The steps for Kron PAM Server (within the Secure Zone)
The configurations for Kron PAM Server:
·        All required PAM services (including auth) should be actively working on 10.10.0.1.
·        On the System Configuration Man. page of the Kron PAM GUI, mobile.tomcat.url should be set with Kron PAM Mobile App Server’s info. (E.g., https://10.10.0.2:9443/mobile-api/rest)
·        The following jobs related to push notification system should be defined on the Kron PAM GUI: SCPolicyNotifierJob, SendPushMessageJob.
·        Using the RSA key pair created with the aioc alias, the environment configurations (kron-commons-config) in the Docker container on the Kron PAM server can be accessed by the Kron PAM Mobile App Server. For this, instead of using the customer's existing key pair, a self-signed certificate is used. This RSA key pair is stored in different formats and keystore files (PKCS#12 and JKS) but with the same alias (aioc). The jks and p12 files located at /pam/docker-mgmt/cert should be recreated with keytool commands, in this scenario. (If the Kron PAM server and Kron PAM Mobile App Server are installed on the same server, these files should stand as is).

LISTING the certificates’ configurations:
JKS:
sudo keytool -list -v -keystore /pam/docker-mgmt/cert/aioc.jks -storepass krondev10P12:
sudo keytool -list -v -keystore /pam/docker-mgmt/cert/aioc.p12 -storepass krondev10 -storetype PKCS12DELETING the certificates’ configurations:
JKS:
sudo keytool -delete -alias aioc -keystore /pam/docker-mgmt/cert/aioc.jks -storepass krondev10P12:
sudo keytool -delete -alias aioc -keystore /pam/docker-mgmt/cert/aioc.p12 -storepass krondev10DELETING the certificate files:
JKS:
rm -rf /pam/docker-mgmt/cert/aioc.jksP12:
rm -rf /pam/docker-mgmt/cert/aioc.p12CREATING the certificate files and configurations:
JKS:
P12:
·        The following keytool command should be executed to import certificate:
·        The ownership and mode configurations should be changed for these files:
·        Lastly, all of the docker services on the Kron PAM server should be restarted. (down & up)