Skip to main content


         This documentation site is for previous versions. Visit our new documentation site for current releases.      
 

Updating the Pega Process Fabric Hub keystore

Updated on November 9, 2021

Create a safe and secure connection between the Pega Process Fabric Hub and your remote application by updating the Pega Process Fabric Hub keystore that the Pega Process Fabric Hub uses to communicate with remote applications.

A keystore is a file that contains keys and certificates that you use for encryption, authentication, and serving content over HTTPS. You source a keystore from a data page, a URL, a keystore management service, or an external file. The Pega Process Fabric Hub includes a default keystore that expires, so you need to update the keystore by uploading a file. The Pega Process Fabric Hub supports the following keystore types:

  • JKS
  • JWK
  • PKCS12
  • KEYTAB
  • KEY
Note: Updating the default PPFKP keystore Pega Process Fabric Hub is mandatory for the correct communication between the Pega Process Fabric Hub and your remote application, because the default keystore might be expired.
Note: If your business scenario requires a keystore location other than an uploaded file, you need to delete the default PPFKP keystore and create a new keystore with the PPFKP name. For more information, see Creating a keystore for application data encryption.
  1. In the navigation pane of Dev Studio, click Records.
  2. Expand the Security category, and then click Keystore.
  3. In the list of instances, select PPFKS.
    Result: The system displays the keystore rule form. By default, the system sources the PPFKS keystore location from the uploaded file. You cannot select a different keystore location.
  4. On the Main tab of the keystore rule form, click Upload file.
  5. In the Upload file dialog box, click Choose File.
  6. In the dialog box, navigate to the file that you want to upload, and then click Open.
  7. Click Upload file.
  8. In the Keystore type field, select a keystore type that mathes your uploaded file.
  9. In the Keystore password field, enter the password to secure the keystore.
  10. Click Save.
  11. Ensure that the Pega Process Fabric Hub can correctly communicate with remote applications by updating the PPFToRemoteTokenGeneration token profile:
    1. In the navigation pane of Dev Studio, click Records.
    2. Expand the Security category, and then click Token Profile.
    3. in the list of instances, select PPFToRemoteTokenGeneration.
    4. On the Generation tab, in the Security section, in the Alias and Password fields, provide the values for the updated keystore.
      For example: The following figure shows the Security section of the token profile that includes the fields that store keystore alias and password:
      Updating the token profile for the Pega Process Fabric Hub
      Security section of the token profile rule form with updated keystore alias and password for the Pega Process Fabric Hub
      Note: Ensure that the keystore name is PPFKS.
    5. Click Save.
  • Previous topic Creating an administrative user for the Pega Process Fabric Hub
  • Next topic Pega Process Fabric Hub security dynamic system settings

Have a question? Get answers now.

Visit the Support Center to ask questions, engage in discussions, share ideas, and help others.

Did you find this content helpful?

Want to help us improve this content?

We'd prefer it if you saw us at our best.

Pega.com is not optimized for Internet Explorer. For the optimal experience, please use:

Close Deprecation Notice
Contact us