We have an internal Stash and JIRA environment working great. We decided that we want to have both these to be delivered over SSL utilizing a self-signed cert. So as I have looked at it, I see that the process to do both of these is slightly different. I'd prefer the process to be similar for maintenance.
Documented Stash Process In A Nutshell
- $JAVA_HOME/bin/keytool -genkey -alias tomcat -keyalg RSA -sigalg SHA256withRSA -keystore <stash-home>/conf/stash.jks
- Edit <stash-home>/conf/server.xml and add:
<Connector port="8443"
maxHttpHeaderSize="8192"
SSLEnabled="true"
maxThreads="150"
minSpareThreads="25"
maxSpareThreads="75"
enableLookups="false"
disableUploadTimeout="true"
useBodyEncodingForURI="true"
acceptCount="100"
scheme="https"
secure="true"
clientAuth="false"
sslProtocol="TLS"
keystoreFile="<stash-home>/conf/stash.jks" /> - Comment out port 7990 config
- Restart Stash
I'd prefer the process be more like the JIRA documentation to wit. Can I make the generated key alias stash? then add something like the JIRA connector config parameters modified below?
keystoreFile="<stash-home>/conf/stash.jks"
keyAlias="stash"
keystorePass="changeit"
keystoreType="JKS"