p>1) Your congrats :<br />
Thanks. Yes, I&#8217;m glad I&#8217;ve found this one ! 0:-) </p>
<p>2) Your question :<br />
On the Server Side, the SSL key comes with OHS not the OMS that run behind it. If you want to setup a new certificate, you&#8217;ll have to set it at this level&#8230; This is what you&#8217;d like to do to setup a certificate from a valid certificate authority. The problem of the agent stopping could come from it using HTTP as a primary protocol or something I don&#8217;t know about !<br />
On the agent side, this is another story as the SSL key is actually downloaded from the OMS when you secure the agent with &#8220;emctl secure agent&#8221;. In that case, I don&#8217;t know if the key is regenerated every time you run the command.</p>
<p>So to answer your question, none of &#8220;emctl lock oms&#8221; and &#8220;emctl secure oms &#8230;&#8221; should generate the SSL certificate. </p>
<p>-Grégory</p>
<p>PS: I can be wrong (Probability : 50%)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Marco Gralike</title>
		<link>http://www.pythian.com/blogs/709/how-to-access-oracle-gridcontrol-102-agents-via-https-port-443#comment-138267</link>
		<dc:creator>Marco Gralike</dc:creator>
		<pubDate>Fri, 07 Dec 2007 08:01:16 +0000</pubDate>
		<guid>http://www.pythian.com/blogs/709/how-to-access-oracle-gridcontrol-102-agents-via-https-port-443#comment-138267</guid>
		<description>OH, by the way, GOOD post.!

8-)</description>
		<content:encoded><![CDATA[<p>OH, by the way, GOOD post.!</p>
<p>8-)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Marco Gralike</title>
		<link>http://www.pythian.com/blogs/709/how-to-access-oracle-gridcontrol-102-agents-via-https-port-443#comment-138266</link>
		<dc:creator>Marco Gralike</dc:creator>
		<pubDate>Fri, 07 Dec 2007 08:00:33 +0000</pubDate>
		<guid>http://www.pythian.com/blogs/709/how-to-access-oracle-gridcontrol-102-agents-via-https-port-443#comment-138266</guid>
		<description>Grégory, do you know if, when you lock OMS down via "emctl lock oms", the SSL keys will be refreshed as well? I once noticed that agent / OMS traphic stopt while locking OMS down, but I didn't really checked.</description>
		<content:encoded><![CDATA[<p>Grégory, do you know if, when you lock OMS down via &#8220;emctl lock oms&#8221;, the SSL keys will be refreshed as well? I once noticed that agent / OMS traphic stopt while locking OMS down, but I didn&#8217;t really checked.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
