Initializing service for directory directory.xml... Reading company configuration... Using 'US' for [C] Country Code. Using 'Alpharetta' for [L] Locality (city, etc). Using 'GoldenCode' for [O] Organization. Using 'Hotel' for [OU] Organization Unit. Using 'GA' for [ST] State or Province Name. Using 10 years for validity. Enter RSA key strength (in bits), greater or equal than 2048 (blank for default 2048): Enter RSA public exponent, blank for default (65337): Adding account /security/accounts/processes/standard Adding account /security/accounts/processes/ehotel Adding account /security/accounts/processes/embedded Adding account /security/accounts/users/bogus WARNING: alias shared is set for multiple accounts! Account /security/accounts/users/hotel ignored - no alias is defined Account /security/accounts/users/858vnbwl4yc3695o ignored - no alias is defined Account /security/accounts/users/5m31ku2l7367zylt ignored - no alias is defined Account /security/accounts/users/r45i3pmd7pw8y671 ignored - no alias is defined Account /security/accounts/users/03w9tz112f4tfz4c ignored - no alias is defined Account /security/accounts/users/uys3w4132plb6z92 ignored - no alias is defined Account /security/accounts/users/4l3f3iq3212olrq4 ignored - no alias is defined Account /security/accounts/users/46jux6n31gp76s2d ignored - no alias is defined Account /security/accounts/users/790d600rxp0zw1ut ignored - no alias is defined Generating root CA using [hotel-root] alias... Generating certificate for account with alias [ehotel]... Generating certificate for account with alias [embedded]... Generating certificate for account with alias [shared]... Generating certificate for server with alias [standard]... Encrypt the in-directory private keys using the same password (yes/no): no Private key for root CA [hotel-root] was encrypted using the [^u0mrGn)o2X5nor109+KAvt&teTCn2v7] password and the password was NOT SAVED in the directory. Losing this password will prohibit using the root CA to issue new certificates. Adding certificate for alias [hotel-root] to the /security/certificates/cas/hotel-root node... Private key for alias [ehotel] was encrypted using the [KmO`8b3K5dwAN>2w4D4^>61Cplojjtjw] password and saved in the /security/certificates/private-keys/ehotel node. Use the access:password:keyentry-ehotel key to set this password in the server's bootstrap config file and delete the /security/certificates/private-keys/ehotel node from the directory. Private key for alias [embedded] was encrypted using the [09Ed64TfKyPHw(>QVI4zhMUfX5yS)$95] password and saved in the /security/certificates/private-keys/embedded node. Use the access:password:keyentry-embedded key to set this password in the server's bootstrap config file and delete the /security/certificates/private-keys/embedded node from the directory. Private key for alias [shared] was encrypted using the [mzDoMKiU@3B40EgbHEu^4d~W5Z~09Xv5] password and saved in the /security/certificates/private-keys/shared node. Use the access:password:keyentry-shared key to set this password in the server's bootstrap config file and delete the /security/certificates/private-keys/shared node from the directory. Private key for alias [standard] was encrypted using the [Xhqv5d42WNugrJ`^k@6_m4wjyk1jW3g5] password and saved in the /security/certificates/private-keys/standard node. Use the access:password:keyentry-standard key to set this password in the server's bootstrap config file and delete the /security/certificates/private-keys/standard node from the directory. Adding certificate for alias [ehotel] to the /security/certificates/peers/ehotel node... Adding certificate for alias [embedded] to the /security/certificates/peers/embedded node... Adding certificate for alias [shared] to the /security/certificates/peers/shared node... Adding certificate for alias [standard] to the /security/certificates/peers/standard node... Save the account private keys in external key-store(s) (yes/no): yes Save the private keys in the same key store (yes/no): no The private key for certificate [ehotel] was saved in the [ehotel-private-key.store] key store, using store password [Ks70hcwSAU01#YmL*_LTz7LH0SUKKl5K2!yb] and key-entry password [N^ysi27>gYGySg#1NN>rTdF002ANiG6R9Rvz]. The private key for certificate [embedded] was saved in the [embedded-private-key.store] key store, using store password [87ViGTQVp<07zPw(3i2A4%uCHYx3mIgSt>Tk] and key-entry password [h8jNMO>Vbn0`cL)b95dVn$w03CePIB6eItL3]. The private key for certificate [shared] was saved in the [shared-private-key.store] key store, using store password [6UizSiDqbJ0rA~@9Sm7Zznv1La`6z1QY)5wz] and key-entry password [jzHEbVpd17m4~dkV800zsoyW#qm84HxcD5cv] password, while the root CA's private key was encrypted using the [Msyb0N+Oy2ZT(Jo3KGkY72$Mfn&5VL0Mzh3T] password. Done. WARNING! Any configuration set at the client.xml or server.xml files or via bootstrap config arguments will have priority over the in-directory keys or certificates. WARNING! The private key encryption passwords for all the account certificates are saved unencrypted in the directory. The root CA's private key can be safely deleted, if it is not required to issue other certificates using this CA.