Skip to main content
Verify your environment meets these requirements.

Supported hardware

  • Vectera Plus, 7.2.x.x or later.
  • Fedora 28
Dogtag Certificate System is designed to be deployed on the Fedora Linux operating system. Futurex offers versions of the Futurex PKCS #11 library for RHEL 7, RHEL 8, and RHEL 9. We recommend installing Dogtag on Fedora 28, which is based on RHEL 8 and has been fully tested. If you plan to install Dogtag on a non-Fedora system, you must manually build the system by following the instructions at the following link: https://github.com/dogtagpki/pki

Required access

  • An account on the Vectera Plus with administrator permissions to create application partitions, identities, TLS PKI, and update system settings.
  • Local administrator/root access on the Fedora Linux machine running Dogtag Certificate System.

Network and firewall

  • Allow outbound TCP port9100(default Excrypt port) from the Fedora machine running Dogtag Certificate System to the Vectera Plus, specified by FQDN (for example, hsm.example.com) or CIDR (for example, 10.0.0.0/24).
TLS inspection or SSL proxies can break mutual TLS handshakes. Exempt the Vectera Plus FQDN(s) from inspection. Configure the Vectera Plus with a FQDN so the exemption applies.

Other

  • OpenSSL
  • Dogtag Certificate System