See below for instructions on upgrading your installation to PKI Hub 1.2.0.
Required version
Cryptographic Security Platform 1.1.0 - PKI Hub 1.2.0 supports upgrading from Cryptographic Security Platform 1.0.0 - PKI Hub 1.1.0.
See https://api.managed.entrust.com/pki/1.0/Upgrading.html for instructions on upgrading to Cryptographic Security Platform 1.0.0 - PKI Hub 1.1.0.
Required solution configuration
If the Validation Authority or Timestamp Authority solutions are already deployed in the upgraded installation, ensure that the value of the following parameter is at least 4096.
Solution | Parameter | Section |
|---|---|---|
Validation authority | Max header bytes | |
Timestamping Authority | Max header bytes |
Upgrade process
See below for how to run the upgrade process.
To upgrade PKI Hub 1.0.0 to 1.1.0
- Follow the steps in Downloading the installation files to download the PKI Hub 1.2.0 for VMware vSphere, Hyper-V and Nutanix file. You need this ISO image file to upgrade any installation, ISO-based or non-ISO-based.
Back up the installation state as explained in the PKI Hub 1.0.0 guide:
https://api.managed.entrust.com/pki/1.0/Backing-up-the-PKI-Hub-state.html- Repeat the following steps sequentially on each PKI Hub node, ensuring they are not performed on multiple nodes simultaneously.
- Using an SFTP, upload the PKI Hub ISO image file to the
/home/sysadminfolder. - Run the clusterctl upgrade command and wait for it to complete (around two hours) before proceeding to the next node.
- Using an SFTP, upload the PKI Hub ISO image file to the
- Reboot each node sequentially, allowing at least 15 minutes between reboots.
- Back up the installation state as explained in Backing up PKI Hub.