Create local CA
1. Open <IBMI>:2010/QIBM/ICSS/Cert/Admin/qycucm1.ndm/main0 , where <IBMI> is your IBM i system name or IP address
Note: in case of connection problems, first check that DCM admin server is started
[[attachment:Digital Certificate Manager - Mozilla Firefox 23.03.2020 13_23_06.png|Template:Attachment:Digital Certificate Manager - Mozilla Firefox 23.03.2020 13 23 06.png]]
2. Click on Create a Certificate Authority (CA):
[[attachment:Digital Certificate Manager - Mozilla Firefox 23.03.2020 13_25_52.png|Template:Attachment:Digital Certificate Manager - Mozilla Firefox 23.03.2020 13 25 52.png]]
3. Fill the form (at least required fields. Password here is not a password for *SYSTEM store!):
[[attachment:Digital Certificate Manager - Mozilla Firefox 23.03.2020 13_28_39.png|Template:Attachment:Digital Certificate Manager - Mozilla Firefox 23.03.2020 13 28 39.png]]
4. Continue:
[[attachment:Digital Certificate Manager - Mozilla Firefox 23.03.2020 13_44_37.png|Template:Attachment:Digital Certificate Manager - Mozilla Firefox 23.03.2020 13 44 37.png]]
5. Cancel
Optional steps:
Further are only required if you plan to issue user certificates using local CA.
6. Open Manage Local CA -> Change policy data:
[[attachment:Digital Certificate Manager - Mozilla Firefox 23.03.2020 14_49_39.png|Template:Attachment:Digital Certificate Manager - Mozilla Firefox 23.03.2020 14 49 39.png]]
7. Select "Allow creation of user certificates" = Yes and click Continue:
[[attachment:Digital Certificate Manager - Mozilla Firefox 23.03.2020 14_53_35.png|Template:Attachment:Digital Certificate Manager - Mozilla Firefox 23.03.2020 14 53 35.png]]
8. OK, Cancel