Ask a Question

Advanced Search

Alert ID : INFO120

Last Modified : 12/18/2018

Installation Instructions for Lotus Domino 5.x


This document provides instructions for installing SSL Certificates. If you are unable to use these instructions for your server, Symantec recommends that you contact either the vendor of your software or an organization that supports Domino R5.
Step 1: Download the Root and Intermediate CA Certificates

NOTE: Ensure that the correct Root and Intermediate CA certificate has been selected for your SSL product.  
To check which certificate type you have purchased, follow the steps from this link: SO13499
  • Download the Root CA certificate from this link:  SO4785
  • Copy the file to your clipboard and save it as TrustedRoot.txt
  • Download the Intermediate CA certificate from this link: INFO657
    Select the appropriate Intermediate CA certificate for your SSL Certificate type.
  • Copy the Intermediate CA certificate and paste it on your clipboard
  • Make sure there are 5 dashes to either side of the BEGIN CERTIFICATE and END CERTIFICATE and that no white spaces, extra line breaks or additional characters have been inadvertently added.
  • Save the file as intermediate.txt

    Step 2: Install the Root and Intermediate CA Certificates
  • Open the Server Certificate Admin database and click "View & Edit Key Rings".
  • Click "Select Key Ring to Display" and enter your server's key ring file.
  • Click "Create Key Rings & Certificates" option in the Server Certificate Admin database.
  • Click "Install Trusted Root Certificate into Key Ring."
  • Enter the server's key ring file name in the Key Ring Information section.
  • In the "Certificate Label" field enter the name of the Root CA 
  • Return to the Domino Server Certificate Admin document. Paste the TrustedRoot.txt into the "Certificate from Clipboard" area.
  • Click the "Merge Trusted Root Certificate into Key Ring" button. This adds the certificate to your key ring.
  • Repeat the steps to install the intermediate.txt 

    Step 3: Obtain the SSL Certificate

  1. The theantec certificate will be sent by email. The certificate will be included as an attachment (Cert.cer) and it will be
    also imbedded in the body of the email. Copy and paste the certificate into a text file using Vi or Notepad.
    Do not use Microsoft Word or other word processing programs that may add characters.

    The text file should look like:

              [encoded data]

    -----END CERTIFICATE-----

    Make sure there are 5 dashes to either side of the BEGIN CERTIFICATE and END CERTIFICATE and that no white space, extra line breaks or additional characters have been inadvertently added.

    NOTE:The certificate can be also downloaded from the Symantec Trust Center account by following the steps from this link: SO8061
    When downloading the certificate, please select X.509 as a certificate format and copy only the End Entity Certificate.
  2. Save the file as SSL.txt

Step 4: Install thr SSL Certificate

  1. In Notes, from the administration panel, click System Databases and choose Open Domino Server Certificate Administration (CERTSRV.NSF) on the local machine.
  2. Click Install Certificate into Key Ring
  3. Enter the file name for the key ring that will store this certificate. You created this key ring file when you created the server certificate request.
  4. Choose one of the following options
  5. If you copied the contents of the certificate to the clipboard in Step 1, select Clipboard in the "Certificate Source" field. Paste the clipboard contents into the next field.
    If you received a file that contained your certificate in Step 1, detach the file to your hard drive and select File in the "Certificate Source" field. Enter the file name in the File name field.
  6. Click "Merge Certificate into Key Ring."
  7. Enter the password for the server key ring file and click OK to approve the merge.
  8. To verify if your certificate is installed correctly, use the Symantec Installation Checker

Lotus Domino R5.x
         For more information refer to the Lotus Support Center.