CL Command Reference - CVTUSRCERT
CL Command List > CVTUSRCERT Reference
Description:
The Convert User Certificate (CVTUSRCERT) command allows converting of user certificates from being stored and mapped locally on the system to using Enterprise Identity Mapping (EIM) for mapping and Lightweight Directory Access Protocol (LDAP) for storage.
Restrictions:
. You must have all object (*ALLOBJ) and security administrator (*SECADM) special authorities.
. Prior to running this command, the digital ID configuration must have been set using the Set Digital ID Configuration Information (QsySetDigitalIDConfig) API or Digital Certificate Manager (DCM).
. You must have configured this system to participate in an EIM domain.
. You must have set the system connection information using the Set EIM Connect Information (QsySetEIMConnectInfo) API or the EIM configuration GUI.
. For the user profile specified on the command, there must be a target association to an EIM identifier for the local registry that was specified when the system was configured to participate in an EIM domain.
Examples:
CVTUSRCERT USRPRF(JOHNSON) OPTION(*CVTRMV) This command converts all digital certificates for user profile JOHNSON to use EIM for mapping information and LDAP for storing the certificates. The certificates and mapping information currently stored with the user profile will be removed.