Key management
Java Keytool
Before you start
6 min
verify your environment meets these requirements supported hardware {{vectera}} , 7 2 x x or later supported operating systems windows 10 or later linux required access an account on the {{vectera}} with administrator permissions to create application partitions, identities, tls pki, and update system settings local administrator/root privileges on the computer where java keytool is installed network and firewall allow outbound tcp port 9100 (default excrypt port) from the computer running java keytool to the {{vectera}} , specified by fqdn (for example, hsm example com ) or cidr (for example, 10 0 0 0/24 ) tls inspection or ssl proxies can break mutual tls handshakes exempt the {{vectera}} fqdn(s) from inspection configure the vectera plus with a fqdn so the exemption applies other openssl oracle java 11, 17, or 21 to ensure proper compatibility between java sunpkcs11 and the {{futurex}} pkcs11 module, you must use oracle java instead of openjdk we support oracle java 11, 17, and 21