Enterprise Single Sign-on (ENTSSO) – Back up the Master Secret
December 31, 2004 Leave a comment
This is part of a series of posts devoted to responding to Enterprise Single Sign-on issues.
Event Type: Error
Event Source: ENTSSO
Event Category: Enterprise Single Sign-On
Event ID: 10589
Date: 26-4-2004
Time: 13:03:37
User: N/A
Computer:
Description:
The master secret has not been backed up. If you lose the master secret all the information stored in the SSO system will be lost permanently and your systems may fail to work correctly. Please use the SSO admin tools to back up your master secret.
Scary, I’ll agree. Simple fix, however. This step is part of BizTalk installation on this blog (not published yet; write me for an advance copy), but I’ve broken it out here:
- On the Start menu, click Run.
- In the Run dialog box, type “cmd”, and then click OK.
- At the command line, go to the Enterprise Single Sign-On installation directory.
- The default installation directory is <drive>:\Program Files\Common Files\Enterprise Single Sign-On.
- Type “ssoconfig -backupsecret <backup file>”, where <backup file> is the path and name of the file where the master secret will be backed up. For example, “A:\ssobackup.bak” to back up to a floppy disk, or “C:\mastersecret_servername.bak” to be moved to VSS or some other secure repository.
- Provide a password to protect this file. You will be prompted to confirm the password and to provide a password hint to help you remember this password.
- Store the backup file in a secure location.
The backup file can be used to restore a Master Secret Server or promote a group member to master secret server, as needed.