Skip to main content

OMERO server certificate management plugin

Actions Status

Generate self-signed certificates and configure OMERO.server.

If you prefer to configure OMERO manually see the examples in these documents:

Installation

Install openssl if it's not already on your system. Then activate your OMERO.server virtualenv and run:

pip install omero-certificates

Usage

Set the OMERODIR environment variable to the location of OMERO.server.

Run:

omero certificates
OpenSSL 1.1.1d  10 Sep 2019
Generating RSA private key, 2048 bit long modulus (2 primes)
.+++++
.............................+++++
e is 65537 (0x010001)
certificates created: /OMERO/certs/server.key /OMERO/certs/server.pem /OMERO/certs/server.p12

to update your OMERO.server configuration and to generate or update your self-signed certificates. If you already have the necessary configuration settings this plugin will not modify them, so it is safe to always run omero certificates every time you start OMERO.server. You can now start your omero server as normal.

This plugin automatically overrides the defaults for the following properties if they're not explicitly set:

  • omero.glacier2.IceSSL.Ciphers=HIGH!DHE: the default weaker ciphers may not be supported on some systems
  • omero.glacier2.IceSSL.ProtocolVersionMax=TLS1_3: Support TLS 1.2 and 1.3
  • omero.glacier2.IceSSL.Protocols=TLS1_2,TLS1_3: Support TLS 1.2 and 1.3

The original values can be found on https://docs.openmicroscopy.org/omero/5.6.0/sysadmins/config.html#glacier2

Certificates will be stored under {omero.data.dir}/certs by default. Set omero.glacier2.IceSSL.DefaultDir to change this.

If you see a warning message such as

Can't load ./.rnd into RNG

it should be safe to ignore.

For full information see the output of:

omero certificates --help

Developer notes

This project uses setuptools-scm. To release a new version just create a tag.

Release files for omero-certificates 0.4.0

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for omero-certificates 0.4.0
File Size Uploaded
omero_certificates-0.4.0.tar.gz 14.5 kB Details

Built distribution (wheel)

Table of built distributions (wheels) for omero-certificates 0.4.0
File Interpreter ABI Platform
omero_certificates-0.4.0-py3-none-any.whl Python 3 none any Details

Total release size: 26.5 kB

Release files / omero_certificates-0.4.0.tar.gz

Download URL omero_certificates-0.4.0.tar.gz
Size 14.5 kB
Tags Source
SHA-256 checksum
How to use checksums
e772e898394aa8cfa0d798efded04838291c0a952d7dd01a1dc6bbd91692c076
BLAKE2b-256 checksum
How to use checksums
07dbb72a450db0e14787bd070efb3e7d4f13ad0056590e4641eedde214ef6eea
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via twine/5.0.0 CPython/3.12.9

Release files / omero_certificates-0.4.0-py3-none-any.whl

Download URL omero_certificates-0.4.0-py3-none-any.whl
Size 11.9 kB
Tags Python 3
SHA-256 checksum
How to use checksums
9dcc589ed5b0879feeb38afc6c7a78e80ed487815cd820d57a81eefae49c690f
BLAKE2b-256 checksum
How to use checksums
1ac69457c43ed54090feae661c7ee191e042c24219cedce0c463b94de456b061
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via twine/5.0.0 CPython/3.12.9

Release history Release notifications | RSS feed

This release

0.4.0 This release

2 release files

0.3.2

2 release files

0.3.1

2 release files

0.3.0

2 release files

0.2.0

2 release files

0.0.0

1 release file

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page