The certificate on IBM Spectrum Protect backup server sdc-busrv02.umd.edu will expire June 2, 2021 8:00:00 AM. In order to prepare for a transition to a new root certificate provider, our testing has indicated that existing clients need to manually install the root and intermediate certificates for Incommon-signed certificates. Please, follow the instructions below to install the certificate on each IBM Spectrum Protect client by 06/01/2021.
Windows:
View the default dsm.opt (C:\Program Files\tivoli\tsm\baclient\dsm.opt) file for the following parameter and value:
TCPSERVERADDRESS sdc-busrv02.umd.edu
Linux:
View the dsm.sys (/opt/tivoli/tsm/client/ba/bin/dsm.sys) file for the following parameter:
TCPSERVERADDRESS sdc-busrv02.umd.edu
1.
/Program Files/Tivoli/TSM/baclient/
cd /Program Files/Tivoli/TSM/baclient
dsmcert -add -server sdc-busrv02.umd.edu -file incommon_comodo_interm.arm
dsmcert -add -server sdc-busrv02.umd.edu -file incommon_intermroot.arm
dsmc q sched
2.
IF you install the certificate successful , but still not connecting to sdc-busrv02.umd.edu do the following
cd /Program Files/Tivoli/TSM/baclient/
dsmcert.crl
dsmcert.idx
dsmcert.kdb
dsmcert.rdb
dsmcert.sth
3.
If you get the "ANS1592E Failed to initialize SSL protocol."
sdc-busrv02.umd.edu -file
cert256.arm cd /opt/tivoli/tsm/client/ba/ bin
dsmcert -add -server sdc-busrv02.umd.edu -file /<pathtoincomdir>/incommon_ comodo_interm.arm
dsmcert -add -server sdc-busrv02.umd.edu -file /<pathtoincomdir>/incommon_ intermroot.arm
dsmc q sched